文档介绍:一种面向DDoS攻击的网络安全态势评估方法* 本课题得到国家“八六三”高技术研究发展计划项目基金(2006AA01Z437,2007AA01Z475)资助。
作者简介:李珂(1983-),男,河南省沈丘县人,硕士在读,主要研究领域为信息对抗理论与技术、安全态势评估。连一峰(1974-),男,江苏苏州人,博士,副研究员,主要研究领域为网络安全、脆弱性评估。
李珂1,3, 连一峰1,2,3
1(信息安全国家重点实验室(中国科学院研究生院) 北京 100049)
2(中国科学院软件研究所北京 100190)
3(中国科学院研究生院北京 100190)
A Method work Security Situation Assessment under DDoS Attacks*
LI Ke1,3, LIAN Yi-Feng1,2,3
1(State Key Laboratory of Information Security, Graduate University, Chinese Academy of Sciences, Beijing 100049)
2(Institute of Software, Chinese Academy of Sciences, Beijing 100190)
3(Graduate University, Chinese Academy of Sciences, Beijing, 100190)
+ Corresponding author: Phn: +86-10-62661708-9033, Fax: +86-10-62661700, E-mail: ******@.
Abstract: Security situational assessment has been a hot topic of the security field. This paper analyzes the impacts that all congested links cause on application servers work architecture, introduces graph algorithms and presents a new method to assess work security situation under DDoS attacks, putes the influence value that attacks cause work security situation according to the distance between the congested link and application server and whether the link is in the min-cut set, this value is used for quantitative situation assessment. The applicability of this method is verified by simulated experiments with work simulation tool.
Key words: security situati