摘要
拒绝服务(denialofservice)攻击对网络带来的危害越来越严重,SYNFlooding攻击是DoS攻击中著名的一种。本文介绍了在网络测量平台上基于策略系统的SYNFlooding攻击防御机制。文章首先简单介绍了SYNFlooding的攻击原理、防御方法以及网络监测系统,然后对策略系统进行了讨论,最后详细阐述了网络测量平台上基于策略系统的SYNFlooding攻击检测和追踪工具的设计与实现,并进行了分析。
With the rapid development of network technology, the damage that brings by denial of service attacks to the network is becoming more serious. SYN flooding attack is a famous kind. In this paper a mechanism is introduced which prevents SYN flooding attacks based on the policy system upon the network measurement platform. Firstly, the principle and prevention of SYN flooding attack and the network measurement system are introduced in general. And then the policy system is addressed. Finally, the design and implementation of tools for detecting and tracing of SYN flooding attack which based on the policy system upon the network measurement platform are expatiated in detail, and some analyses are discussed.
出处
《电信科学》
北大核心
2004年第1期12-17,共6页
Telecommunications Science
基金
受国家高技术研究发展计划"863"基金(No.2001AA112090)资助