Title :
Extraction for Characteristics of Anomaly Accessed IP Packets Based on Statistical Analysis
Author :
Oshima, Shunsuke ; Nakashima, Takuo ; Nishikido, Yusuke
Author_Institution :
Yatsushiro Nat. Coll. of Technol., Yatsushiro
Abstract :
To defend DoS (denial of service) Attacks, the access filtering mechanism is adopted on the end servers or the IDS (intrusion detection system). The difficulty to define the filtering rules comes from the hardness to identify normal and anomaly packets from the incoming packets. In this paper, we analyze the amount of incoming packet to our college and extract characters of IP packets classified by the source and destination IP addresses and destination port numbers. We can clearly identify the countries and providers of denial packets and extract the characters of crawls of search engines.
Keywords :
IP networks; security of data; statistical analysis; anomaly accessed IP packets; anomaly packet identification; denial of service attacks; denial packets; destination IP addresses; destination port numbers; filtering mechanism; intrusion detection system; normal packet identification; search engines; statistical analysis; Statistical analysis;
Conference_Titel :
Intelligent Information Hiding and Multimedia Signal Processing, 2007. IIHMSP 2007. Third International Conference on
Conference_Location :
Kaohsiung
Print_ISBN :
978-0-7695-2994-1
DOI :
10.1109/IIHMSP.2007.4457652