DocumentCode
3765881
Title
DDOS attack detection using packet size interval
Author
Lu Zhou; Mingchao Liao; Cao Yuan; Zhongyin Sheng; Haoyu Zhang
Author_Institution
School of Mathematics and Computer Science, Wuhan Polytechnic University, China
fYear
2015
Firstpage
1
Lastpage
7
Abstract
Distributed Denial-of-Service (DDoS) attacks are a great threat to the Internet. Enabling accurately detection of Distribute Denial-of-Service attacks is important because it is the foundation of defense against the attacks. In this paper, we focus on the distribution difference of the packet size between normal traffic flows and attack traffic flows and propose an entropy-based detection measurement. The measurement can highlights the characteristics of attack traffic. The experimental results show that the proposed measurement can effectively and clearly distinguish attack flows from normal flows in both low and high packet rate.
Publisher
iet
Conference_Titel
Wireless Communications, Networking and Mobile Computing (WiCOM 2015), 11th International Conference on
Type
conf
DOI
10.1049/cp.2015.0754
Filename
7446886
Link To Document