锘??xml version="1.0" encoding="utf-8" standalone="yes"?>www国产亚洲精品,精品久久久久久久久久ntr影视,亚洲国产精品久久久 http://www.aygfsteel.com/sunxiaobo/category/41150.htmlEclipse-Unix
http://umlfact.berlios.de/~s_xsun/ zh-cn Sun, 02 Aug 2009 19:39:20 GMT Sun, 02 Aug 2009 19:39:20 GMT 60 TCP: SYN ACK FIN RST PSH URG http://www.aygfsteel.com/sunxiaobo/archive/2008/08/07/220702.htmlXiaobo Sun Xiaobo Sun Thu, 07 Aug 2008 08:20:00 GMT http://www.aygfsteel.com/sunxiaobo/archive/2008/08/07/220702.html http://www.aygfsteel.com/sunxiaobo/comments/220702.html http://www.aygfsteel.com/sunxiaobo/archive/2008/08/07/220702.html#Feedback 2 http://www.aygfsteel.com/sunxiaobo/comments/commentRss/220702.html http://www.aygfsteel.com/sunxiaobo/services/trackbacks/220702.html 涓夋鎻℃墜Three-way Handshake
涓涓櫄鎷熻繛鎺ョ殑寤虹珛鏄氳繃涓夋鎻℃墜鏉ュ疄鐜扮殑
1. (B) --> [SYN] --> (A)
鍋囧鏈嶅姟鍣ˋ鍜屽鎴鋒満B閫氳. 褰揂瑕佸拰B閫氫俊鏃訛紝B棣栧厛鍚慉鍙戜竴涓猄YN (Synchronize) 鏍囪鐨勫寘錛屽憡璇堿璇鋒眰寤虹珛榪炴帴.
娉ㄦ剰: 涓涓?SYN鍖呭氨鏄粎SYN鏍囪璁句負1鐨凾CP鍖?鍙傝TCP鍖呭ごResources).
璁よ瘑鍒拌繖鐐瑰緢閲嶈錛屽彧鏈夊綋A鍙楀埌B鍙戞潵鐨凷YN鍖咃紝鎵嶅彲寤虹珛榪炴帴錛岄櫎姝や箣澶栧埆鏃犱粬娉曘傚洜姝わ紝濡傛灉浣犵殑闃茬伀澧欎涪寮冩墍鏈夌殑鍙戝線澶栫綉鎺ュ彛鐨凷YN鍖咃紝閭d箞浣犲皢涓?
鑳借澶栭儴浠諱綍涓繪満涓誨姩寤虹珛榪炴帴銆?
2. (B) <-- [SYN/ACK] <--(A)
鎺ョ潃錛孉鏀跺埌鍚庝細鍙戜竴涓SYN鍖呯殑紜鍖?SYN/ACK)鍥炲幓錛岃〃紺哄絎竴涓猄YN鍖呯殑紜錛屽茍緇х畫鎻℃墜鎿嶄綔.
娉ㄦ剰: SYN/ACK鍖呮槸浠匰YN 鍜?ACK 鏍囪涓?鐨勫寘.
3. (B) --> [ACK] --> (A)
B鏀跺埌SYN/ACK 鍖?B鍙戜竴涓‘璁ゅ寘(ACK)錛岄氱煡A榪炴帴宸插緩绔嬨傝嚦姝わ紝涓夋鎻℃墜瀹屾垚錛屼竴涓猅CP榪炴帴瀹屾垚
Note: ACK鍖呭氨鏄粎ACK 鏍囪璁句負1鐨凾CP鍖? 闇瑕佹敞鎰忕殑鏄綋涓夋鎻℃墜瀹屾垚銆佽繛鎺ュ緩绔嬩互鍚庯紝TCP榪炴帴鐨勬瘡涓寘閮戒細璁劇疆ACK浣?
榪欏氨鏄負浣曡繛鎺ヨ窡韙緢閲嶈鐨勫師鍥犱簡.
