講演名 2007-06-15
A DDoS Flooding Attack Detection Mechanism Analyses based on the Relationship between Input and Output Traffic Volumes
,
PDFダウンロードページ PDFダウンロードページへ
抄録(和)
抄録(英) Nowadays various kinds of anomalies are prohibiting the widely used Internet from offering normal services. Within them a novel anomaly is caused by bandwidth attacks. To defense these threats many detecting schemes are essentially based on unidirectional checking of traffic changes. When legitimately abrupt changes appear, they might result in false alarms. In this paper we consider the problem from the bidirectional-traffic view and analyze the traffic characteristics by checking the input/output traffic characteristics of the protected network node. We have analyzed the relationship between input and output traffic volume pairs in the simulation traffic and studied them both under normal and abnormal cases. Based on these analyses, we've proposed a heuristic DDoS Flooding attack detection method and showed a verifying simulation as well.
キーワード(和)
キーワード(英) DDoS flooding / Anomaly detection / legitimately abrupt change / Input/output traffic proportion
資料番号 NS2007-38
発行日

研究会情報
研究会 NS
開催期間 2007/6/7(から1日開催)
開催地(和)
開催地(英)
テーマ(和)
テーマ(英)
委員長氏名(和)
委員長氏名(英)
副委員長氏名(和)
副委員長氏名(英)
幹事氏名(和)
幹事氏名(英)
幹事補佐氏名(和)
幹事補佐氏名(英)

講演論文情報詳細
申込み研究会 Network Systems(NS)
本文の言語 ENG
タイトル(和)
サブタイトル(和)
タイトル(英) A DDoS Flooding Attack Detection Mechanism Analyses based on the Relationship between Input and Output Traffic Volumes
サブタイトル(和)
キーワード(1)(和/英) / DDoS flooding
第 1 著者 氏名(和/英) / Fengxiang ZHANG
第 1 著者 所属(和/英)
Department of Informatics Graduate University for Advanced Studies
発表年月日 2007-06-15
資料番号 NS2007-38
巻番号(vol) vol.107
号番号(no) 88
ページ範囲 pp.-
ページ数 6
発行日