%0 Journal Article %T Principle and Realization of SYN Proxy for Defensing Syn-Flood Attack
SYN代理防御syn-flood攻击的原理及实现 %A LONG Heng %A
龙恒 %J 计算机系统应用 %D 2011 %I %X syn-flood is a common denial of service attack. It uses the characteristics that it requires three-way handshake to establish TCP connection to send a large number of illegal first handshake packet to the target, leading to establish a large number of TCP connections of SYN_RCVD state on the target.So the target cannot establish normal TCP connection. This paper firstly describes the process of establishing a TCP connection,and then proposes a way that agency three-way handshake to solve the problem of over-consumption of resources. It is proved that it can reduce the harm of the syn-flood attack. %K DDoS %K syn-flood %K three-way handshake %K syn-cookies %K syn-proxy
DDoS %K syn-flood %K 三次握手 %K syn-cookies %K SYN %K 代理 %U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=D4F6864C950C88FFCE5B6C948A639E39&aid=4A9D4398FD401EEDA1C379C73EEC63FF&yid=9377ED8094509821&vid=A04140E723CB732E&iid=38B194292C032A66&sid=797D49279EA93BC4&eid=F9F74EC1AA08A7B9&journal_id=1003-3254&journal_name=计算机系统应用&referenced_num=0&reference_num=6