A multi-core based DDoS detection method
Dongqi Wang, Zhu yufu, Jie Jia · 2010
It is becoming increasing difficult to implement an effective DDoS Defense System, because (1) the raising sophistication of DDoS attack requires more complex analysis to detect, (2) internet traffic grows bigger and bigger which needs more powerful system to monitor. Taking advantages of the great improvement in multi-core technology, a multi-core based DDoS detection system (MIFDDS) is proposed in this work. MIFDDS was the redesign of the IP flow based DDoS detection system (IFDDS) [1]. In MIFDDS, multi-core methodology was used to achieve high detecting efficiency. Experimental results show that: MIFDDS maintained the good detection precision of IFDDS and increased detecting speed; MIFDDS consumed more RAM but not too much; MIFDDS also improved CPU's efficiency.