首页 | 本学科首页   官方微博 | 高级检索  
     

IPv6报头安全威胁及检测*
引用本文:孙建平,王振兴,张连成,王禹. IPv6报头安全威胁及检测*[J]. 计算机应用研究, 2012, 29(4): 1409-1412
作者姓名:孙建平  王振兴  张连成  王禹
作者单位:解放军信息工程大学信息工程学院计算机应用技术,郑州,450002
基金项目:国家重点基础研究发展计划资助项目(2007CB307102);国家高技术研究发展计划资助项目(2007AA01Z2A1)
摘    要:经过对IPv6数据包报头格式的研究,提出了基于限制性策略的IPv6报头安全性检测算法。该算法根据IPv6协议规范和网络安全需求,按照各扩展报头的出现顺序、扩展报头和/或选项的组合构造及重复次数的特性来检测有潜在安全威胁的恶意IPv6数据包。实验结果表明,该算法有效且能够在一定程度上增强安全防护设备的检测能力。

关 键 词:IPv6  报头格式  网络安全  安全性检测  检测策略

IPv6 packet header security threat and detection
SUN Jian-ping,WANG Zhen-xing,ZHANG Lian-cheng,WANG Yu. IPv6 packet header security threat and detection[J]. Application Research of Computers, 2012, 29(4): 1409-1412
Authors:SUN Jian-ping  WANG Zhen-xing  ZHANG Lian-cheng  WANG Yu
Affiliation:(Dept. of Application Technology of Computer, College of Information Engineering, PLA Information Engineering University, Zhengzhou 450002, China)
Abstract:Through the study on IPv6 header structure,this paper designed a new algorithm for detecting IPv6 packet header security based on restrictive policies. Based on the extension header ordering, certain prohibited combinations and duplicate of header and/or options, this algorithm could detect the potentially malicious packets, depending on IPv6 protocol specifications and network security needs. The experimental results show that the algorithm can detect the threats correctly and efficiently, and can give protection facilities a better ability to detect unwanted packets.
Keywords:IPv6   header structure   network security   security detection   detection policy
本文献已被 CNKI 万方数据 等数据库收录!
点击此处可从《计算机应用研究》浏览原始摘要信息
点击此处可从《计算机应用研究》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号