J4

• • 上一篇    下一篇

使用ns2模拟与改进PPM算法

李强, 朱弘恣, 鞠九滨   

  1. (吉林大学 计算机科学与技术学院, 长春 130012)
  • 收稿日期:2005-03-03 修回日期:1900-01-01 出版日期:2005-11-26 发布日期:2005-11-26
  • 通讯作者: 鞠九滨

Simulation and Improvement of Probabilistic Packet Marking Schemes by Means of ns2

LI Qiang, ZHU Hong-zi, JU Jiu-bin   

  1. (College of Computer Science and Technology, Jilin University, Changchun 130012, China)
  • Received:2005-03-03 Revised:1900-01-01 Online:2005-11-26 Published:2005-11-26
  • Contact: JU Jiu-bin

摘要: 根据推测路径需要的数据包数量、 推测复杂性和误报率等参数, 对不同的随机包标记(PPM)算法进行了评价. 通过扩充ns2、 确定攻击拓扑和攻击流量建立一个模拟测试环境, 实际模拟并对比分析了各种PPM算法, 可测试大规模DDoS攻击下各种PPM算法反向追踪的执行效果. 根据模拟过程和结果, 提出PPM的改进方向, 从而有效提高了反向追踪的实时性.

关键词: IP反向追踪, 包标记, 评价与模拟, DDoS

Abstract: The most promising probabilistic packet marking (PPM) schemes were evaluated based on the basis of the received packet number required for reconstructing the attacking path, computation complexity and false positive etc. We construct a simulation environment via extending ns2, setting attacking topology and traffic, which can be used to evaluate and compare the effectiveness of different PPM schemes. The simulation approach can also be used to test the performing effects of different PPM schemes in large-scale DDoS attacks. Based on the evaluation and simulation results, several improvable aspects of PPM are proposed, which can increase real-time of IP traceback efficiently.

Key words: IP traceback, packet marking, evaluation and simulation, DDoS

中图分类号: 

  • TP393