摘要
在对软件漏洞进行研究的基础上,从发掘网络设备硬件漏洞的角度对网络信息安全进行了思考。分析了网络信息安全现状,列举了当前主要的网络防御技术,分析了交换芯片AL216的组成结构和设计原理,研究了如何利用交换芯片AL216为核心设计实现以太网交换设备,并讨论了利用该芯片设计交换设备可能存在的硬件漏洞。通过论述表明了网络设备硬件漏洞存在的可行性和隐蔽性。
Based on the research of software vulnerability, information security is discussed in the view of discovering hardware vulnerability of network equipment. The actuality of network information security is analyzed. Several current popular technologies of network defense are listed out. The structure and principle orAL216 is analyzed. It's researched that how to design ethel'net switch equipment usingAL216. The hardware vulnerability ofthe equipment is discussed. It's testified that the hardware vulnerability ofnetwork equipment is possible and difficulty to be detected.
出处
《计算机工程与设计》
CSCD
北大核心
2009年第22期5075-5077,5081,共4页
Computer Engineering and Design
基金
国家863高技术研究发展计划基金项目(2006AA01Z404)
关键词
信息安全
网络防御
硬件漏洞
AL216
以太网
information security
network defense
hardware vulnerability
AL216
ethemet