%0 Journal Article %T DDoS attack detection method based on Holder exponent
一种基于Holder指数的DDoS攻击检测方法* %A REN Yi-long %A LIU Yuan %A
任义龙 %A 刘渊 %J 计算机应用研究 %D 2011 %I %X Based on the fractal structure of the large-scale network traffic aggregation,analyzed the fractal feature of network traffic from the perspective of the global and local scaling exponents. It used this feature to analyze the fractal parameters of abnomal network traffic,trying to identify the relationship between changes of these parameters and the emergence of DDoS. Experimental results show that network traffic have the self-similar phenomena over large-scale and the multi-fractal phenomena over-small scale. It presented a method of DDoS attack detection based on Holder exponent.On the DARPA/Lincoln laboratory intrusion detection evaluation data set 2000,the experimental result shows that this method can detect the attack quickly and accurately.When the intermittent DDoS attack happen,this method is more effective than the traditional method. %K distributed denial of service(DDoS) %K self-similar %K multi-fractal %K Hurst parameter %K Holder exponent
分布式拒绝服务 %K 自相似性 %K 多重分形 %K Hurst参数 %K Holder指数 %U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=A9D9BE08CDC44144BE8B5685705D3AED&aid=DE892F3404CF197AC0AA8B6E1CE0E8ED&yid=9377ED8094509821&vid=D3E34374A0D77D7F&iid=0B39A22176CE99FB&sid=94655B9881133A28&eid=0EE24608F5763811&journal_id=1001-3695&journal_name=计算机应用研究&referenced_num=0&reference_num=15