SIP应用的DoS检测与响应研究

被引:3
作者
曾谁飞 [1 ]
何光宇 [2 ]
闻英友 [2 ]
王仁波 [1 ]
机构
[1] 东华理工大学信息与电子工程学院
[2] 东北大学信息科学与工程学院
关键词
会话初始协议; 拒绝服务; 有限状态机;
D O I
暂无
中图分类号
TN915.08 [网络安全];
学科分类号
0839 ;
摘要
针对全IP融合网络环境下基于SIP协议的拒绝服务攻击(DoS,denial of service)隐患,提出了一种新颖的检测与响应方法,该方法针对SIPDoS攻击的特点来增强检测的准确性。然后利用改进的SIP事务有限状态机进行检测,并基于谜题挑战机制采取响应措施。仿真实验与分析证明了该方法的功能与性能满足SIPDoS防范的需求。
引用
收藏
页码:108 / 112
页数:5
相关论文
共 10 条
[1]  
SIP:Session Initialization Protocol. SCHOOLER E,ROSENBERG J,HANDLEY M,et al. RFC3261 . 2002
[2]  
Novel protecting mechanism for sip-based infrastructure against mal-formed message attacks:performance evaluation study. GENEIATAKIS D,DAGIUKLAS T,LAMBRINOUDAKIS C,et al. Proc of the5th International Conference on Communication Systems,Networksand Digital Signal Processing(CSNDSP’06) . 2006
[3]  
An analysis of security threats and tools in SIP-based VoIP systems. McGann S,Sicker D C. Proceedings of the 2nd Workshop on Securing Voice over IP . 2005
[4]  
A Framework for Detecting Malformed Messages in SIP Networks. Geneiatakis D,Kambourakis G,Dagiuklas T, etal. Local and Metropolitan Area Networks 2005 . 2005
[5]  
Securitymechanism agreement for the session initiation protocol(SIP). ARKKO J,TORV INEN V,CAMAR ILLO G. In-ternet RFC3329 . 2003
[6]  
SIP security issues: the SIP authentication procedure and its processing load. Salsano S,Veltri L,Papalilo D. IEEE Network . 2002
[7]  
SCIDIVE:a stateful and cross protocol intrusion detection architecture for voice-over-IP environ-ments. WU Y S,BAGCHI S,GARG S,et al. Proceedings of the2004International Conference on De-pendable Systems and Networks(DSN’04) . 2004
[8]  
VoIP intrusion detec-tion through interacting protocol state machines. SENGAR H,WIJESEKERA D,WANG H,et al. Proceedings of the2006International Conference on Dependable Systems and Networks (DSN’06) . 2006
[9]  
Denial of service attacks targeting a SIP VoIP infrastructure:attack scenarios and prevention mechanisms. SISALEM D,KUTHAN J,EHLERT S. IEEE Network Journal . 2006
[10]  
Denial of service attacks and SIP infra-structure:attack scenarios and prevention mechanisms. SCHAFER G,KUTHAN J. http://user.cs.tu-berlin.de/~dukat/ehlert.name/publications/Sisalem-Vo IP-DoS-2006.pdf . 2006