Method for dynamically setting DDOS attack detection defense threshold

The embodiment of the invention discloses a method for dynamically setting a DDOS attack detection defense threshold. The method is used for a main control board of a distributed firewall. The method comprises the following steps: respectively sending an initial defense threshold to a service board...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: LIU HUI, CHANG LISHAN
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The embodiment of the invention discloses a method for dynamically setting a DDOS attack detection defense threshold. The method is used for a main control board of a distributed firewall. The method comprises the following steps: respectively sending an initial defense threshold to a service board of a distributed firewall, so that the service board performs detection defense on attack traffic received by a protected host shunted to the service board according to the initial defense threshold; receiving actual attack traffic which is returned by each service board and detected in the first duration; calculating the attack proportion of each service board according to the actual attack traffic of all service boards in the first duration; and according to the attack proportion, a defense threshold value of the service board is adjusted, and the adjusted defense threshold value is sent to each service board, so that the service board performs detection defense on the attack traffic received by the protected hos