首页> 外国专利> Distributed denial of service attack detection apparatus and method, and distributed denial of service attack detection and prevention apparatus for reducing false-positive

Distributed denial of service attack detection apparatus and method, and distributed denial of service attack detection and prevention apparatus for reducing false-positive

机译:分布式拒绝服务攻击检测装置和方法,以及分布式拒绝服务攻击检测和预防装置,用于减少误报

摘要

Provided is a DDoS attack detection apparatus including an information collecting unit to collect DDoS detection information including rate information about traffic change, variation of a first type flow and a Packet Per Second (PPS) for a second type flow, in which the rate information about traffic change is obtained using packet count of packets input per a unit time, flow count of flows input per the unit time and the byte count of bytes input per the unit time; and a testing unit to calculate a probability of occurrence of the DDoS attack by use of a first probability determined by the rate information about traffic change, a second probability determined by the variation of the first type flow and a third probability determined by the PPS for the second type flow and detect occurrence of the DDoS attack based on the probability of occurrence of the DDoS attack.
机译:提供了一种DDoS攻击检测设备,其包括信息收集单元,以收集DDoS检测信息,该DDoS检测信息包括关于流量变化,第一类型流的变化和第二类型流的每秒分组(PPS)的速率信息,其中,关于通过使用每单位时间输入的分组的分组计数,每单位时间输入的流的流计数以及每单位时间输入的字节的字节数来获得业务量变化。测试单元,通过使用关于流量变化的速率信息确定的第一概率,通过第一类型流的变化确定的第二概率和通过PPS确定的第三概率来计算DDoS攻击发生的概率第二种类型,并基于DDoS攻击的发生概率检测DDoS攻击的发生。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号