Computer Science ›› 2015, Vol. 42 ›› Issue (3): 140-143.doi: 10.11896/j.issn.1002-137X.2015.03.029

Previous Articles     Next Articles

Research on Exploiting DoS Attack Against DNS Based on Information Entropy

YAN Fen, DING Chao and YIN Xin-chun   

  • Online:2018-11-14 Published:2018-11-14

Abstract: DNS server has a vital role in the Internet,and it will affect the network to provide normal services to users if DNS is attacked.DNS Query Flood attack sends a lot of fake DNS request to the DNS server,consumes the DNS server resources and causes denial of service.So it is very important to detect timely the attack.Based on the study of the DNS resolution process,we summed up the characteristics of the DNS Query Flood attack.According to the characteristics of attack,we combined the information entropy to determine whether a network abnormalities,and then used sliding window mechanism to determine whether there is any attack.

Key words: DNS query flood,Denial of service,Domain name resolution success rate,Information entropy,Sliding window

[1] Mockapetris P.Domain Names-Concepts and Facilities[S].RFC1034.1987
[2] Eastlake D.Domain Name System Security Extensions[S].RFC2535.1999
[3] 宗兆伟,黎峰,翟征德.基于统计分析和流量控制的DNS分布式拒绝服务攻击的检测及防御[C]∥2009年计算机网络与通信学术会议论文集.2009:206-213
[4] 黄宸,郑康峰,卢天亮,等.基于信息熵的应用层DDoS攻击检测方法[C]∥第十七届全国青年通信学术年会论文集.第二卷,2012:467-472
[5] 李锦玲.应用层分布式拒绝服务攻击的异常检测算法研究[D].郑州:解放军信息工程大学,2013
[6] 张小妹,赵荣彩,单征,等.基于DNS的拒绝服务攻击研究与防范[J].计算机工程与设计,2008,29(1):21-23
[7] 王佳佳.DDoS 攻击检测技术的研究[D].扬州:扬州大学,2008
[8] 刘永杰.异常流量识别系统及其关进技术研究[D].南京:南京邮电大学,2013
[9] 徐川.应用层DDoS攻击检测算法研究及实现[D].重庆:重庆大学,2012
[10] 尚波涛,祝跃飞,陈嘉勇.一种应用层分布式拒绝服务攻击快速检测方法[J].信息工程大学学报,2012(5):601-607

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!