娌℃湁榪炴帴璺熻釜,闃茬伀澧欏皢鏃犳硶鍒ゆ柇鏀跺埌鐨凙CK鍖呮槸鍚﹀睘浜庝竴涓凡緇忓緩绔嬬殑榪炴帴.涓鑸殑鍖呰繃婊?Ipchains)鏀跺埌ACK鍖呮椂,浼氳瀹冮氳繃(榪欑粷瀵逛笉鏄釜
濂戒富鎰?. 鑰屽綋鐘舵佸瀷闃茬伀澧欐敹鍒版縐嶅寘鏃訛紝瀹冧細鍏堝湪榪炴帴琛ㄤ腑鏌ユ壘鏄惁灞炰簬鍝釜宸插緩榪炴帴錛屽惁鍒欎涪寮冭鍖?
鍥涙鎻℃墜Four-way Handshake
鍥涙鎻℃墜鐢ㄦ潵鍏抽棴宸插緩绔嬬殑TCP榪炴帴
1. (B) --> ACK/FIN --> (A)
2. (B) <-- ACK <-- (A)
3. (B) <-- ACK/FIN <-- (A)
4. (B) --> ACK --> (A)
娉ㄦ剰: 鐢變簬TCP榪炴帴鏄弻鍚戣繛鎺? 鍥犳鍏抽棴榪炴帴闇瑕佸湪涓や釜鏂瑰悜涓婂仛銆侫CK/FIN 鍖?ACK 鍜孎IN
鏍囪璁句負1)閫氬父琚涓烘槸FIN(緇堢粨)鍖?鐒惰? 鐢變簬榪炴帴榪樻病鏈夊叧闂? FIN鍖呮繪槸鎵撲笂ACK鏍囪.
娌℃湁ACK鏍囪鑰屼粎鏈塅IN鏍囪鐨勫寘涓嶆槸鍚堟硶鐨勫寘錛屽茍涓旈氬父琚涓烘槸鎭舵剰鐨?
榪炴帴澶嶄綅Resetting a connection
鍥涙鎻℃墜涓嶆槸鍏抽棴TCP榪炴帴鐨勫敮涓鏂規硶. 鏈夋椂,濡傛灉涓繪満闇瑕佸敖蹇叧闂繛鎺?鎴栬繛鎺ヨ秴鏃?绔彛鎴栦富鏈轟笉鍙揪),RST
(Reset)鍖呭皢琚彂閫? 娉ㄦ剰鍦紝鐢變簬RST鍖呬笉鏄疶CP榪炴帴涓殑蹇呴』閮ㄥ垎, 鍙互鍙彂閫丷ST鍖?鍗充笉甯CK鏍囪).
浣嗗湪姝e父鐨凾CP榪炴帴涓璕ST鍖呭彲浠ュ甫ACK紜鏍囪
璇鋒敞鎰廟ST鍖呮槸鍙互涓嶈鏀跺埌鏂圭‘璁ょ殑?
鏃犳晥鐨凾CP鏍囪Invalid TCP Flags
鍒扮洰鍓嶄負姝紝浣犲凡緇忕湅鍒頒簡 SYN, ACK, FIN, 鍜孯ST 鏍囪. 鍙﹀錛岃繕鏈塒SH (Push) 鍜孶RG (Urgent)鏍囪.
鏈甯歌鐨勯潪娉曠粍鍚堟槸SYN/FIN 鍖? 娉ㄦ剰:鐢變簬 SYN鍖呮槸鐢ㄦ潵鍒濆鍖栬繛鎺ョ殑, 瀹冧笉鍙兘鍜?FIN鍜孯ST鏍囪涓璧峰嚭鐜? 榪欎篃鏄竴涓伓鎰忔敾鍑?
鐢變簬鐜板湪澶у鏁伴槻鐏宸茬煡 SYN/FIN 鍖? 鍒殑涓浜涚粍鍚?渚嬪SYN/FIN/PSH, SYN/FIN/RST, SYN/FIN/RST/PSH銆傚緢鏄庢樉錛屽綋緗戠粶涓嚭鐜拌繖縐嶅寘鏃訛紝寰堜綘鐨勭綉緇滆偗瀹氬彈鍒版敾鍑諱簡銆?
