FIELD: physics; computer engineering.
SUBSTANCE: invention relates to ensuring information security on web serves. In order to monitor security of a web server, such quality factors of operation of the web server as query runtime t and number of link errors eERROR are given at a preliminary stage. A loading test is then carried out to determine threshold values of the query runtime of the web server (tCRIT) and number of link errors (eERROR-CRIT). Analytical models for predicting query runtime tPRED are constructed. Monitoring period TM is determined at the functioning stage of the server, after which N queries are received for establishing connection during the monitoring period TM. Current values of quality factors of operation of the web server t,eERROR are derived. The predicted query runtime tPRED is then calculated based on the said values. Values of tPRED and eERROR are then compared with threshold values of the quality factors and if threshold values are greater than the said values, there is an attack.
EFFECT: invention improves quality of monitoring security of a web server and provides on-line detection of critical mode of operation of the web server caused by unknown and known "denial of service" attacks, as well as legitimate user requests.
3 dwg
Title | Year | Author | Number |
---|---|---|---|
ROBUST AND SECURE HARDWARE-COMPUTER SYSTEM IN CLOUD COMPUTING ENVIRONMENT | 2013 |
|
RU2557476C2 |
METHOD TO PROVIDE INFORMATION SECURITY DURING USER ACCESS TO EXTERNAL INFORMATION RESOURCES VIA INTERNET | 2011 |
|
RU2445692C1 |
METHOD OF DETECTING COMPUTER ATTACKS TO NETWORKED COMPUTER SYSTEM | 2013 |
|
RU2538292C1 |
METHOD FOR PROTECTED REMOTE ACCESS TO INFORMATION RESOURCES | 2013 |
|
RU2530691C1 |
METHOD FOR MONITORING SAFETY OF AUTOMATED SYSTEMS | 2004 |
|
RU2261472C1 |
METHOD OF PROTECTION OF SERVICE SERVER FROM DDOS ATTACK | 2018 |
|
RU2679219C1 |
AUTOMATED OPERATION-INFORMATIONAL SYSTEM FOR MAINTENANCE OF VOTING PREPARATION AND ACTUAL VOTING | 2005 |
|
RU2303816C2 |
SYSTEM AND METHOD OF RECOVERY IN EMERGENCY SITUATIONS AND CONTROL FOR E-MAIL SYSTEM | 2005 |
|
RU2395116C2 |
METHOD AND APPARATUS FOR FORWARDING PACKETS FOR HETEROGENEOUS NETWORK | 2020 |
|
RU2822609C1 |
METHOD FOR INTERACTION OF TERMINAL CLIENT DEVICE WITH SERVER OVER INTERNET WITH HIGH LEVEL OF SECURITY FROM DDOS ATTACK AND SYSTEM FOR REALISING SAID METHOD | 2012 |
|
RU2496136C1 |
Authors
Dates
2010-02-10—Published
2007-06-04—Filed