摘要
从军事跳频通信中得到启发,提出端信息跳变的概念,即通过伪随机改变端到端的数据传输中通信端口、地址、时隙、加密算法甚至协议等端信息,破坏敌方攻击干扰,实现主动网络防护。建立了端信息跳变主动防护模型,采用移动代理技术实现了端信息跳变原型系统,解决了同步、数据切换等关键问题,理论分析并实验验证了模型系统的抗拒绝服务和截获攻击特性,证明了端信息跳变策略对于主动网络防护的可行性与有效性。
Motivated by frequency hopping for military communication, end hopping tactic was proposed which can mitigate those threats such as DoS and eavesdrop greatly by changing the end information of port, address, timeslot, cryptographic algorithm or even protocol pseudo-randomly during end to end transmission. An active defense model has been established upon end hopping. Then a test-bed has been implemented through mobile agent with a successful solution of synchronization and handoff. The model shows better performance in both theoretical analysis and empirical studies. The work demonstrates that end information hopping tactic is feasible and effective for active network confrontation.
出处
《通信学报》
EI
CSCD
北大核心
2008年第2期106-110,共5页
Journal on Communications
基金
国家自然科学基金资助项目(60577039)
天津市科技发展计划基金资助项目(05YFGZGX24200)~~
关键词
端信息跳变
网络对抗
拒绝服务
截获
服务跳变
end hopping
network confrontation
denial of service
eavesdrop
service hopping