北京邮电大学学报

  • EI核心期刊

北京邮电大学学报 ›› 2017, Vol. 40 ›› Issue (6): 14-18.doi: 10.13190/j.jbupt.2017-104

• 论文 • 上一篇    下一篇

一种基于接口异常度可信判断的内容中心网络缓存污染防御方法

朱轶, 王新平, 黄茹辉, 康浩浩, 曹清华   

  1. 江苏大学 计算机科学与通信工程学院, 江苏 镇江 212013
  • 收稿日期:2017-06-09 出版日期:2017-12-28 发布日期:2017-12-28
  • 作者简介:朱轶(1977-),男,副教授,E-mail:zhuyi@ujs.edu.cn.
  • 基金资助:
    国家自然科学基金项目(41474095)

A Cache Pollution Defense Mechanism Based on Trust Judgment of Face Abnormality in Content Centric Networking

ZHU Yi, WANG Xin-ping, HUANG Ru-hui, KANG Hao-hao, CAO Qing-hua   

  1. School of Computer Science and Communication Engineering, Jiangsu University, Jiangsu Zhenjiang 212013, China
  • Received:2017-06-09 Online:2017-12-28 Published:2017-12-28
  • Supported by:
     

摘要: 针对内容中心网络的缓存污染攻击问题,提出一种基于接口异常度可信判断的限速机制,根据接口异常度检测缓存污染攻击类型,并结合接口命中率对异常接口进行限速控制.仿真结果表明,该机制可以同时防御缓存恶意侵占(Locality-Disruption)和虚假内容缓存(False-Locality)2种攻击,且通过引入False-Locality攻击的可信度判断,可大概率区分异常的False-Locality攻击和正常的突发拥塞事件,避免错误抑制Flash Crowd网络行为.

关键词: 缓存污染攻击, 防御方法, 接口限速, 突发拥塞, 可信判断

Abstract: To solve the problem of cache pollution attack in content centric networking, a traffic limiting control mechanism was proposed based on trusted judgment of face abnormality. By detecting the abnormality status of each face, the traffic of abnormal face was limited according to its request hit probability. Simulations show that, this mechanism can defend against both locality-disruption and false-locality attacks. In addition, using the trust judgment of face abnormality, the false-locality attack can be distinguished from the flash crowd event with large probability. So, it can avoid mistakenly restraining the normal network behavior.

Key words: cache pollution attack, defense mechanism, face acceptance limitation, flash crowd, trust judgment

中图分类号: