网络攻击的追踪是对网络攻击做出正确响应的重要前提,采用代数方法,利用IP报文中的选项字段,以概率将流经路由器的地址标注报文,使得受攻击主机端能够利用被标注报文内的地址信息重构攻击路径,从而追踪到攻击源点。重点讨论了如何运用代数方法记录报文流经路由器的地址,以及利用报文中记录的信息重构路径使ISP部署相关策略对这些范围的主机加以防范。可以预见,网络攻击的追踪和路径重构技术仍将是目前网络安全一个重要的研究热点,而且随着IPv6的应用,攻击源追踪问题将取得实质性突破。同时指出了该方法存在的问题,并进行了进一步展望。
The network attack of track is important premise does exactitude respond to network attack. The thesis use algebra method, utilize options field in the IP message, with prohability will through address of muter to mark message, make by attack host can utilize mark message inside of address information reconstruct path, track to attack source. How utilize that algebra method record message address through a muter, and how utilize record information in message reconstruct path is emphases of discussion. Can foresee, network attack of track and reconstruct path technique still network safety currently important study hotspot, and along application of IPv6, attack source to track problem will obtain essential breakthrough. Finally indicate that method an existent problem, and further expectation.