The number of significant security incidents tends to increase day by day in recent years. The distributed denial of service attacks and worm attacks extensively influence the network and cause serious damages.
In the thesis, we analyze these two critical distributed attacks. We propose an intrusion detection approach against this kind of attacks and implement an attack detection system based on the approach. We use anomaly detection of intrusion detecting techniques and observed the anomalous distribution of packet fields to perform the detection. The proposed approach records the characteristics of normal traffic volumes so that to make detections more flexible and more precise. Finally, we evaluated our approach by experiments.
Identifer | oai:union.ndltd.org:NSYSU/oai:NSYSU:etd-0729103-165244 |
Date | 29 July 2003 |
Creators | Cheng, Wei-Cheng |
Contributors | Chia-Mei Chen, Jinn-Shing Cheng, Nian-shing Chen |
Publisher | NSYSU |
Source Sets | NSYSU Electronic Thesis and Dissertation Archive |
Language | English |
Detected Language | English |
Type | text |
Format | application/pdf |
Source | http://etd.lib.nsysu.edu.tw/ETD-db/ETD-search/view_etd?URN=etd-0729103-165244 |
Rights | campus_withheld, Copyright information available at source archive |
Page generated in 0.0016 seconds