鍒殑宸茬煡鐨勯潪娉曞寘鏈塅IN
(鏃燗CK鏍囪)鍜?NULL"鍖呫傚鍚屾棭鍏堣璁虹殑錛岀敱浜嶢CK/FIN鍖呯殑鍑虹幇鏄負浜嗗叧闂竴涓猅CP榪炴帴錛岄偅涔堟甯哥殑FIN鍖呮繪槸甯︽湁 ACK
鏍囪銆?NULL"鍖呭氨鏄病鏈変換浣昑CP鏍囪鐨勫寘(URG,ACK,PSH,RST,SYN,FIN閮戒負0)銆?
鍒扮洰鍓嶄負姝紝姝e父鐨勭綉緇滄椿鍔ㄤ笅錛孴CP鍗忚鏍堜笉鍙兘浜х敓甯︽湁涓婇潰鎻愬埌鐨勪換浣曚竴縐嶆爣璁扮粍鍚堢殑TCP鍖呫傚綋浣犲彂鐜拌繖浜涗笉姝e父鐨勫寘鏃訛紝鑲畾鏈変漢瀵逛綘鐨勭綉緇滀笉鎬濂芥剰銆?
UDP (鐢ㄦ埛鏁版嵁鍖呭崗璁甎ser Datagram Protocol)
TCP鏄潰鍚戣繛鎺ョ殑錛岃孶DP鏄潪榪炴帴鐨勫崗璁俇DP娌℃湁瀵規帴鍙楄繘琛岀‘璁ょ殑鏍囪鍜岀‘璁ゆ満鍒躲傚涓㈠寘鐨勫鐞嗘槸鍦ㄥ簲鐢ㄥ眰鏉ュ畬鎴愮殑銆?or accidental arrival).
姝ゅ闇瑕侀噸鐐規敞鎰忕殑浜嬫儏鏄細鍦ㄦ甯告儏鍐典笅錛屽綋UDP鍖呭埌杈句竴涓叧闂殑绔彛鏃訛紝浼氳繑鍥炰竴涓猆DP澶嶄綅鍖呫傜敱浜嶶DP鏄潪闈㈠悜榪炴帴鐨? 鍥犳娌℃湁浠諱綍紜淇℃伅鏉ョ‘璁ゅ寘鏄惁姝g‘鍒拌揪鐩殑鍦般傚洜姝ゅ鏋滀綘鐨勯槻鐏涓㈠純UDP鍖咃紝瀹冧細寮鏀炬墍鏈夌殑UDP绔彛(?)銆?
鐢變簬Internet涓婃甯告儏鍐典笅涓浜涘寘灝嗚涓㈠純錛岀敋鑷蟲煇浜涘彂寰宸插叧闂鍙?闈為槻鐏鐨?鐨刄DP鍖呭皢涓嶄細鍒拌揪鐩殑錛屽畠浠皢榪斿洖涓涓浣峌DP鍖呫?
鍥犱負榪欎釜鍘熷洜錛孶DP绔彛鎵弿鎬繪槸涓嶇簿紜佷笉鍙潬鐨勩?
鐪嬭搗鏉ュぇUDP鍖呯殑紕庣墖鏄父瑙佺殑DOS (Denial of Service)鏀誨嚮鐨勫父瑙佸艦寮?(榪欓噷鏈変釜DOS鏀誨嚮鐨勪緥瀛愶紝http://grc.com/dos/grcdos.htm ).
ICMP (緗戦棿鎺у埗娑堟伅鍗忚Internet Control Message Protocol)
濡傚悓鍚嶅瓧涓鏍鳳紝 ICMP鐢ㄦ潵鍦ㄤ富鏈?璺敱鍣ㄤ箣闂翠紶閫掓帶鍒朵俊鎭殑鍗忚銆?ICMP鍖呭彲浠ュ寘鍚瘖鏂俊鎭?ping, traceroute -
娉ㄦ剰鐩墠unix緋葷粺涓殑traceroute鐢║DP鍖呰屼笉鏄疘CMP)錛岄敊璇俊鎭?緗戠粶/涓繪満/绔彛 涓嶅彲杈?network/host/port
unreachable), 淇℃伅(鏃墮棿鎴硉imestamp, 鍦板潃鎺╃爜address mask request, etc.)錛屾垨鎺у埗淇℃伅
(source quench, redirect, etc.) 銆?
