Solution of Stateful Firewall''''s Iptables Overflow Caused by Attack
DOI:
CSTR:
Author:
Affiliation:

Clc Number:

TP309.2

Fund Project:

  • Article
  • |
  • Figures
  • |
  • Metrics
  • |
  • Reference
  • |
  • Related
  • |
  • Cited by
  • |
  • Materials
  • |
  • Comments
    Abstract:

    The intensity and efficiency are two centrally technical indicator of the firewall. The function of state checking of network's fire wall is to check the coming data pack, to judge if those connected entities are accordant with the rule of TCP/IP exchange. Attacks of DoS/DDoS send large numbers of short data packs to firewall in a short time. Those attacks may make firewall's iptables overflow and refuse new connection. The traditional solutions often increase the burden of the firewall. This paper puts a new temporary way to solution this problem in emergent state.

    Reference
    Related
    Cited by
Get Citation

杨劲.状态防火墙受攻击导致状态表溢出故障的解决[J].重庆大学学报,2004,27(6):13~16

Copy
Related Videos

Share
Article Metrics
  • Abstract:
  • PDF:
  • HTML:
  • Cited by:
History
  • Received:
  • Revised:January 03,2004
  • Adopted:
  • Online:
  • Published:
Article QR Code