期刊文献+

一种基于入口地址标记的DoS攻击防御模型

An Anti-DoS Attack Model Based on Ingress Address Marking
下载PDF
导出
摘要 对因特网上的DoS攻击进行了分类,分析讨论了已有的各种防范技术,提出了新的在AS的入口路由器端进行地址标记的IAM模型,使受害主机能通过分析攻击数据报中的地址标记信息,直接获取攻击入口路由器地址。随后可通知该路由器采取拦截或过滤等防范措施。 The paper gives a classification of DoS attacks on Internet. The techniques to defeat DoS are analyzed. It presents a new scheme, IAM, with which can embed IP address into the packet at ingress router. Thus victim can recover the address of the ingress router by analyzing attack packets and tell the ingress router to do interceptions or filtering to restrain DoS attacks.
出处 《计算机工程》 CAS CSCD 北大核心 2004年第15期122-123,138,共3页 Computer Engineering
基金 国家自然科学基金资助项目(60273094) 浙江省科技厅重点科研资助项目(2003C21009) 宁波大学校内基金资助项目
关键词 拒绝服务攻击 路径追溯 IAM DoS attack Traceback IAM
  • 相关文献

参考文献9

  • 1[1]Moore D, Voelker G, Savage S. Interring Internet Denial of Service Activity. 10th USENIX Security Symposium, Washington D.C., 2001
  • 2金光,赵一鸣,沈明昕,钱家麒.可信赖网络中的TCP拦截扩散策略[J].计算机工程,2004,30(1):118-120. 被引量:2
  • 3[3]Ferguson P, Senie D. Network Ingress Filtering: Defeating Denial of Service Attacks Which Employ IP Source Address Spoofing.RFC2827, 2000-05
  • 4[4]Bellovin S. ICMP Traceback Messages. Internet Draft: fraft-bellovinitrace-00.txt, 2000-03
  • 5[5]Savage S, Wetherall D, Karlin A, et al. Practical Network Support for IP Traceback. SIGCOMM'2000, Stockholm, 2000-08
  • 6[6]Song D, Perrig A. Advanced and Authenticated Marking Schemes for IP Traceback. IEEE INFOCOM2001, Anchorage, 2001
  • 7[7]Dean D, Franklin M, Stubblefield A. An Algebraic Approach to IP Traceback. ACM Transactions on Information and System Security (TISSEC), 2002-05
  • 8[8]Snoeren A, Partridge C, Sanchez L, et al. Single-packet IP Traceback.IEEE/ACM Transactions on Networking, 2002, 10
  • 9[9]Morrow C, Gemberling B. BlackHole Route Server and Tracking Traffic on an IP Network. UUNET WorldCom. Inc. www.secsup.org/Tracking/, 2001

二级参考文献3

共引文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部