论文部分内容阅读
网络电话(VoIP)网络攻击检测算法的实现需要较多的计算资源支持,而现有的VoIP网络攻击防护系统在负载提高时会出现计算资源供给瓶颈。针对该问题,该文提出传输层负载均衡算法对网络流量实施优化分配和后端服务器负载均衡。在此基础上,系统进行信令流和RTP(实时传输协议)流分布式并行识别,所识别的RTP流通过异步查询信令流信息关联到所属的VoIP会话,为VoIP会话数据完整性提供保证,从而实现了一种分布式VoIP网络边界攻击防护系统。对比测试证明该系统在大流量条件下的丢包率远低于单机系统;畸形SIP信令泛洪攻击测试表明,现有的VoIP网络攻击检测算法可以无需改动应用在该系统中,并达到重负载条件下的攻击实时检测和秒级延迟响应。
The implementation of the VoIP attack detection algorithm requires more computational resources, and the existing VoIP attack defense system may encounter bottlenecks in computing resources when the load is increased. In response to this problem, this paper proposes a transport layer load balancing algorithm to optimize the distribution of network traffic and back-end server load balancing. On this basis, the system conducts distributed parallel identification of signaling flow and RTP (Real-time Transport Protocol) flow. The identified RTP flow is associated with its own VoIP session through asynchronous query signaling flow information to provide guarantee for the data integrity of the VoIP session , Thus realizing a distributed VoIP network border attack protection system. Contrast tests show that the packet loss rate of this system is much lower than that of the single system under the condition of large flow rate. The malformed SIP signaling flood attack test shows that the existing VoIP network attack detection algorithm can be used in this system without modification Attack under load conditions real-time detection and second-level delay response.