节点文献
因特网防御DoS攻击技术评述Ⅰ——攻击分类与特征·包过滤·攻击检测与防御
A Review on Anti-DoS Attack Techniques on Internet Ⅰ ——Classifications and characteristics · Packet filtering · Attack detection and defending
【摘要】 概述了因特网上DoS攻击的相应分类及基本特征 ,评述了包过滤、攻击检测及防御技术的最新成果 .前一部分介绍了入口过滤、基于路由的过滤网和有效源地址强制协议 .后一方面主要讨论了适合于检测攻击包的技术 ,介绍了新近提出的频谱分析方法和泛滥检测系统 .简要评述了已有的防御SYN泛滥攻击的技术措施 ,介绍了Cisco的TCP拦截技术 ,提出了改进策略
【Abstract】 For the DoS attacks on Internet, the basic circumstances and their classification are outlined. The contents include the packet filtering and the attack detection together with prevention techniques of the SYN flooding attacks. For the prevention of SYN flooding attacks, the Cisco TCP interception technique and the corresponding improvement scheme are suggested.
【关键词】 因特网;
DoS攻击;
数据包过滤;
攻击检测;
TCP拦截;
【Key words】 Internet; DoS attack; packet filtering; attack detection; TCP interception;
【Key words】 Internet; DoS attack; packet filtering; attack detection; TCP interception;
【基金】 浙江省科技厅重点科研项目 (2 0 0 3C2 10 0 9);宁波大学校内科研基金资助
- 【文献出处】 宁波大学学报(理工版) ,Journal of Ningbo University(Natural Science & Engineering Edition) , 编辑部邮箱 ,2004年04期
- 【分类号】TP393.08
- 【被引频次】9
- 【下载频次】117