Title :
Selection of parameter for SYN flood source-end detection
Author :
Yang Bo ; Wang Xueyuan
Author_Institution :
Resources & Equip. Bur., Neijiang Normal Univ., Neijiang, China
Abstract :
DDoS attack has always been a major threat for information security. Among the DDoS methods, SYN flood is the most common. Having realized the complexity and difficulty in dest-end detection, scholars switched their focus on `source-end detection´. And CUSUM is considered an efficient method in source-end detection. However, now there is no guidance about how to set the parameters in CUSUM, which dramatically affects the outcome of the detection. So this article discusses the selection of this parameter, to provide reference for further research.
Keywords :
security of data; CUSUM; DDoS attack; DDoS methods; SYN flood source-end detection; dest-end detection; information security; parameter selection; Computers; Educational institutions; Floods; IP networks; Internet; Random sequences; Servers; CUSUM; DDos; Pcap; SYN flood;
Conference_Titel :
Electronic and Mechanical Engineering and Information Technology (EMEIT), 2011 International Conference on
Conference_Location :
Harbin, Heilongjiang, China
Print_ISBN :
978-1-61284-087-1
DOI :
10.1109/EMEIT.2011.6022850