J4 ›› 2012, Vol. 47 ›› Issue (11): 50-53.
• Articles • Previous Articles Next Articles
YU Ming, WANG Dong-ju
Received:
Online:
Published:
Abstract:
Defense of DDoS attacks at their sourceend networks is a kind of proactive defense to detect and block DDoS traffic. A comparative study was made on the detectability of constant rate DDoS attacks and grouped DDoS attacks based on the discrepancy in the number of packets sent to and received from a specific destination. Simulation results show that (1) there is a tradeoff between detectability of constant rate attacks and their destruction, and decreasing attack rate is not an ideal solution to enhance concealment of the attacks; (2) detectability of grouped attacks can be reduced by flexible group configurations with no loss of the attack destruction, among which increasing attack groups and attack sources is an effective solution.
Key words: DDoS; source-end defense; traffic sending mode; attack detection
YU Ming, WANG Dong-ju. Detectability of TCP-based DDoS attacks at their sourceend networks[J].J4, 2012, 47(11): 50-53.
0 / / Recommend
Add to citation manager EndNote|Reference Manager|ProCite|BibTeX|RefWorks
URL: http://lxbwk.njournal.sdu.edu.cn/EN/
http://lxbwk.njournal.sdu.edu.cn/EN/Y2012/V47/I11/50
Cited