论文部分内容阅读
网络技术的快速发展,给煤炭企业带来极大的便利,但也给企业带来极大的风险。煤炭企业必须结合网络安全防范技术,制定有效的网络安全防御方案。分布式拒绝服务攻击的防御是当前网络安全研究领域中的难点,因为很难找到攻击源。为了能够根据追踪路径找到攻击源,重点对数据包标记技术进行了深入的研究,分析了它们的实现原理、效率及每种算法的优缺点,提出了一种改进的自适应分块包标记方案(AFMS),使得重构算法的收敛性大大提高,而且在误报率方面也大大降低,达到了高级包标记的水平,由于计算量下降重构时间缩短,也有效地防止假冒路由器的地址信息攻击,从而有效地保障煤炭企业网络能够正常提供服务。
The rapid development of network technology has brought great convenience to the coal enterprises, but also brings great risks to the enterprises. Coal enterprises must combine the network security technology to formulate an effective cybersecurity defense program. Defense against distributed denial-of-service attacks is a challenge in the current field of network security research because it is difficult to find the source of the attack. In order to find out the source of attacks according to the trail, the key technologies of packet marking are studied in detail. The realization principle, efficiency and the advantages and disadvantages of each algorithm are analyzed. An improved adaptive packet marking scheme (AFMS), the convergence of the reconstruction algorithm is greatly improved, and the false alarm rate is greatly reduced, reaching the level of advanced packet marking. As the computation time is reduced, the reconstruction time is shortened, and the fake router address information is also effectively prevented Attack, thus effectively guarantee the coal enterprise network can provide the normal service.