摘要
基于网络处理器开发的网络设备能够很好地解决灵活性和高性能之间的矛盾。基于网络处理器IXP2400自身的特点,设计了多维异常检测系统。该系统可以有效地检测和防御DDOS攻击。根据TCP/IP协议簇,对数据包进行多维解析,统计以及异常标记。仿真和硬件实验的验证数据表明,该系统能准确无误地按照设计目标一一分解数据包,并标记出异常值,从而为后续的网络安全的研究和防御工作提供可靠的数据保证。
With appearance of network processor,the equipment based on network processor can solve the contradictions between flexibility and high performance.Design abnormal detection system is due to the character of IXP2400 network processor.The system can effectively detect and defence DDOS attack.According to TCP/IP protocol cluster,multi-dimensional analyse data packets and statics abnormal mark.The data show that the system can accurately analyze data packets and mark up abnormal value by a series of simulation and hardware experiment to provide network safety research and defense work.
出处
《计算机工程与设计》
CSCD
北大核心
2010年第13期2951-2954,2958,共5页
Computer Engineering and Design
关键词
DDOS攻击
网络处理器
异常检测
多维
异常标记
DDOS attacks
network processor
anomaly detection
multi-dimensional
anomaly marker