锘??xml version="1.0" encoding="utf-8" standalone="yes"?>www国产亚洲精品,精品久久久久久久久久ntr影视,亚洲国产精品久久久http://www.aygfsteel.com/sunxiaobo/category/41150.htmlEclipse-Unix http://umlfact.berlios.de/~s_xsun/zh-cnSun, 02 Aug 2009 19:39:20 GMTSun, 02 Aug 2009 19:39:20 GMT60TCP: SYN ACK FIN RST PSH URGhttp://www.aygfsteel.com/sunxiaobo/archive/2008/08/07/220702.htmlXiaobo SunXiaobo SunThu, 07 Aug 2008 08:20:00 GMThttp://www.aygfsteel.com/sunxiaobo/archive/2008/08/07/220702.htmlhttp://www.aygfsteel.com/sunxiaobo/comments/220702.htmlhttp://www.aygfsteel.com/sunxiaobo/archive/2008/08/07/220702.html#Feedback2http://www.aygfsteel.com/sunxiaobo/comments/commentRss/220702.htmlhttp://www.aygfsteel.com/sunxiaobo/services/trackbacks/220702.html涓夋鎻℃墜Three-way Handshake

涓涓櫄鎷熻繛鎺ョ殑寤虹珛鏄氳繃涓夋鎻℃墜鏉ュ疄鐜扮殑

1. (B) --> [SYN] --> (A)

鍋囧鏈嶅姟鍣ˋ鍜屽鎴鋒満B閫氳. 褰揂瑕佸拰B閫氫俊鏃訛紝B棣栧厛鍚慉鍙戜竴涓猄YN (Synchronize) 鏍囪鐨勫寘錛屽憡璇堿璇鋒眰寤虹珛榪炴帴.

娉ㄦ剰: 涓涓?SYN鍖呭氨鏄粎SYN鏍囪璁句負1鐨凾CP鍖?鍙傝TCP鍖呭ごResources). 璁よ瘑鍒拌繖鐐瑰緢閲嶈錛屽彧鏈夊綋A鍙楀埌B鍙戞潵鐨凷YN鍖咃紝鎵嶅彲寤虹珛榪炴帴錛岄櫎姝や箣澶栧埆鏃犱粬娉曘傚洜姝わ紝濡傛灉浣犵殑闃茬伀澧欎涪寮冩墍鏈夌殑鍙戝線澶栫綉鎺ュ彛鐨凷YN鍖咃紝閭d箞浣犲皢涓? 鑳借澶栭儴浠諱綍涓繪満涓誨姩寤虹珛榪炴帴銆?

2. (B) <-- [SYN/ACK] <--(A)

鎺ョ潃錛孉鏀跺埌鍚庝細鍙戜竴涓SYN鍖呯殑紜鍖?SYN/ACK)鍥炲幓錛岃〃紺哄絎竴涓猄YN鍖呯殑紜錛屽茍緇х畫鎻℃墜鎿嶄綔.

娉ㄦ剰: SYN/ACK鍖呮槸浠匰YN 鍜?ACK 鏍囪涓?鐨勫寘.

3. (B) --> [ACK] --> (A)

B鏀跺埌SYN/ACK 鍖?B鍙戜竴涓‘璁ゅ寘(ACK)錛岄氱煡A榪炴帴宸插緩绔嬨傝嚦姝わ紝涓夋鎻℃墜瀹屾垚錛屼竴涓猅CP榪炴帴瀹屾垚

Note: ACK鍖呭氨鏄粎ACK 鏍囪璁句負1鐨凾CP鍖? 闇瑕佹敞鎰忕殑鏄綋涓夋鎻℃墜瀹屾垚銆佽繛鎺ュ緩绔嬩互鍚庯紝TCP榪炴帴鐨勬瘡涓寘閮戒細璁劇疆ACK浣?

