RISS 학술연구정보서비스

검색

인기 검색어

    다국어 입력

    http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.

    변환된 중국어를 복사하여 사용하시면 됩니다.

    예시)
    • 中文 을 입력하시려면 zhongwen을 입력하시고 space를누르시면됩니다.
    • 北京 을 입력하시려면 beijing을 입력하시고 space를 누르시면 됩니다.
    닫기

    트래픽의 평균 변화율을 이용한 DDoS 공격 탐지 기법 = DDoS Attack Detection Method Using Average Rate of Change of Traffic

    한글로보기

    https://www.riss.kr/link?id=T12397352

    • 0

      상세조회
    • 0

      다운로드
    서지정보 열기
    • 내보내기
    • 내책장담기
    • 공유하기
    • 오류접수

    부가정보

    다국어 초록 (Multilingual Abstract) kakao i 다국어 번역

    DDoS(Distributed Denial of Service) attack is arising as the most serious problem among current problems of computer security. With the development of attack tools and increasement in zombie computer, a threat to security is larger and consequently Internet is recently exposed to many DDoS attacks. Due to varying attacks circumventing vulnerability of equipment and the development of attack tools using the abovemethod, new DDoS attacks have increased. Therefore, it is very important to detect and prevent the attacks before paralyzing the system or network. Therefore this experimentation is focusedon the detection mechanism of DDoS attack that can minimize damages by perceiving attack characteristics.
    In this thesis simulated attacks on the network by means of DDoS attack tool that is most frequently used and has various types of attacks, is applied. For traffic collection, characteristics of attack traffic protocols were analyzed by using Wireshark, and based on this, three kinds(average traffic volume, attack traffic volume by protocols, mean ratio of change by protocols) of marginal value in the system were established to detect attack. To estimate or verify detection efficiency of suggested system, It was compared with commercial programs.
    Detection mechanism suggested in this result has the following advantages. It analyzed characteristics on the network through various attacks and detected exactly by using three kinds of marginal value. Using step-by-step detection mechanism for attacks, it didn’t burden network and system. It could set up a policy suitable for the actual system by establishing marginal value through many actual attacks and showed improved detection performance since a suggested detection model decreased the rate of wrong detection.
    번역하기

    DDoS(Distributed Denial of Service) attack is arising as the most serious problem among current problems of computer security. With the development of attack tools and increasement in zombie computer, a threat to security is larger and consequently In...

    DDoS(Distributed Denial of Service) attack is arising as the most serious problem among current problems of computer security. With the development of attack tools and increasement in zombie computer, a threat to security is larger and consequently Internet is recently exposed to many DDoS attacks. Due to varying attacks circumventing vulnerability of equipment and the development of attack tools using the abovemethod, new DDoS attacks have increased. Therefore, it is very important to detect and prevent the attacks before paralyzing the system or network. Therefore this experimentation is focusedon the detection mechanism of DDoS attack that can minimize damages by perceiving attack characteristics.
    In this thesis simulated attacks on the network by means of DDoS attack tool that is most frequently used and has various types of attacks, is applied. For traffic collection, characteristics of attack traffic protocols were analyzed by using Wireshark, and based on this, three kinds(average traffic volume, attack traffic volume by protocols, mean ratio of change by protocols) of marginal value in the system were established to detect attack. To estimate or verify detection efficiency of suggested system, It was compared with commercial programs.
    Detection mechanism suggested in this result has the following advantages. It analyzed characteristics on the network through various attacks and detected exactly by using three kinds of marginal value. Using step-by-step detection mechanism for attacks, it didn’t burden network and system. It could set up a policy suitable for the actual system by establishing marginal value through many actual attacks and showed improved detection performance since a suggested detection model decreased the rate of wrong detection.

    더보기

    목차 (Table of Contents)

    • Ⅰ. 서 론 1
    • Ⅱ. DDoS 공격 탐지 4
    • 2.1 DDoS 공격 4
    • 2.2 DDoS 공격 탐지 도구 8
    • Ⅰ. 서 론 1
    • Ⅱ. DDoS 공격 탐지 4
    • 2.1 DDoS 공격 4
    • 2.2 DDoS 공격 탐지 도구 8
    • . 2.3 기존 방법의 문제점 11
    • III. 제안한 DDoS 공격 탐지 14
    • 3.1 공격 탐지 기법 14
    • 3.2 임계치 설정 19
    • 3.3 공격 탐지 27
    • Ⅳ. 실혐 및 결과 고찰 29
    • 4.1 실험 29
    • 4.1 결과 고찰 33
    • Ⅴ. 결론 41
    더보기

    분석정보

    View

    상세정보조회

    0

    Usage

    원문다운로드

    0

    대출신청

    0

    복사신청

    0

    EDDS신청

    0

    동일 주제 내 활용도 TOP

    더보기

    주제

    연도별 연구동향

    연도별 활용동향

    연관논문

    연구자 네트워크맵

    공동연구자 (7)

    유사연구자 (20) 활용도상위20명

    이 자료와 함께 이용한 RISS 자료

    나만을 위한 추천자료

    해외이동버튼