摘要 |
A method for defending a distributed denial of service (DDoS) attack is provided, which includes: detecting a running status of a server or a network data stream flowing to the server at the server side, to determine whether a DDoS attack occurs on the server; and notifying a data stream cleaner that the data stream cleaner needs to clean the network data stream flowing to the server, if the DDoS attack occurs on the server. A network device and a network system are further provided. Therefore, detection and preliminary defense can be carried out at an attacked target-side, so as to accurately obtain the status of the attack and provide information required for the defense, thereby effectively defending the DDoS attack.
|