電気学会論文誌C(電子・情報・システム部門誌)
Online ISSN : 1348-8155
Print ISSN : 0385-4221
ISSN-L : 0385-4221
<システム>
ホストベースのDoS攻撃防御システムSYN Packet Pacifier
泉 裕上原 哲太郎齋藤 彰一國枝 義敏
著者情報
ジャーナル フリー

2005 年 125 巻 2 号 p. 344-352

詳細
抄録
Internet service provided by TCP connections are often susceptible to Denial of Service attack, especially SYN Flood from external hosts even internal on the network. In our research, we materialise a stateless session establishment mechanism at SYN packet in TCP 3Way Hand Shake then avoid consuming in that CPU, memory and others. We suggest SPP (SYN Packet Pacifier) in this paper. We arranged SPP within FreeBSD Kernel as the system based on above principles. SPP is a secure defense system and an effective DoS counter measure rather than the former methods such as SYN Cache and SYN Cookie.
著者関連情報
© 電気学会 2005
前の記事 次の記事
feedback
Top