首页> 外文会议>World Multi-Conference on Systemics, Cybernetics and Informatics >A Filter Check System for Defeating Attacks which employ IP Source Address Spoofing
【24h】

A Filter Check System for Defeating Attacks which employ IP Source Address Spoofing

机译:用于击败采用IP源地址欺骗的攻击的过滤检查系统

获取原文

摘要

To secure network layer is needed for stable IP network as infrastructure. As TCP SYN flooding attack shows, sender of attack packet generally masquerades as others by spoofing source IP address in the packet. IP network becomes more secure, if backbone network through which IP spoofing packet does not flow can be realized. Egress filtering is a way of not flowing IP spoofing packet into backbone network. Each customer network should activate egress filtering for being an effective stratagem. From not only the view point of IP network security but also suppression of threat to be springboard, egress filter must be applied in all customer networks. However, no tool is ready for easily checking egress filtering. In this paper, we show an egress filter check system which can obtain results of egress filter check on routers in a path to arbitrary host.
机译:稳定的IP网络作为基础架构需要安全网络层。随着TCP SYN泛滥攻击展示,通过欺骗数据包中的源IP地址,攻击包的发件人通常用伪装。 IP网络变得更加安全,如果骨干网络通过其通过哪个IP欺骗数据包没有流动。出口过滤是一种不将IP欺骗数据包流入骨干网的方式。每个客户网络都应激活出口过滤,以实现有效的Stratagem。不仅是IP网络安全的观点,还可以抑制媒体跳板,必须在所有客户网络中应用出口过滤器。但是,没有工具可以轻松检查出口过滤。在本文中,我们显示了一个出口滤波器检查系统,可以在路径中的路由器上获取出口过滤器检查的结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号