期刊文献+
共找到1篇文章
< 1 >
每页显示 20 50 100
HPMG: A High-Performance MTD Gateway Framework
1
作者 He Weizhen Chen Fucai +3 位作者 Cheng Guozhen Zhou Dacheng Shang Ke Yang Chunfang 《China Communications》 2025年第10期223-237,共15页
End-host address mutation is one of the key network moving target defense mechanisms to defend against reconnaissance.However,frequently changing host addresses increases the transmission de-lay of active sessions,whi... End-host address mutation is one of the key network moving target defense mechanisms to defend against reconnaissance.However,frequently changing host addresses increases the transmission de-lay of active sessions,which may cause serious ram-ifications.In this paper,by leveraging the advanced DPDK technology,we proposed a high-performance MTD gateway framework,called HPMG,which can not only prevent adversaries from reconnaissance ef-fectively,but also retain high-speed data packet pro-cessing capabilities.Firstly,every moving target host is assigned three different IP addresses,called real IP,virtual IP,and external IP,to realize multi-level net-work address architecture.To delay the scanning tech-niques of adversaries,HPMG mutates virtual IP and virtual MAC addresses,and replies with fake host re-sponses.Besides,to be transparent to the end-hosts,HPMG keeps real IP and real MAC unchanged.Fi-nally,we optimized the forwarding and processing performance of the HPMG based on the fast path framework of DPDK.Our theoretical analysis,imple-mentation,and evaluation show that HPMG can effec-tively defend against reconnaissance attacks and de-crease the processing delay caused by address muta-tion. 展开更多
关键词 cyber scanning data plane development kit IP hopping moving target defense network ad-dress mutation
在线阅读 下载PDF
上一页 1 下一页 到第
使用帮助 返回顶部