当恶意客户机使用虚假的源地址来伪造一个IP报文时,TCP就会出现问题了,这会大量 TCPSYN报文攻击服务器。
The problem that can occur with TCP is when a rogue client forges an IP packet with a bogus source address, then floods a server with TCP SYN packets.
当一个网络中的设备发出去一个广播ARP请求时,它只是简单的相信当收到一个ARP响应时,这个响应真的是来自正确的设备(因为按照协议只有IP地址对应的设备才会发出相应报文,译者注)。
When a networked device sends an ARP request, it simply trusts that when the ARP reply comes in, it really does come from the correct device.
通过对IP与MAC地址的绑定和对ICMP重定向报文的处理,有效地对ARP欺骗进行防范。
ARP spoofing is defended effectively by binding IP and MAC or processing the ICMP redirect messages.
本文讨论了包过滤的优缺点,并实现了基于报文地址的包过滤功能。
The software of packet-filtering, which is based on the addresses of datagram, is realized after a discussion on the advantages and disadvantages of packet-filtering.
转发模块收到报文以后会根据报文的目的地址查询转发表得到报文的出接口,并根据报文的出接口对报文进行上送或转发。
After receiving packets, forward module will check out the interface of packets based on destination address, and according to the interface to send or forward packets.
首先,设计并实现一个具有地址解析、报文转发、差错控制及SNMP代理等基本功能的路由器。
First, a router with the basic ability of address resolving, datagram forwarding, error controlling and SNMP agency is designed and made.
为了让报文在物理网路上传送,必须知道对方目的主机的物理地址。
Before this information can be sent over a network, it must have specific information attached to it at the front...
为了让报文在物理网路上传送,必须知道对方目的主机的物理地址。
Before this information can be sent over a network, it must have specific information attached to it at the front...
应用推荐