计算机与现代化

• 信息安全 • 上一篇    下一篇

基于云环境下Web服务应用层DDoS攻击检测系统

  

  1. 广州体育职业技术学院,广东广州510650
  • 收稿日期:2015-11-10 出版日期:2016-06-16 发布日期:2016-06-17
  • 作者简介:邓娉(1978-),女,广东梅州人,广州体育职业技术学院副研究馆员,本科,研究方向:信息系统项目管理。

DDoS Attack Detection System Based on Web Service Application Layer under Cloud Environment

  1. Guangzhou Polytechnic of Sports, Guangzhou 510650, China
  • Received:2015-11-10 Online:2016-06-16 Published:2016-06-17

摘要: Web服务技术具有低耦合度、跨平台和语言无关等优点,使其在网络和电子商务中得到广泛应用。针对云计算环境中的Web服务应用层容易遭受攻击的问题,提出一种检测XML和HTTP层分布式拒绝服务(DDoS)攻击的防御系统,并嵌入到云环境中,实现对云中介和云服务提供商的保护。首先,从属于特定简单对象访问协议(SOAP)正常操作中提取数据集的特征值,构建相应的高斯请求模型;然后,对Web服务的网络服务描述语言(WSDL)中的一些属性进行设置,实现对攻击的初步过滤;最后,对服务请求的HTTP头部和XML内容进行检查,并与模型数据比较,进一步实现攻击检测。实验结果表明,该系统能够有效地预防多种DDoS攻击,且消耗较少的响应时间。

关键词: 云环境, Web服务, 分布式拒绝服务, 攻击检测, 云计算

Abstract: Web service technology is of the advantages of low coupling degree, cross platform and language independence, so it has been widely used on the network and electronic commerce. Aiming at the problem that the application layer of Web services in cloud computing environment is vulnerable to be attacked, a defense system is proposed to detect the distributed denial of service (DDoS) attack in XML and HTTP layer. First, extracting characteristic values of the data set from belonging to a particular Simple Object Access Protocol (SOAP) normal operation, the corresponding Gaussian request model was constructed; after setting some of the attributes of network services for Web Services Description Language (WSDL),  attack was achieved initial filter; finally, the service request HTTP headers and XML content were examined and compared with the model data, and the further attack detection was implemented. Experimental results show that the system can effectively prevent many DDoS attacks, and consume less response time.

Key words: cloud environment, Web services, distributed denial of service, attack detection, cloud computing

中图分类号: