以太无源光网络(EPON)的点到多点(P2M)结构使其存在严重的安全隐患。结合具体的EPON结构和原理,全面详细分析了EPON系统中各种安全攻击(从简单的被动监测到拒绝服务(DoS)、再到伪装和窃取服务(ToS))实施的原理、过程及其危害性,并提出了相应的对策,包括鉴定、安全封装、加密、入侵检测、利用到期活动等。
Ethernet PON(EPON) system has serious security issues for its particular P2M(point to multi-point) architecture.This article analyzed the implementing theory,process and harm of all major security attacks,including simple passive monitoring,denial of service(DoS),masquerading and theft of service(ToS) inherently presented in EPON systems in detail.And presented corresponding countermeasures,such as authentication,so-called secure packaging,encryption,intrusion detection and utilization of time-out events et...