榪欏氨鏄負浣曡繛鎺ヨ窡韙緢閲嶈鐨勫師鍥犱簡. 娌℃湁榪炴帴璺熻釜,闃茬伀澧欏皢鏃犳硶鍒ゆ柇鏀跺埌鐨凙CK鍖呮槸鍚﹀睘浜庝竴涓凡緇忓緩绔嬬殑榪炴帴.涓鑸殑鍖呰繃婊?Ipchains)鏀跺埌ACK鍖呮椂,浼氳瀹冮氳繃(榪欑粷瀵逛笉鏄釜 濂戒富鎰?. 鑰屽綋鐘舵佸瀷闃茬伀澧欐敹鍒版縐嶅寘鏃訛紝瀹冧細鍏堝湪榪炴帴琛ㄤ腑鏌ユ壘鏄惁灞炰簬鍝釜宸插緩榪炴帴錛屽惁鍒欎涪寮冭鍖?

鍥涙鎻℃墜Four-way Handshake

鍥涙鎻℃墜鐢ㄦ潵鍏抽棴宸插緩绔嬬殑TCP榪炴帴

1. (B) --> ACK/FIN --> (A)

2. (B) <-- ACK <-- (A)

3. (B) <-- ACK/FIN <-- (A)

4. (B) --> ACK --> (A)

娉ㄦ剰: 鐢變簬TCP榪炴帴鏄弻鍚戣繛鎺? 鍥犳鍏抽棴榪炴帴闇瑕佸湪涓や釜鏂瑰悜涓婂仛銆侫CK/FIN 鍖?ACK 鍜孎IN 鏍囪璁句負1)閫氬父琚涓烘槸FIN(緇堢粨)鍖?鐒惰? 鐢變簬榪炴帴榪樻病鏈夊叧闂? FIN鍖呮繪槸鎵撲笂ACK鏍囪. 娌℃湁ACK鏍囪鑰屼粎鏈塅IN鏍囪鐨勫寘涓嶆槸鍚堟硶鐨勫寘錛屽茍涓旈氬父琚涓烘槸鎭舵剰鐨?

榪炴帴澶嶄綅Resetting a connection

鍥涙鎻℃墜涓嶆槸鍏抽棴TCP榪炴帴鐨勫敮涓鏂規硶. 鏈夋椂,濡傛灉涓繪満闇瑕佸敖蹇叧闂繛鎺?鎴栬繛鎺ヨ秴鏃?绔彛鎴栦富鏈轟笉鍙揪),RST (Reset)鍖呭皢琚彂閫? 娉ㄦ剰鍦紝鐢變簬RST鍖呬笉鏄疶CP榪炴帴涓殑蹇呴』閮ㄥ垎, 鍙互鍙彂閫丷ST鍖?鍗充笉甯CK鏍囪). 浣嗗湪姝e父鐨凾CP榪炴帴涓璕ST鍖呭彲浠ュ甫ACK紜鏍囪

璇鋒敞鎰廟ST鍖呮槸鍙互涓嶈鏀跺埌鏂圭‘璁ょ殑?

鏃犳晥鐨凾CP鏍囪Invalid TCP Flags

鍒扮洰鍓嶄負姝紝浣犲凡緇忕湅鍒頒簡 SYN, ACK, FIN, 鍜孯ST 鏍囪. 鍙﹀錛岃繕鏈塒SH (Push) 鍜孶RG (Urgent)鏍囪.

鏈甯歌鐨勯潪娉曠粍鍚堟槸SYN/FIN 鍖? 娉ㄦ剰:鐢變簬 SYN鍖呮槸鐢ㄦ潵鍒濆鍖栬繛鎺ョ殑, 瀹冧笉鍙兘鍜?FIN鍜孯ST鏍囪涓璧峰嚭鐜? 榪欎篃鏄竴涓伓鎰忔敾鍑?

鐢變簬鐜板湪澶у鏁伴槻鐏宸茬煡 SYN/FIN 鍖? 鍒殑涓浜涚粍鍚?渚嬪SYN/FIN/PSH, SYN/FIN/RST, SYN/FIN/RST/PSH銆傚緢鏄庢樉錛屽綋緗戠粶涓嚭鐜拌繖縐嶅寘鏃訛紝寰堜綘鐨勭綉緇滆偗瀹氬彈鍒版敾鍑諱簡銆?

