Font Size: a A A

Research On DDoS Detection And Defense Mechanism Of Resource Adaptation Server In Smart Identifier Network

Posted on:2019-04-03Degree:MasterType:Thesis
Country:ChinaCandidate:M H ChenFull Text:PDF
GTID:2348330542474967Subject:Communication and Information System
Abstract/Summary:PDF Full Text Request
With the rapid development of the Internet,the traditional network architecture has exposed more and more problems in the aspects of expansibility,management,mobility and security,which has aroused the research upsurge of new network in academia.The three-layer and two-domain theory of the SINET establishes the core position of the resource adaptation server.According to the characteristics of component Synergy mechanism in the SINET,this paper designs a set of detection and defense mechanisms for DDoS attack on resource adaptation server,which realizes the pre protection,attack detection and attack response.The specific work as follows:Firstly,the current situation of the Internet and the existing problems are analyzed;the development of the new Internet architecture at home and abroad is summarized;the importance and research significance of the SINET are expounded;and the attacking principle,basic detection methods and traditional defensive strategies of DDoS are introduced;The main form of DDoS attack for resource adaptation server is given.Secondly,the importance of ensuring the security of resource adaptation server for SINET is summarized;the design requirements of the DDoS attack detection and defense mechanism for resource adaptation server is analyzed;and the overall design scheme is given;constructs the main frame of the resource adaptation server,the cache module,the detection module and the defensive module are designed;the control-link migration method,the detection algorithm based on decision tree and the defense algorithm based on the weighted priority queue are designed.Thirdly,the migration condition and process of control-link,cache module for queue generation and flow feature collection,detection module based on decision tree algorithm,defense module based on weight priority queue are implemented.And the constructions of related data structure are completed.Finally,the function verification testing of the control-link migration module,the cache module,the detection module and the defense module are carried on the simulation experiment environment,the processing time delay of the service request packet,the detection rate of the decision tree algorithm and the defensive effect of the weighted priority queue are tested.The detection and defense mechanism is optimized according to the verification and test results.The DDoS detection and defense mechanism for resource adaptation server is implemented in this thesis,which provides the foundation and guarantee for the research and deployment of the following security strategy in the SINET.
Keywords/Search Tags:SINET, DDoS Attack, Control-link Migration, Decision Tree, Weighted Priority Queue
PDF Full Text Request
Related items