Computer Science ›› 2013, Vol. 40 ›› Issue (Z11): 210-213.

Previous Articles     Next Articles

Research of New SYN Flood Defense Model Based on Linux

LIU Yun   

  • Online:2018-11-16 Published:2018-11-16

Abstract: The SYN Flood is a typical denial of service attack technology and endangers the network using the security vulnerabilities of the TCP protocol.There is no good way to completely solve it at present.This paper analyzed the three existing SYN Flood defense model:the SYN Cookie,the SYN Gateway,the SYN Proxy,and put forward the enhanced SYN Flood defense model,and researched the related algorithm,and implemented the model based on linux,and tested the defense model last.The result of the test shows that the enhanced SYN Proxy model can resist the high intensity SYN Flood attack and be better superiority than the existing model.

Key words: SYN Flood attack,SYN Cookie,Enhanced SYN Proxy model,Linux platform,Handshake information

[1] 一江水.TCP协议三次握手过程分析[EB/OL].http://www.cnblogs.com/rootq/articles/1377355.htm,2013-01-05
[2] 李蓬.DDoS攻击原理及其防御机制的研究[J].通信技术,2010,3(4):96-98
[3] 胡鸿,袁津生,郭敏哲.基于TCP缓存的DDoS攻击检测算法[J].计算机工程,2009,5(16):112-114
[4] 曾小荟,冷明,刘冬生,等.一个新的SYN Flood攻击防御模型的研究[J].计算机工程与科学,2011,3(4):35-39
[5] 赵广利,江杨.Linux平台下防御SYN Flood攻击策略的研究[J].计算机工程与设计,2009,0(10):2394-2397
[6] 徐图,何大可,邓子健.分布式拒绝服务攻击特征分析与检测[J].计算机工程与应用,2007,3(29):146-149
[7] 王海花,杨斌.Linux TCP/IP协议栈的设计及实现特点[J].云南民族大学学报:自然科学版,2007,6(1):73-76
[8] 赵国锋,邱作雨,张毅.基于单片机的嵌入式TCP/IP协议栈的设计与实现[J].计算机技术与发展,2010,9(3):137-140

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!