摘要
对确定包标记算法中,标记信息在网络中传输缺乏验证,容易被受控路由器篡改而产生虚假标记,导致获取错误入口地址的问题进行了研究,引入基于身份的签名方案,结合IPv6协议特点,提出了逐跳认证的概念和新的认证确定包标记算法。
In deterministic packet marking algorithm, when marking information transmitted in the network lack of verification, and be easily tampered with a false marker by controlled routers, leading to the wrong ingress address access issues, the paper introduced an identity-based signature scheme, combine the characteristic of IPv6 protocol, propose the Hop-by-Hop authentication concept and a new certification deterministic packet marking algorithm.
出处
《微计算机信息》
2009年第12期131-133,共3页
Control & Automation
关键词
拒绝服务攻击
IP追踪
IPV6
基于身份认证
确定包标记
denial of service attack
IP traceback
IPv6
identity-based authentication
deterministic packet marking