Defending Against UDP Flooding by Negative Selection Algorithm based on Eigenvalue Sets
A defense system against UDP Flooding attack with artificial immune detection was put forward, and four sections detection with weight was proposed based on considering the uncontinuity of IP address. Eigenvalue matching was introduced based on analyzing the r-continuous bits matching rule. Using the new matching rule the negative selection algorithm was improved both in detector generation and black hole detection. The detectors and the eigenvalue filter windows are applied to detect all of nonself modes. Simulation results show that the defense system could effectively detect the fake IP addresses from UDP flooding and insure the server could be accessed by legal users. Also, the consumption of the detection time is not increased significantly.
UDP flooding artificial immune detection negative selection black holes eigenvalue
Xu Rui Ma Wen-li Zheng Wen-ling Ma Wen-li Zheng Wen-ling
Bioelectrical Research Center,Shanghai University Shanghai China Institute of Genetic Engineering,Southern Medical University Shanghai China
国际会议
The Fifth International Conference on Information Assurance and Security(第五届信息保障与安全国际会议)
西安
英文
342-345
2009-08-18(万方平台首次上网日期,不代表论文的发表时间)