浣犲彲浠ュ湪http://www.iana.org/assignments/icmp-parameters 涓壘鍒癐CMP鍖呯殑綾誨瀷銆?
灝界ICMP閫氬父鏄棤瀹崇殑錛岃繕鏄湁浜涚被鍨嬬殑ICMP淇℃伅闇瑕佷涪寮冦?
Redirect (5), Alternate Host Address (6), Router Advertisement (9) 鑳界敤鏉ヨ漿鍙戦氳銆?
Echo (8), Timestamp (13) and Address Mask Request (17)
鑳界敤鏉ュ垎鍒垽鏂富鏈烘槸鍚﹁搗鏉ワ紝鏈湴鏃墮棿 鍜屽湴鍧鎺╃爜銆傛敞鎰忓畠浠槸鍜岃繑鍥炵殑淇℃伅綾誨埆鏈夊叧鐨勩?
瀹冧滑鑷繁鏈韓鏄笉鑳借鍒╃敤鐨勶紝浣嗗畠浠硠闇插嚭鐨勪俊鎭鏀誨嚮鑰呮槸鏈夌敤鐨勩?
ICMP娑堟伅鏈夋椂涔熻鐢ㄦ潵浣滀負DOS鏀誨嚮鐨勪竴閮ㄥ垎(渚嬪錛氭椽姘磒ing flood ping,姝?ping ?鍛靛懙錛屾湁瓚?ping of death)?/p>
鍖呯鐗囨敞鎰廇 Note About Packet Fragmentation
濡傛灉涓涓寘鐨勫ぇ灝忚秴榪囦簡TCP鐨勬渶澶ф闀垮害MSS (Maximum Segment Size) 鎴朚TU (Maximum Transmission Unit)錛岃兘澶熸妸姝ゅ寘鍙戝線鐩殑鐨勫敮涓鏂規硶鏄妸姝ゅ寘鍒嗙墖銆傜敱浜庡寘鍒嗙墖鏄甯哥殑錛屽畠鍙互琚埄鐢ㄦ潵鍋氭伓鎰忕殑鏀誨嚮銆?
鍥犱負鍒嗙墖鐨勫寘鐨勭涓涓垎鐗囧寘鍚竴涓寘澶達紝鑻ユ病鏈夊寘鍒嗙墖鐨勯噸緇勫姛鑳斤紝鍖呰繃婊ゅ櫒涓嶅彲鑳芥嫻嬮檮鍔犵殑鍖呭垎鐗囥傚吀鍨嬬殑鏀誨嚮Typical attacks
involve in overlapping the packet data in which packet header is
鍏稿瀷鐨勬敾鍑籘ypical attacks involve in overlapping the packet data in which
packet header isnormal until is it overwritten with different
destination IP (or port) thereby bypassing firewall rules銆傚寘鍒嗙墖鑳戒綔涓?DOS
鏀誨嚮鐨勪竴閮ㄥ垎錛屽畠鍙互crash older IP stacks 鎴栨定姝籆PU榪炴帴鑳藉姏銆?
Netfilter/Iptables涓殑榪炴帴璺熻釜浠g爜鑳借嚜鍔ㄥ仛鍒嗙墖閲嶇粍銆傚畠浠嶆湁寮辯偣錛屽彲鑳藉彈鍒伴ケ鍜岃繛鎺ユ敾鍑伙紝鍙互鎶奀PU璧勬簮鑰楀厜銆?/cn>
]]>
主站蜘蛛池模板:
翁牛特旗 |
永川市 |
石家庄市 |
栖霞市 |
闸北区 |
和硕县 |
周宁县 |
珠海市 |
大同市 |
石台县 |
十堰市 |
边坝县 |
赤城县 |
林西县 |
五大连池市 |
从化市 |
广东省 |
连城县 |
莲花县 |
邮箱 |
锦屏县 |
泰和县 |
如皋市 |
伊宁市 |
莱西市 |
襄汾县 |
丘北县 |
彰武县 |
错那县 |
塘沽区 |
唐河县 |
柯坪县 |
漳平市 |
怀集县 |
二连浩特市 |
改则县 |
蒙城县 |
平潭县 |
泸溪县 |
青神县 |
永仁县 |