首页 | 本学科首页   官方微博 | 高级检索  
     

多Agent的DDoS源地址追踪方法研究
引用本文:赵德山,曹斌.多Agent的DDoS源地址追踪方法研究[J].计算机工程与设计,2010,31(8).
作者姓名:赵德山  曹斌
作者单位:1. 贵州大学,计算机科学与信息学院,贵州,贵阳,550025
2. 贵州大学,计算机科学与信息学院,贵州,贵阳,550025;贵阳铝镁设计研究院,贵州,贵阳,550025
基金项目:国家创新基金,国家重点新产品项目 
摘    要:对数据包标记的各种技术进行了深入研究,分析它们存在的问题,基于上述的研究,提出一种多Agent的追踪方法,以解决传统方法存在的重构需要大量数据包,追踪鲁棒性和实时性差等问题.该方法采用并行分布式的结构,将整个追踪区域分成若干自治网络,在各自治网络内独立采用动态的标记概率等算法,同时设立追踪Agent进行自治区内的追踪,最终将由追踪管理器收集各追踪Agent的部分攻击路径并重构出整个攻击路径.理论分析表明,该方法降低了计算量和误报率,增强了追踪的实时性和准确性等.

关 键 词:分布式拒绝服务攻击  源地址追踪  数据包标记  动态概率  并行追踪  攻击路径重构

Research on technology of DDoS source address tracing based on multi-agent
ZHAO De-shan,CAO Bin.Research on technology of DDoS source address tracing based on multi-agent[J].Computer Engineering and Design,2010,31(8).
Authors:ZHAO De-shan  CAO Bin
Affiliation:ZHAO De-shan1,CAO Bin1,2 (1. College of Computer Science , Information,Guizhou University,Guiyang 550025,China,2. Guiyang Aluminum Magnesium Design , Research Institute,China)
Abstract:All kinds of data marking technologies and their problems are analyzed. According the above-mentioned research, a tracing technology based on multi-agent is proposed in order to solve the shortages of traditional schemes. The new scheme introduces many tracing agents and tracing manager and constructs a parallel distributed tracing system. Theoretical analysis shows that the computation and false alarm rate are reduced, the real-time and accuracy of tracing is improved.
Keywords:DDOS  source address tracing  data packet marking  dynamic probability  parallel tracing  attack path reconstructing
本文献已被 CNKI 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号