论文部分内容阅读
分布式拒绝服务攻击是现在网络安全面临的主要问题之一。数据包评分方案是一种通过为每个到达站点的数据包进行评分的方式来区分攻击数据包的分布式拒绝服务攻击防御方案。文中介绍了基于条件合法概率的和基于漏桶原理的数据包评分方案,并通过仿真实验在每个检测周期的数据包数目选择、数据包属性的特征选择等方面,对这两个方案进行了比较。经过比较发现,基于漏桶的数据包评分方案在对攻击数据包的识别率略低的情况下,具有更好的处理速度,也更便于用硬件实现。
Distributed denial of service attacks is now one of the major problems facing network security. A packet rating scheme is a distributed denial of service attack defense scheme that differentiates attack packets by scoring packets arriving at each site. In this paper, based on the conditional probability of law and based on the principle of leaky bucket data packet scoring scheme, and through simulation experiments in each test cycle, the number of packets to choose the characteristics of packet attributes selection, these two programs were carried out Compare After comparison, we found that the leaky bucket-based data packet scoring scheme has better processing speed under the condition of slightly lower recognition rate of attack packets, and is also easier to implement by hardware.