【正文】
?! I(yè) 計算機(jī)應(yīng)用技術(shù) 指導(dǎo)教師 蘇軍 職稱 2010 年 5 月 30 日菏澤學(xué)院教務(wù)處制摘要ARP欺騙及ICMP攻擊是以太網(wǎng)中常用的攻擊手段,兩者都可對目的網(wǎng)絡(luò)進(jìn)行DOS(拒絕服務(wù))帶寬攻擊。帶寬攻擊指以極大的通信量沖擊網(wǎng)絡(luò),使得網(wǎng)絡(luò)資源都被消耗殆盡,最后導(dǎo)致合法的用戶請求無法通過。AbstractThe ARP deceit and the ICMP attack are in the ethernet the monly used attack method, both all may carry on DOS to the goal network (to refuse to serve) the band width obtain through the analysis guard to the measure aspect similarities and differences implements the ARP deceit to be easier to achieve the band width attack the conclusion.Refuses to serve (DenialofService, Dos) attack, refers uses the TCP/IP agreement the flaw attack goal main engine or the network, causes it to be unable to provide the normal service or the resources visit, its primary purpose is causes to suffer injury the main engine or the network is unable to receive promptly and processes the outside to request, or is unable and the response outside DOS attack mainly divides into the network the band width attack and the connective band width attack refers by the enormous munication load impact network, causes the network resources all to consume the danger, finally causes the legitimate user to request is unable to pass. The connective attack refers with the massive connection request flushes the puter, causes the available operating system resources all to consume the danger, finally causes the puter to be unable to process the validated user the deceit and ICMP attack implementation method, because network equipment docking and so on router, firewall receives the ICMP data packet has established the strict security policy, but the ARP deceit mainly applies in the day security bad local area network, therefore the ARP deceit implements in the band width attack aspect is easier than the ICMP the ICMP attack, chooses the appropriate firewall to prevent effectively ICMP attacks, the firewall has the condition examination, the careful data integrity inspection and the very good filtration rule control function.關(guān)鍵詞:ARP欺騙及ICMP攻擊 分析 安全19目錄摘要 iiAbstract ii1 ARP欺騙概述 1 ARP協(xié)議 1 解決ARP攻擊的方法 1 故障現(xiàn)象 2 解決思路 32 路由器ARP表綁定設(shè)置 43 ICMP協(xié)議的概述 7 什么是ICMP協(xié)議 7 ICMP的消息格式和代碼組合 8 使用ICMP協(xié)議搜集信息 9 ICMP攻擊及欺騙技術(shù) 104 配置系統(tǒng)帶的默認(rèn)防火墻以預(yù)防攻擊 125 結(jié)論 186 參考文獻(xiàn) 197致謝 19ARP欺騙及ICMP攻擊技術(shù)分析1 ARP欺騙概述在實際網(wǎng)絡(luò)的鏈路上傳送數(shù)據(jù)幀時,是采用硬件地址來尋址,地址解析協(xié)議(AddressResolutionProtocol,ARP)解決了從IP地址到硬件地址的映射問題。ARP協(xié)議的無連接、無認(rèn)證特性,使得局域網(wǎng)中的任何主機(jī)可隨意發(fā)送ARP請求包,也可以接收ARP應(yīng)答包,并且無條件的根據(jù)應(yīng)答包內(nèi)的內(nèi)容刷新本