鍒殑宸茬煡鐨勯潪娉曞寘鏈塅IN (鏃燗CK鏍囪)鍜?NULL"鍖呫傚鍚屾棭鍏堣璁虹殑錛岀敱浜嶢CK/FIN鍖呯殑鍑虹幇鏄負浜嗗叧闂竴涓猅CP榪炴帴錛岄偅涔堟甯哥殑FIN鍖呮繪槸甯︽湁 ACK 鏍囪銆?NULL"鍖呭氨鏄病鏈変換浣昑CP鏍囪鐨勫寘(URG,ACK,PSH,RST,SYN,FIN閮戒負0)銆?

鍒扮洰鍓嶄負姝紝姝e父鐨勭綉緇滄椿鍔ㄤ笅錛孴CP鍗忚鏍堜笉鍙兘浜х敓甯︽湁涓婇潰鎻愬埌鐨勪換浣曚竴縐嶆爣璁扮粍鍚堢殑TCP鍖呫傚綋浣犲彂鐜拌繖浜涗笉姝e父鐨勫寘鏃訛紝鑲畾鏈変漢瀵逛綘鐨勭綉緇滀笉鎬濂芥剰銆?

UDP (鐢ㄦ埛鏁版嵁鍖呭崗璁甎ser Datagram Protocol)
TCP鏄潰鍚戣繛鎺ョ殑錛岃孶DP鏄潪榪炴帴鐨勫崗璁俇DP娌℃湁瀵規帴鍙楄繘琛岀‘璁ょ殑鏍囪鍜岀‘璁ゆ満鍒躲傚涓㈠寘鐨勫鐞嗘槸鍦ㄥ簲鐢ㄥ眰鏉ュ畬鎴愮殑銆?or accidental arrival).

姝ゅ闇瑕侀噸鐐規敞鎰忕殑浜嬫儏鏄細鍦ㄦ甯告儏鍐典笅錛屽綋UDP鍖呭埌杈句竴涓叧闂殑绔彛鏃訛紝浼氳繑鍥炰竴涓猆DP澶嶄綅鍖呫傜敱浜嶶DP鏄潪闈㈠悜榪炴帴鐨? 鍥犳娌℃湁浠諱綍紜淇℃伅鏉ョ‘璁ゅ寘鏄惁姝g‘鍒拌揪鐩殑鍦般傚洜姝ゅ鏋滀綘鐨勯槻鐏涓㈠純UDP鍖咃紝瀹冧細寮鏀炬墍鏈夌殑UDP绔彛(?)銆?

鐢變簬Internet涓婃甯告儏鍐典笅涓浜涘寘灝嗚涓㈠純錛岀敋鑷蟲煇浜涘彂寰宸插叧闂鍙?闈為槻鐏鐨?鐨刄DP鍖呭皢涓嶄細鍒拌揪鐩殑錛屽畠浠皢榪斿洖涓涓浣峌DP鍖呫?

鍥犱負榪欎釜鍘熷洜錛孶DP绔彛鎵弿鎬繪槸涓嶇簿紜佷笉鍙潬鐨勩?

鐪嬭搗鏉ュぇUDP鍖呯殑紕庣墖鏄父瑙佺殑DOS (Denial of Service)鏀誨嚮鐨勫父瑙佸艦寮?(榪欓噷鏈変釜DOS鏀誨嚮鐨勪緥瀛愶紝http://grc.com/dos/grcdos.htm ).

ICMP (緗戦棿鎺у埗娑堟伅鍗忚Internet Control Message Protocol)
濡傚悓鍚嶅瓧涓鏍鳳紝 ICMP鐢ㄦ潵鍦ㄤ富鏈?璺敱鍣ㄤ箣闂翠紶閫掓帶鍒朵俊鎭殑鍗忚銆?ICMP鍖呭彲浠ュ寘鍚瘖鏂俊鎭?ping, traceroute - 娉ㄦ剰鐩墠unix緋葷粺涓殑traceroute鐢║DP鍖呰屼笉鏄疘CMP)錛岄敊璇俊鎭?緗戠粶/涓繪満/绔彛 涓嶅彲杈?network/host/port unreachable), 淇℃伅(鏃墮棿鎴硉imestamp, 鍦板潃鎺╃爜address mask request, etc.)錛屾垨鎺у埗淇℃伅 (source quench, redirect, etc.) 銆?

