防御拒绝服务攻击的身份认证方案  

An Identity Authentication Solution to Improve Security Protocols on Resisting Denial of Service Attack

在线阅读下载全文

作  者:李印清[1] 陈建辉[1] 郭秋萍[2] 

机构地区:[1]郑州航空工业管理学院计算机科学与应用系,河南郑州450015 [2]郑州航空工业管理学院信息科学系,河南郑州450015

出  处:《太原理工大学学报》2008年第2期140-143,共4页Journal of Taiyuan University of Technology

基  金:河南省自然科学基金资助项目(0611052100)

摘  要:针对安全协议存在的拒绝服务攻击隐患,文中提出了发起者身份认证方案。方案借鉴Cookie机制和Client Puzzle方法的思想,通过在Cookie中嵌入puzzle的方法,采用强认证和弱认证相结合的模式进行设计。实验结果表明,该方案在不改变安全协议系统结构的前提下,可以增强其防御计算资源消耗型、存储资源消耗型和虚假网络地址型拒绝服务攻击的能力。该方案适用于安全协议响应方对安全性要求较高,响应方计算能力较强的环境。To the problem which security protocols were under the threat of denial of service attack, a sponsor identity authentication solution is presented. Based on the idea of Cookie and Client Puzzle, the solution was designed based the way that embedded Puzzle in Cookie and the pattern which connected weak authentication and strong authentication. The experiment result shows that the solution can enhance security protoeol's ability on resisting three types of denial of service attack without changing its architecture, which are compute resource exhausting attack, memory resource exhausting attack and the attack with fake network address. The solution's right application environment is in high demand of security and the responder should have powerful compute ability.

关 键 词:安全协议 拒绝服务 网络安全 

分 类 号:TP393[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象