首页> 外文会议>International conference on mobile, secure, and programmable networking >Formal Modeling and Performance Evaluation of Network's Server Under SYN/TCP Attack
【24h】

Formal Modeling and Performance Evaluation of Network's Server Under SYN/TCP Attack

机译:SYN / TCP攻击下网络服务器的形式化建模与性能评估

获取原文

摘要

This paper describes the modeling of a network's server under SYN/TCP attack, using Deterministic and Stochastic Petri Nets, which is a formalism allowing qualitative and quantitative analysis for the modeled system. This high level formalism allows also to cope with the complexity of such systems and to express the stationary performance indices as a function of Petri Net elements. The objective is thus to evaluate the unavailability of server during this attack, by computing probability of connection loss, and the impact of system parameters on this metric. Some other performance metrics, such as buffer occupancy of half-open connections for attack traffic and legitimate traffic and the mean number of legitimate S YN packet received, are also evaluated. By these results we show how the attack load severely degrade the performance of the network under attack, and the change of some system crucial parameters such as the buffer size and the holding time for half-open connections in order to guarantee the service availability, is effective only if the attack load is limited.
机译:本文使用确定性和随机Petri网描述了在SYN / TCP攻击下网络服务器的建模,这是一种形式主义,可以对建模的系统进行定性和定量分析。这种高层次的形式主义还可以应付这种系统的复杂性,并根据Petri Net元素来表示固定的性能指标。因此,目标是通过计算连接丢失的可能性以及系统参数对该指标的影响,来评估服务器在此攻击期间的不可用性。还评估了其他一些性能指标,例如攻击流量和合法流量的半开连接的缓冲区占用率以及收到的合法S YN数据包的平均数量。通过这些结果,我们可以看出攻击负载如何严重降低受攻击网络的性能,以及某些系统关键参数(例如缓冲区大小和半开放连接的保持时间)的变化,以保证服务的可用性。仅在攻击负荷受到限制时有效。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号