浣犲彲浠ュ湪http://www.iana.org/assignments/icmp-parameters涓壘鍒癐CMP鍖呯殑綾誨瀷銆?

灝界ICMP閫氬父鏄棤瀹崇殑錛岃繕鏄湁浜涚被鍨嬬殑ICMP淇℃伅闇瑕佷涪寮冦?

Redirect (5), Alternate Host Address (6), Router Advertisement (9) 鑳界敤鏉ヨ漿鍙戦氳銆?

Echo (8), Timestamp (13) and Address Mask Request (17) 鑳界敤鏉ュ垎鍒垽鏂富鏈烘槸鍚﹁搗鏉ワ紝鏈湴鏃墮棿 鍜屽湴鍧鎺╃爜銆傛敞鎰忓畠浠槸鍜岃繑鍥炵殑淇℃伅綾誨埆鏈夊叧鐨勩? 瀹冧滑鑷繁鏈韓鏄笉鑳借鍒╃敤鐨勶紝浣嗗畠浠硠闇插嚭鐨勪俊鎭鏀誨嚮鑰呮槸鏈夌敤鐨勩?

ICMP娑堟伅鏈夋椂涔熻鐢ㄦ潵浣滀負DOS鏀誨嚮鐨勪竴閮ㄥ垎(渚嬪錛氭椽姘磒ing flood ping,姝?ping ?鍛靛懙錛屾湁瓚?ping of death)?/p>

鍖呯鐗囨敞鎰廇 Note About Packet Fragmentation

濡傛灉涓涓寘鐨勫ぇ灝忚秴榪囦簡TCP鐨勬渶澶ф闀垮害MSS (Maximum Segment Size) 鎴朚TU (Maximum Transmission Unit)錛岃兘澶熸妸姝ゅ寘鍙戝線鐩殑鐨勫敮涓鏂規硶鏄妸姝ゅ寘鍒嗙墖銆傜敱浜庡寘鍒嗙墖鏄甯哥殑錛屽畠鍙互琚埄鐢ㄦ潵鍋氭伓鎰忕殑鏀誨嚮銆?

鍥犱負鍒嗙墖鐨勫寘鐨勭涓涓垎鐗囧寘鍚竴涓寘澶達紝鑻ユ病鏈夊寘鍒嗙墖鐨勯噸緇勫姛鑳斤紝鍖呰繃婊ゅ櫒涓嶅彲鑳芥嫻嬮檮鍔犵殑鍖呭垎鐗囥傚吀鍨嬬殑鏀誨嚮Typical attacks involve in overlapping the packet data in which packet header is 鍏稿瀷鐨勬敾鍑籘ypical attacks involve in overlapping the packet data in which packet header isnormal until is it overwritten with different destination IP (or port) thereby bypassing firewall rules銆傚寘鍒嗙墖鑳戒綔涓?DOS 鏀誨嚮鐨勪竴閮ㄥ垎錛屽畠鍙互crash older IP stacks 鎴栨定姝籆PU榪炴帴鑳藉姏銆?

Netfilter/Iptables涓殑榪炴帴璺熻釜浠g爜鑳借嚜鍔ㄥ仛鍒嗙墖閲嶇粍銆傚畠浠嶆湁寮辯偣錛屽彲鑳藉彈鍒伴ケ鍜岃繛鎺ユ敾鍑伙紝鍙互鎶奀PU璧勬簮鑰楀厜銆?/cn>

]]>
主站蜘蛛池模板: 翁牛特旗| 永川市| 石家庄市| 栖霞市| 闸北区| 和硕县| 周宁县| 珠海市| 大同市| 石台县| 十堰市| 边坝县| 赤城县| 林西县| 五大连池市| 从化市| 广东省| 连城县| 莲花县| 邮箱| 锦屏县| 泰和县| 如皋市| 伊宁市| 莱西市| 襄汾县| 丘北县| 彰武县| 错那县| 塘沽区| 唐河县| 柯坪县| 漳平市| 怀集县| 二连浩特市| 改则县| 蒙城县| 平潭县| 泸溪县| 青神县| 永仁县|