首页    期刊浏览 2024年11月26日 星期二
登录注册

文章基本信息

  • 标题:Detection of Application Layer DDOS Attacks Using Information Theory Based Metrics
  • 本地全文:下载
  • 作者:S. Renuka Devi ; P. Yogesh
  • 期刊名称:Computer Science & Information Technology
  • 电子版ISSN:2231-5403
  • 出版年度:2012
  • 卷号:2
  • 期号:2
  • 页码:217-223
  • DOI:10.5121/csit.2012.2223
  • 出版社:Academy & Industry Research Collaboration Center (AIRCC)
  • 摘要:Distributed Denial-of-Service (DDoS) attacks are a critical threat to the Internet. Recently, there are an increasing number of DDoS attacks against online services and Web applications. These attacks are targeting the application level. Detecting application layer DDOS attack is not an easy task. A more sophisticated mechanism is required to distinguish the malicious flow from the legitimate ones. This paper proposes a detection scheme based on the information theory based metrics. The proposed scheme has two phases: Behaviour monitoring and Detection. In the first phase, the Web user browsing behaviour (HTTP request rate, page viewing time and sequence of the requested objects) is captured from the system log during non-attack cases. Based on the observation, Entropy of requests per session and the trust score for each user is calculated. In the detection phase, the suspicious requests are identified based on the variation in entropy and a rate limiter is introduced to downgrade services to malicious users. In addition, a scheduler is included to schedule the session based on the trust score of the user and the system workload
  • 关键词:DDoS; Application Layer & Entropy
国家哲学社会科学文献中心版权所有