首页 | 本学科首页   官方微博 | 高级检索  
     

一种基于接口异常度可信判断的内容中心网络缓存污染防御方法
引用本文:朱轶,王新平,黄茹辉,康浩浩,曹清华. 一种基于接口异常度可信判断的内容中心网络缓存污染防御方法[J]. 北京邮电大学学报, 2017, 40(6): 14-18. DOI: 10.13190/j.jbupt.2017-104
作者姓名:朱轶  王新平  黄茹辉  康浩浩  曹清华
作者单位:江苏大学 计算机科学与通信工程学院,江苏 镇江,212013;江苏大学 计算机科学与通信工程学院,江苏 镇江,212013;江苏大学 计算机科学与通信工程学院,江苏 镇江,212013;江苏大学 计算机科学与通信工程学院,江苏 镇江,212013;江苏大学 计算机科学与通信工程学院,江苏 镇江,212013
摘    要:
针对内容中心网络的缓存污染攻击问题,提出一种基于接口异常度可信判断的限速机制,根据接口异常度检测缓存污染攻击类型,并结合接口命中率对异常接口进行限速控制.仿真结果表明,该机制可以同时防御缓存恶意侵占(Locality-Disruption)和虚假内容缓存(False-Locality)2种攻击,且通过引入False-Locality攻击的可信度判断,可大概率区分异常的False-Locality攻击和正常的突发拥塞事件,避免错误抑制Flash Crowd网络行为.

关 键 词:缓存污染攻击  防御方法  接口限速  突发拥塞  可信判断

A Cache Pollution Defense Mechanism Based on Trust Judgment of Face Abnormality in Content Centric Networking
Abstract:
To solve the problem of cache pollution attack in content centric networking, a traffic limiting control mechanism was proposed based on trusted judgment of face abnormality. By detecting the abnor-mality status of each face, the traffic of abnormal face was limited according to its request hit probability. Simulations show that, this mechanism can defend against both locality-disruption and false-locality at-tacks. In addition, using the trust judgment of face abnormality, the false-locality attack can be distin-guished from the flash crowd event with large probability. So, it can avoid mistakenly restraining the nor-mal network behavior.
Keywords:cache pollution attack  defense mechanism  face acceptance limitation  flash crowd  trust judgment
本文献已被 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号