Journal on Communications ›› 2017, Vol. 38 ›› Issue (Z1): 19-24.doi: 10.11959/j.issn.1000-436x.2017230

• Papers • Previous Articles     Next Articles

Web plug-in paradigm for anti-DoS attack based on end hopping

Le-yi SHI,Hui SUN,Yu-wen CUI,Hong-bin GUO,Jian-lan LI   

  1. College of Computer &Communication Engineering,China University of Petroleum ,Qingdao 266580,China
  • Online:2017-10-01 Published:2018-06-07
  • Supported by:
    The National Natural Science Foundation of China(61772551);The Science and Technology Plan of Qing-dao(15-9-1-79-jch)

Abstract:

The end hopping technology is a proactive network defense technology proposed to mitigate the network attack.By changing the IP address,port and other information in the communication pseudo-randomly to achieve the purpose of confusing the attacker.The plug-in mechanism based on the end hopping technology was introduced,and it was applied to the field of Web protection.This plug-in was designed to confuse and interfere with attackers.The plug-in model was divided into two working modes,which are non-end-hopping mode and end hopping mode.The plug-in according to the instructions of the UDP spokesman to switch its own work mode and when the communication link is safe and reliable,it choose the fist mode which can reduce the cost of services.Another,when the network is attacked,the plug-in switches to the end hopping mode to ensure the safety of communications.The experimental results show that the plug-in mechanism based on end hopping has high service and security performance under SYN Flood attack and UDP Flood attack.

Key words: network security, active defense, end hopping, Web plug-in, DoS attack

CLC Number: 

No Suggested Reading articles found!