摘要: |
针对日益严重的DoS(拒绝服务)网络攻击行为,提出了一种RED(相对熵检测)算法。该算法基
于相对熵理论,利用网络流量的自相似特性,通过判断相邻时刻流量之间的相对熵值是否发
生突变来进行DoS攻击检测。实验结果表明,与传统的信息熵DoS攻击检测算法相比,该算法
具有较高的检测率。 |
关键词: 网络信息安全 拒绝服务攻击 相对熵 信息熵 检测算法 |
DOI: |
|
基金项目: |
|
DoS Attack Detection Based on Relative Entropy Theory |
LI Han-qiu,MA Yan,LEI Lei |
(Unit 63778 of PLA, Jiamusi 154002, China;Unit 63780 of PLA, Sanya 572427,
China) |
Abstract: |
Based on the theory of relative entropy and the self-similarity of network traff
ic,a Relative Entropy Detection(RED) algorithm is proposed to detect the increas
ingly serious DoS(Denial of Service) attacks,according to judging the changes of
relative entropy v
alues at adjoining times.The experimental results show that the RED algorithm ha
s a higher detection precision compared with information entropy detection algor
ithm. |
Key words: network information security DoS attack relative entropy information entropy detection algorithm |