基于多维伪随机序列的高级包标记策略算法
发布时间:2018-01-24 18:16
本文关键词: 多维伪随机序列 边采样矩阵 高级包标记策略 压缩编码 攻击路径图 出处:《计算机应用》2016年11期 论文类型:期刊论文
【摘要】:高级包标记策略(AMS)是对分布式拒绝服务(DDo S)攻击进行IP追踪的有效算法,但是,由于使用哈希函数实现边地址的压缩,AMS算法存在复杂度高、保密性差、误报率高等缺陷。为了提高追踪效率,设计了一种基于多维伪随机序列的AMS算法:一方面,在路由器上,以全硬件实现的边采样矩阵代替原有的哈希函数,完成IP地址的压缩编码;另一方面,在受害者端,结合边地址压缩码和边的权重计算过程,实现攻击路径图的输出。仿真实验中,基于多维伪随机序列的AMS算法与原始算法性能基本一致,但能有效减少误判的发生和快速判断伪造路径。实验结果表明,所提算法保密性能高,计算速度快,抗攻击能力强。
[Abstract]:Advanced packet tagging policy (AMS) is an effective algorithm for IP tracking of distributed denial-of-service (DDoS) attacks, however, edge addresses are compressed by using hash functions. In order to improve the tracking efficiency, a AMS algorithm based on multidimensional pseudo-random sequences is designed: on the one hand, on the router. The edge sampling matrix realized by the whole hardware replaces the original hash function to complete the compression coding of IP address. On the other hand, in the victim side, combined with the edge address compression code and the edge weight calculation process, the attack path graph output is realized. The AMS algorithm based on multi-dimensional pseudorandom sequence is basically consistent with the original algorithm, but it can effectively reduce the occurrence of false judgment and quickly determine the false path. The experimental results show that the proposed algorithm has high security performance. Fast calculation and strong ability to resist attack.
【作者单位】: 南京师范大学泰州学院信息工程学院;南京师范大学地理科学学院;
【基金】:“十二五”国家支撑计划项目(2012BAH35B02) 泰州市科技支撑计划项目(TS201517)~~
【分类号】:TP393.08
【正文快照】: 0引言分布式拒绝服务(Distributed Denial of Service,DDo S)攻击[1]是一种分布的、协作的大规模拒绝服务(Denial ofService,Do S)攻击,它主要的攻击目标是大型的站点,比如商业公司、搜索引擎和政府部门的网站等。由于DDo S攻击较容易实施,且难于防范和追踪,已经成为了互联网,
本文编号:1460685
本文链接:https://www.wllwen.com/guanlilunwen/ydhl/1460685.html