Computer Science ›› 2010, Vol. 37 ›› Issue (3): 117-120.

Previous Articles     Next Articles

Active Detecting Method against SYN Flooding Attacks

LI Hai-wei,ZHANG Da-fang,LIU Jun,YANG Xiao-bo   

  • Online:2018-12-01 Published:2018-12-01

Abstract: SYN Flood brings great danger to the normal network operation. Many research studies detect the attack by analyzing the self-similarity of network traffic. However, the method may be ineffective to SYN Flood. By analyzing the high-precision traces which are captured by DAG cards, we proposed a new SYN Flood detection mechanism based on the active detection. It brings the technology of packet pair to abnormal traffic detection that detects SYN Flood, according to the background flow length change. The method has a 88 0 o SYN attack detection rate from experimental resups. This method is based on end-to-end technology which has better flexibility and controllability.

Key words: SYN flooding attack, Self-similarity, Abnormal detection, Packet pair

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!