首页 | 本学科首页   官方微博 | 高级检索  
     

基于流媒体服务DDoS攻击防范研究
引用本文:刘莉,黄海平,王汝传,叶宁.基于流媒体服务DDoS攻击防范研究[J].信息安全与通信保密,2011,9(11):48-50.
作者姓名:刘莉  黄海平  王汝传  叶宁
作者单位:1. 南京人口管理干部学院信息科学系,江苏南京,210042
2. 南京邮电大学计算机学院,江苏南京,210003
基金项目:国家自然科学基金资助项目,江苏省科技支撑计划(工业)资助项目,江苏省高校自然科学基础研究资助项目,高校科研成果产业化推进工程资助项目,江苏省六大高峰人才资助项目,江苏省计算机信息处理技术重点实验室基金资助项目
摘    要:分布式拒绝服务(Distributed Deny of Service,DDoS)攻击是目前最难解决的网络安全问题之一。在研究RTSP(Real-Time Streaming Protocol)协议漏洞基础上,提出一种有效防御流媒体服务DDoS攻击防御方案。该方案基于时间方差图法(Variance-TimePlots,VTP),计算自相似参数Hurst值,利用正常网络流量符合自相似模型的特性来进行DDoS攻击检测,并综合采用黑白名单技术对流量进行处理。最后通过MATLAB仿真工具进行了模拟实验,并对结果进行了分析,在协议分析基础上能合理控制流量,使得DDoS攻击检测准确率、实时性高,目标流媒体服务器带宽和资源得到了有效保护。

关 键 词:分布式拒绝服务攻击  流媒体服务  网络安全

Research on Defense of DDoS Attack against Streaming Media Service
LIU Li ,HUANG Hai-ping ,WANG Ru-chuan ,YE Ning.Research on Defense of DDoS Attack against Streaming Media Service[J].China Information Security,2011,9(11):48-50.
Authors:LIU Li  HUANG Hai-ping    WANG Ru-chuan  YE Ning
Affiliation:LIU Li 1,HUANG Hai-ping 2,3,WANG Ru-chuan 2,YE Ning 1,3(1 Dept. of Information Science,Nanjing College for Population Programme Management,Nanjing Jiangsu 210042,China,2 College of Computer,Nanjing University of Posts and Telecommunications,Nanjing Jiangsu 210003,3 Hi-Tech Research Key Lab of Wireless Sensor Networks,China)
Abstract:Nowadays,Distributed?Denial of Service(DDoS) attack?becomes one of the?most intractable network security issues. Based on the vulnerability of? RTSP(Real-Time Streaming Protocol) protocol,an effective defense scheme against DDoS attacks is proposed,which,based on VTP(Variance-Time Plots) method,calculates the self-similarity parameter Hurst for detecting DDoS attack according to the feature that the normal network flow should be in line with the self-similar model,and with black/white list technology,processes the anomalous flow. The simulation with MATLAB and the results analysis indicate that the proposed scheme could achieve reasonable control of the flow,is of high accuracy and real-time performance in DDoS attack detection,and realizes effective protection of bandwidth and resources of the target streaming media server.
Keywords:DDoS(distributed deny of service)  streaming media service  network security
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号