ipv6环境下syn-flood攻击防范的研究 study of attack guards against syn-flood in ipv6 environment.pdfVIP

  • 12
  • 0
  • 约1.05万字
  • 约 4页
  • 2017-08-27 发布于上海
  • 举报

ipv6环境下syn-flood攻击防范的研究 study of attack guards against syn-flood in ipv6 environment.pdf

ipv6环境下syn-flood攻击防范的研究 study of attack guards against syn-flood in ipv6 environment

27卷第6期 微电子学与计算机 Vd.27No.6 2010年6月 MICROELECTRONICSCOM【PU7IERJune2010 IPv6环境下SYN—Flood攻击防范的研究 连 红 (贵州广播电视大学理工教学部,贵州贵阳550004) 摘要:在分析几种常规防范I)cbs方法特点和不足的基础上,结合数据包流量检测技术和改进的TcPCookie技 Detectionand 术,在IPv6环境下建立了一种数据包检测——智能过滤PDIF(PacketIntelligenceFilter)防御SYN Hood攻击的模型.通过检测数据包流量是否超出闻值来分析是否发生攻击,同时采用一种验证远程客户端TCP连 接有效性的算法来实现智能过滤,将DDoS攻击分组拦截而让正常的网络流量通过,在实验室测试中取得了较好的 效果. 关键词:攻击;数据包;流量检测;保护层;智能过滤 中图分类号:TP393.08 文献标识码:A 文章编号:1000—7180(2010)06—0043一04 ofAttackGuards SYN-FloodinIPv6 Study Against LIAN Hong of V ScienceandTechnology,GuizhouRadioI 550004,China) (Department University,Guiyang onthe ofcharacteristicsand ofseveralroutineattack Abstract:Basedanalyses disadvantages guardsagainstDDoS.along withthe of flow attack ocxnbinationpocketdetectiontechnologyandthe technology.anguardspat— improved唧Cookie tern SYNHoodisestablishedinIPv6Environment.whichiscalled Detectionand Fil· against FIDIF(Packet Intelligence of whetherthe overflowsthethreshold.anc绷be anddetected.Anin— mes/is packet attack analy∞d ter).By detecting of tO filterisrealized theTCPac。瞄effectivenessrenaoteclientstO and telligence byveritying implementpocketintercept let normaltraffic.Trialtest毒areconducted inthe laboratOry. thl-ough

文档评论(0)

1亿VIP精品文档

相关文档