%0 Journal Article
%T Using Adaptive Router Throttles Against Distributed Denial-of-Service Attacks
利用路由器自适应限流防御分布拒绝服务攻击(英文)
%A David Yau
%A
梁丰
%J 软件学报
%D 2002
%I
%X In this paper, an adaptive router throttle algorithm is presented to defend a server against distributed denial-of-service (DDoS) attacks. The key point of the algorithm is that the server asks selected upstream routers k hops away to install throttles on traffic flows destined for it so that the server's service capacity can be allocated among all flows with a max-min like fairness. The algorithm effectiveness is evaluated by using a realistic Internet topology and various models for attacker and good user distributions and behaviors. The results indicate that this server-centric router throttling is a promising approach to countering DDoS attacks.
%K network security
%K DDoS
%K router
%K Internet
%K computer network
网络安全
%K 分布拒绝服务
%K 路由器
%K 因特网
%K 计算机网络
%U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=7735F413D429542E610B3D6AC0D5EC59&aid=EED27EE5D7ABBE12&yid=C3ACC247184A22C1&vid=FC0714F8D2EB605D&iid=DF92D298D3FF1E6E&sid=82A2BA02DFB40363&eid=8EC0A96FD5EC3019&journal_id=1000-9825&journal_name=软件学报&referenced_num=7&reference_num=12