SHI Le-yi1, 2, JIA Chun-fu2. Research on end hopping for active network confrontation[J]. 2008, (2): 106-110.DOI:
基于端信息跳变的主动网络防护研究
摘要
从军事跳频通信中得到启发
提出端信息跳变的概念
即通过伪随机改变端到端的数据传输中通信端口、地址、时隙、加密算法甚至协议等端信息
破坏敌方攻击干扰
实现主动网络防护。建立了端信息跳变主动防护模型
采用移动代理技术实现了端信息跳变原型系统
解决了同步、数据切换等关键问题
理论分析并实验验证了模型系统的抗拒绝服务和截获攻击特性
证明了端信息跳变策略对于主动网络防护的可行性与有效性。
Abstract
Motivated by frequency hopping for military communication
end hopping tactic was proposed which can mitigate those threats such as DoS and eavesdrop greatly by changing the end information of port
address
timeslot
cryptographic algorithm or even protocol pseudo-randomly during end to end transmission. An active defense model has been established upon end hopping. Then a test-bed has been implemented through mobile agent with a successful solu- tion of synchronization and handoff. The model shows better performance in both theoretical analysis and empirical studies. The work demonstrates that end information hopping tactic is feasible and effective for active network confronta- tion.