摘要
分析了ARP欺骗的基本原理和通过ARP欺骗进行攻击的常见方式;讨论了预防ARP欺骗的常见方法及其不足 针对ARP欺骗的"无状态"的特点,提出了一种防范ARP欺骗的算法,给ARP协议添加"先发送ARP请求,后接收ARP应答"的规则,可以有效避免ARP欺骗攻击的发生
ARP Spoofing is one of the most popular network attacking methods, which bring great threats to the security of LAN. This paper analyses the basic theory of ARP spoofing and some common attacking methods using ARP Spoofing. The paper also discusses two preventive methods against ARP Spoofing. According to the 'stateless' property of ARP Spoofing, an preventive algorithm is put forward. By means of adding a rule of 'receiving ARP reply after sending an ARP request', the algorithm can prevent ARP Spoofing attacks effectively and efficiently, and is applicable to those LANs that need higher level of network security.
出处
《江南大学学报(自然科学版)》
CAS
2003年第6期574-577,共4页
Joural of Jiangnan University (Natural Science Edition)