|
<p class="MsoNormal" align="center" style="MARGIN: 0cm 0cm 0pt; TEXT-ALIGN: center;"><b style="mso-bidi-font-weight: normal;"><span lang="EN-US" style="FONT-SIZE: 16pt; FONT-FAMILY: 宋体;">SYN flood</span></b><b style="mso-bidi-font-weight: normal;"><span style="FONT-SIZE: 16pt; FONT-FAMILY: 宋体;">攻击的原理及其防御<span lang="EN-US"><p></p></span></span></b></p><p class="MsoNormal" align="center" style="MARGIN: 0cm 0cm 0pt; TEXT-ALIGN: center;"><span style="FONT-FAMILY: 宋体; mso-bidi-font-size: 10.5pt;">曲同胤 <span style="mso-spacerun: yes;"> </span>赵敬中<span lang="EN-US"><p></p></span></span></p><p class="MsoNormal" align="center" style="MARGIN: 0cm 0cm 0pt; TEXT-ALIGN: center;"><span style="FONT-FAMILY: 宋体; mso-bidi-font-size: 10.5pt;">(北京理工大学计算机科学与技术系 北京<span lang="EN-US">100081</span>)<span lang="EN-US"><p></p></span></span></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt; TEXT-INDENT: 18pt; mso-char-indent-count: 2.0;"><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">摘要</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><span style="mso-spacerun: yes;"><font face="Times New Roman"> </font></span></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">介绍了</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><font face="Times New Roman">SYN Flood</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">攻击的基本原理,详细地描述了目前几种比较有效的两种防御措施:</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><font face="Times New Roman">SYN</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">-</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><font face="Times New Roman">cookie</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">技术和地址状态监控技术。</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><p></p></span></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt; TEXT-INDENT: 18pt; mso-char-indent-count: 2.0;"><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">关键词</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><font face="Times New Roman"><span style="mso-spacerun: yes;"> </span>SYN Flood</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">攻击</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><span style="mso-spacerun: yes;"><font face="Times New Roman"> </font></span></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">拒绝服务攻击</span><span lang="EN-US" style="FONT-SIZE: 9pt;"><font face="Times New Roman"><span style="mso-spacerun: yes;"> </span>SYN cookie<p></p></font></span></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 21.25pt; TEXT-INDENT: -21.25pt; LINE-HEIGHT: 12pt; mso-line-height-rule: exactly; tab-stops: list 21.25pt; mso-list: l0 level1 lfo1;"><font face="Times New Roman"><b style="mso-bidi-font-weight: normal;"><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt; mso-fareast-font-family: 'Times New Roman';"><span style="mso-list: Ignore;">1<span style="FONT: 7pt 'Times New Roman';"> </span></span></span></b><b style="mso-bidi-font-weight: normal;"><span lang="EN-US" style="FONT-SIZE: 9pt;">SYN Flood</span></b></font><b style="mso-bidi-font-weight: normal;"><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">攻击介绍</span></b><b style="mso-bidi-font-weight: normal;"><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><p></p></span></b></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt; TEXT-INDENT: 21pt; LINE-HEIGHT: 12pt; mso-line-height-rule: exactly;"><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">拒绝服务攻击(</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><font face="Times New Roman">Denial of Service</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">,</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><font face="Times New Roman">DoS</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">)是目前比较有效而又非常难于防御的一种网络攻击方式,它的目的就是使服务器不能够为正常访问的用户提供服务。所以,</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><font face="Times New Roman">DoS</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">对一些紧密依靠互联网开展业务的企业和组织带来了致命的威胁。</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><p></p></span></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt; TEXT-INDENT: 21pt; LINE-HEIGHT: 12pt; mso-line-height-rule: exactly;"><span lang="EN-US" style="FONT-SIZE: 9pt;"><font face="Times New Roman">SYN Flood</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">是最为有效和流行的一种</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><font face="Times New Roman">DoS</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">攻击形式。它利用</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><font face="Times New Roman">TCP</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">三次握手协议的缺陷,向目标主机发送大量的伪造源地址的</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><font face="Times New Roman">SYN</font></span><span style="FONT-SIZE: 9pt; FONT-FAMILY: 宋体; mso-bidi-font-size: 12.0pt; mso-ascii-font-family: 'Times New Roman'; mso-hansi-font-family: 'Times New Roman';">连接请求,消耗目标主机的资源,从而不能够为正常用户提供服务。</span><span lang="EN-US" style="FONT-SIZE: 9pt; mso-bidi-font-size: 12.0pt;"><p></p></span></p>
HWccBWXb.doc
(59.5 KB, 下载次数: 6)
<br/> |
|