《电子技术应用》
您所在的位置:首页 > 通信与网络 > 设计应用 > HTTP Slow DDoS攻击机理分析及针对OpenStack云平台的防御策略与架构研究
HTTP Slow DDoS攻击机理分析及针对OpenStack云平台的防御策略与架构研究
信息技术与网络安全
白翼铭,燕 玮,许凤凯,郝 帅,范春雷
(华北计算机系统工程研究所,北京100083)
摘要: 针对基于OpenStack开源云平台的应用服务易受HTTP Slow DDoS攻击的安全问题,对其攻击的机理进行详细分析,并以基于OpenStack架构搭建的云平台为基础环境,构建Web试验服务器环境,同时创建Docker模拟“肉鸡”(指被攻击者远程控制的计算机),通过使用Python库中urllib库和socket编程的方法,实现对三种常见HTTP Slow DDoS攻击的模拟,通过对攻击产生的流量和数据包内容进行分析,研究HTTP Slow DDoS攻击机理。结果表明,三种攻击方式均可以使云平台中的Web服务器连接失败。HTTP Slow DDoS攻击方式对基础带宽不足或未部署相关防御策略的私有云平台威胁更大,可使其无法正常提供服务。最后针对文中的三种HTTP Slow DDoS攻击方式,提出了相应的防御策略,并通过攻击防御试验证实了这些策略的有效性。
中图分类号: TP309.5
文献标识码: A
DOI: 10.19358/j.issn.2096-5133.2021.01.004
引用格式: 白翼铭,燕玮,许凤凯,等。 HTTP Slow DDoS攻击机理分析及针对OpenStack云平台的防御策略与架构研究[J].信息技术与网络安全,2021,40(1):21-25.
Analysis of HTTP Slow DDoS attack mechanism and research on defense strategy and architecture of OpenStack cloud platform
Bai Yiming,Yan Wei,Xu Fengkai,Hao Shuai,Fan Chunlei
(National Computer System Engineering Research Institute of China,Beijing 100083,China)
Abstract: Aiming at the security problem that OpenStack-based open source cloud application services are susceptible to HTTP Slow DDoS attacks, this article analyzes the mechanism of the attack in detail, and builds a web test server environment based on the OpenStack-based cloud platform, at the same time,creates Docker simulation'poultry‘(computers remotely controlled by the attacker), through the use of urllib library and socket programming method in Python library, three common HTTP slow DDoS attacks are simulated. Then, the mechanism of HTTP Slow DDoS attack is studied by analyzing the traffic and packet content generated by the attack. The results show that all the three attacks can make the connection of the Web server in the cloud platform fail. HTTP Slow DDoS attacks are a kind of greater threat to private cloud platforms that have insufficient underlying bandwidth or have not deployed relevant defense policies, making them unable to provide services properly. Finally, this paper proposes corresponding defense strategies for the three attack modes of HTTP Slow DDoS in this paper, and proves the effectiveness of these strategies through attack and defense experiments.
Key words : HTTP Slow DDoS;OpenStack;cloud plantform;defense strategy

0 引言

  近年来,云计算的概念逐渐普及,同时其面临的威胁也与日俱增。由于现在云服务的应用越来越广泛,基于B/S架构的网页应用形式逐渐代替传统桌面应用,部署在云平台上的Web应用越来越多,导致部署在云平台上的Web服务器逐渐成为攻击者的目标,因此对其防御策略的研究迫在眉睫[1]。而对攻击者而言,对云平台中提供网页服务的Web服务器进行HTTP Slow DDoS攻击是一种非常有效的攻击手段。针对这一问题,本文通过对HTTP Slow DDoS攻击的模拟和研究,提出了相应的防御策略并对其有效性进行验证。



本文详细内容请下载:http://www.chinaaet.com/resource/share/2000003312






作者信息:

白翼铭,燕  玮,许凤凯,郝  帅,范春雷

(华北计算机系统工程研究所,北京100083)


此内容为AET网站原创,未经授权禁止转载。