%0 Journal Article
%T Principle and Realization of SYN Proxy for Defensing Syn-Flood Attack
SYN代理防御syn-flood攻击的原理及实现
%A LONG Heng
%A
龙恒
%J 计算机系统应用
%D 2011
%I
%X syn-flood is a common denial of service attack. It uses the characteristics that it requires three-way handshake to establish TCP connection to send a large number of illegal first handshake packet to the target, leading to establish a large number of TCP connections of SYN_RCVD state on the target.So the target cannot establish normal TCP connection. This paper firstly describes the process of establishing a TCP connection,and then proposes a way that agency three-way handshake to solve the problem of over-consumption of resources. It is proved that it can reduce the harm of the syn-flood attack.
%K DDoS
%K syn-flood
%K three-way handshake
%K syn-cookies
%K syn-proxy
DDoS
%K syn-flood
%K 三次握手
%K syn-cookies
%K SYN
%K 代理
%U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=D4F6864C950C88FFCE5B6C948A639E39&aid=4A9D4398FD401EEDA1C379C73EEC63FF&yid=9377ED8094509821&vid=A04140E723CB732E&iid=38B194292C032A66&sid=797D49279EA93BC4&eid=F9F74EC1AA08A7B9&journal_id=1003-3254&journal_name=计算机系统应用&referenced_num=0&reference_num=6