Sequential testing with tabulated online packet statistics for DDoS Detection

碩士 === 國立交通大學 === 電信工程系所 === 93 === In this thesis, we present an efficient method for detecting and filtering denial-of-service bandwidth attacks. Our system called STTOPS(Sequential Testing with Tabulated Online Packet Statistics for DDoS Detection) can monitor a large number of network addresses...

Full description

Bibliographic Details
Main Authors: Meng-Yu Wu, 吳孟諭
Other Authors: Tsern-Huei Lee
Format: Others
Language:zh-TW
Published: 2005
Online Access:http://ndltd.ncl.edu.tw/handle/70753027455885892680
Description
Summary:碩士 === 國立交通大學 === 電信工程系所 === 93 === In this thesis, we present an efficient method for detecting and filtering denial-of-service bandwidth attacks. Our system called STTOPS(Sequential Testing with Tabulated Online Packet Statistics for DDoS Detection) can monitor a large number of network addresses in a compact, fixed-size structure using several effective heuristics. We demonstrate that STTOPS can detect bandwidth attacks in a standard benchmark dataset with a higher average accuracy and a lower average false alarms than TOPS. A key benefit of STTOPS is that it uses less computational resources than TOPS and does not slow down during an attack.