[1]周季璇,顾巧云,凤丹.面向OSPF 脆弱点的分节点污染方法研究[J].计算机技术与发展,2018,28(05):122-126.[doi:10.3969/ j. issn.1673-629X.2018.05.028]
 ZHOU Ji-xuan,GU Qiao-yun,FENG Dan.Research on Pollution Method with Diverging Nodes Injected Based on OSPF Vulnerability[J].,2018,28(05):122-126.[doi:10.3969/ j. issn.1673-629X.2018.05.028]
点击复制

面向OSPF 脆弱点的分节点污染方法研究()
分享到:

《计算机技术与发展》[ISSN:1006-6977/CN:61-1281/TN]

卷:
28
期数:
2018年05期
页码:
122-126
栏目:
安全与防范
出版日期:
2018-05-10

文章信息/Info

Title:
Research on Pollution Method with Diverging Nodes Injected Based on OSPF Vulnerability
文章编号:
1673-629X(2018)05-0122-05
作者:
周季璇顾巧云凤丹
江南计算技术研究所,江苏 无锡 214083
Author(s):
ZHOU Ji-xuanGU Qiao-yunFENG Dan
Jiangnan Institute of Computing Technology,Wuxi 214083,China
关键词:
开放最短路径优先协议脆弱点链路状态宣告污染路径
Keywords:
OSPFvulnerabilityLSApollution path
分类号:
TP393
DOI:
10.3969/ j. issn.1673-629X.2018.05.028
文献标志码:
A
摘要:
为了研究OSPF 协议某脆弱点的污染范围和效果,对 OSPF 协议的安全机制和已知脆弱点进行了研究,分析了对当前 OSPF 协议危害极大的一种脆弱点。 针对该脆弱点的污染范围和效果,提出了一种节点分类和脆弱点分节点污染方法,分析总结出在已知源节点和目标节点的前提下污染路径的生成树确定方法,并利用分节点污染方法在 GNS3 平台上对多区域自治域进行了仿真测试和分析,对比总结了网络拓扑和目标路由器位置的选择变化对整个自治域网络污染范围和效果的影响。 仿真实验表明,面向 OSPF 协议某脆弱点的分节点污染方法能够有效分析出整个网络拓扑以及目标节点位置对最终污染范围和效果的影响,有助于对安全网络拓扑设计。 最后针对该脆弱点及其污染特征,提出了相应的防范措施。
Abstract:
In order to research the pollution range and effect of a weak point of OSPF,the security mechanism of OSPF protocol and the known vulnerability are studied,and the current OSPF protocol is widely concerned with a vulnerable point. For this,we propose a kind of node classification and pollution method with diverging nodes injected. Then a method for determining the spanning tree of pollution path on the premise of known source node and target node is summarized with analysis. The pollution method with diverging node injected is used on GNS3 platform for simulation test and research in multi-area autonomous system. The comparison summarizes the effect of the network topology and selection of target router location on the network pollution range. Simulation experiments show that the pollution method with diverging node injected for OSPF protocol can effectively analyze the entire network topology and the target node location for the effects of the pollution range,helpful for the design of security network topology. Finally,we put forward the countermeasures for
the vulnerability and its pollution characteristics.
更新日期/Last Update: 2018-07-05