基于IP数据包传输间隔时间变化通信的IP时间隐通道具有较好的隐蔽性,但它易受网络延迟与时延抖动的干扰,且带宽较低。而基于数据包标识号传榆顺序变化通信的IP时间隐通道,易受网络中路由选择等因素的干扰,又因为统计数据显示只有0.1%至3%的IP数据包在网络传输过程中会出现错序现象,这决定它可使用的带宽十分有限。在研究上述两类不同类型护时问臆通道的基础上,提出二维伊时闽臆通道的概念,理论分析和实验验证均表明,二维IP时间隐通道融合了两类不同IP时间隐通道的优点,具有隐蔽性高、鲁棒性好,以及相对较高的带宽。
Time interval based IP covert timing channels are stealthier but susceptible to network jitter and delay, and its bandwidth is low. IP packets reordering based IP covert timing channel is susceptible to routte selecting, statistics show that only 0.1% to 3% IP packets reordering are observed in normal traffic, which decides it would not have the higher communication bandwidth. Based on the two different kinds of IP covert timing channels mentioned above, the two-dimensional IP covert timing channel, which integrated the merits of both, were proposed. Theoretical analysis and experiments illustrate that two-dimensional IP covert timing channels are stealthier, robust and possess the higher bandwidth.