|国家预印本平台
首页|基于IPv6的链路目的地址伪造报文攻击安全性研究

基于IPv6的链路目的地址伪造报文攻击安全性研究

IPv6 Packet Security study Based on the attacks of links destination address forged

中文摘要英文摘要

随着IPv6网络的推广应用,IPv6网络的安全性问题研究逐渐纳入人们视线,基于伪造地址攻击是IPv4网络安全性的一大隐患。我们通过对基于链路目的地址伪造的IPV4和IPV6报文攻击对比分析研究,分别仿真试验攻击者伪造被攻击节点的IPV4和IPV6地址,发送携带虚假的源链路层地址的邻居请求消息或虚假的目的链路层地址的邻居宣告消息,监测接收者是否更新邻居缓存,存储错误的链路层地址,导致发送给被攻击节点的合法报文无法达到。试验结果表明IPV6在预防攻击者通过伪造虚假的源链路层地址的邻居请求消息或虚假的目的链路层地址的邻居宣告消息来攻击目的网络方面比IPV4具有更高的安全性;在此基础上本文指出了进一步防范的方法。

With the popularization and application of IPv6 network, people pay more attention to the safety of IPv6 network. The attack based on the forged links address is a major danger of IPv4 network security. Analysis and research of the IPV4 and IPV6 packet attack based on the forged link destination address, we respectively simulated and tested the address of nodes forged by an attacker, the neighbor request information carrying false addresses of the source link layer and the neighbor declared information with false addresses of the destination link layer, which can monitor whether the recipient updated the neighbor caches and storage the wrong link layer addresses which will cause the legal packets cannot be sent to the attacked nodes. The results of our tests indicates that IPV6 network improved the security of network in preventing the attack through the neighbor request information carrying false address of the source link layer and the neighbor declared information with false address of the destination link layer from the address of nodes forged by an attacker.

侯雷、高琪娟、张斌、周全、李旸、刘建中

通信

IPv6sniffer伪造链路目的地址报文攻击

IPv6 sniffer links destination address forged Packet attack

侯雷,高琪娟,张斌,周全,李旸,刘建中.基于IPv6的链路目的地址伪造报文攻击安全性研究[EB/OL].(2008-07-01)[2025-05-09].http://www.paper.edu.cn/releasepaper/content/200807-8.点此复制

评论