连红. IPv6环境下SYN-Flood攻击防范的研究[J]. 微电子学与计算机, 2010, 27(6): 43-46.
引用本文: 连红. IPv6环境下SYN-Flood攻击防范的研究[J]. 微电子学与计算机, 2010, 27(6): 43-46.
LIAN Hong. Study of Attack Guards Against SYN-Flood in IPv6 Environment[J]. Microelectronics & Computer, 2010, 27(6): 43-46.
Citation: LIAN Hong. Study of Attack Guards Against SYN-Flood in IPv6 Environment[J]. Microelectronics & Computer, 2010, 27(6): 43-46.

IPv6环境下SYN-Flood攻击防范的研究

Study of Attack Guards Against SYN-Flood in IPv6 Environment

  • 摘要: 在分析几种常规防范DDoS方法特点和不足的基础上,结合数据包流量检测技术和改进的TCP Cookie技术,在IPv6环境下建立了一种数据包检测---智能过滤PDIF(Packet Detection and Intelligence Filter)防御SYNFlood攻击的模型.通过检测数据包流量是否超出阈值来分析是否发生攻击,同时采用一种验证远程客户端TCP连接有效性的算法来实现智能过滤,将DDoS攻击分组拦截而让正常的网络流量通过,在实验室测试中取得了较好的效果.

     

    Abstract: Based on the analyses of characteristics and disadvantages of several routine attack guards against DDoS, along with the combination of pocket flow detection technology and the improved TCP Cookie technology, an attack guards pattern against SYN Flood is established in IPv6 Environment, which is called PDIF (Packet Detection and Intelligence Filter).By means of detecting whether the packet overflows the threshold, an attack can be analyzed and detected.An intelligence filter is realized by verifying the TCP access effectiveness of remote clients to implement pocket intercept and to let through normal traffic.Trial tests are conducted successfully in the laboratory.

     

/

返回文章
返回