???绨�?????
???????????? ???????[ 2015/12/23 14:31:22 ] ????????DNS ?????? ???绨�?
????1. DDoS????????
????DDoS(Distributed Denial of Service?????????????)???????????????????????????????????????????????????????????????????????????
????????????????DDoS????????????
??????????????????????????????????????????????????????IDC?????????????????????????????效????????????????????????????????????????ICMP Flood??UDP Flood???????????????
??????????????????槎�????????????????????????????????????????????煤?????????????????????????????????????协?????????????????????Slowloris??????Hash???????????????????????????2???????
?????????????????????????????????????????????协?椤�?????????????????????????????SYN Flood??????DNS Query Flood?????????????????????????
?????????????????些?????????????????????????????????????????
????1.1. SYN Flood
????SYN Flood?????????????DDoS??????????????????1999??????????????????????SYN Flood??????????TCP???????????????????小?????????????????????????????椤�
?????????TCP??????????????锟�?
????l ???????????????SYN?????TCP?????SYN?????(Synchronize)???????????????????????????TCP??????????;
????l ?????????????????SYN??????????????SYN+ACK(?????Acknowledgement)??????????????????????????TCP???????????1;
????l ???????????????????ACK??????????????TCP???泻????1??
????????????????TCP?????????伞?TCP协?????????????????????????????????????些?????????????????????????????????????????ACK???????????????SYN_RECV???????????IP???????斜??????????????SYN+ACK??????????????3-5?危??????? 30???????????蔚???斜????????锌???????????妫�?????????????????SYN+ACK??????????????????????????TCP???????????????????????????????????????????????????????????????????????????SYN_RECV?????????????????渭?SYN???????????渭? TCP?????????
????SYN Flood????????????????TCP协????瓒�????????????????????伪???????IP???????????????SYN?????????伪???IP??????????????????????????璞�??????????????魏??????????????????????????????????斜??????????????SYN+ACK????????????????????????????????????????????????????SYN_RECV???斜????????????????????????渭?SYN?????????????????????????????TCP??????????????????????SYN Flood??????????
??????SYN Flood?????????????http://www.icylife.net/yunshu/show.php?id=367????????2006??写??????????????????????????Bug??????????????????????????谩?
????1.2. DNS Query Flood
???????????????????????????DNS??????DDoS???????????????????DNS????????????????????????????????????????????????些????????????????anonymous???????????????????????13???DNS????????????????械????
????UDP??????????????????????????危??????IP???伪????????椤�?????????????????????IP??????UDP??????????UDP???????伞?????????????UDP???????????????????????????UDP协??????DNS Query Flood?????????????????协?????????DDoS?????????????????协?????????????????????????????????????
????DNS Query Flood?????????????????????????????????????????????????????ACL?????????????????????????????????????UDP?????伪???IP????????伪??????????????DNS协??????伪????ID??????????????????伪????????????????????????????????????DNS???????????????????????DNS????????CPU?????
????????DNS Query Flood?????????2011??7?????????????????????写??????????????http://www.icylife.net/yunshu/show.php?id=832?????????????????????????????????????????
????1.3. HTTP Flood
??????????????SYN Flood??DNS Query Flood?????????????????效????????????????????????????????????HTTP Flood??????HTTP Flood?????Web??????????协?榉�??????????????危????????????????????妫�???????????????????????
????SYN Flood??DNS Query Flood?????????????root??????????????????????????root????????????????????????????????????锌?????????????????????????????????????????????????浠�???????1???????????????????????????HTTP Flood????????????????????????????????????????????????????????????????????????????HTTP???????SOCKS???????????????????????????????HTTP??????????????????????????????????????????????????锟�?????????????????????????????????
??????????妫琀TTP Flood??????HTTP??????????????????????????????????????????????????????????????????????????????????????????????????煤?????????????????????????????????
??????HTTP Flood?????????????????????????????????????卤???????Web??????????????????????????Java??????????????????????????????????????????????????娲�???????????????
??????????????HTTP Flood???懈??????????????????CC??????CC??Challenge Collapsar????写????Collapsar???????????????DDoS?????璞�?????????????????????????Collapsar?????械?????????璞�??????????????????未?????
????1.4. ???????????
?????????????????????????????????????????????????????????????????????????????????些????????????????????????????????????????????????????????rsnake??????Slowloris??
????HTTP协??婕�??HTTP Request??
??尾?????????????????????????????????????????????
??????Slowloris???????????????DDoS???????????????HTTP??????薪?Connection?????Keep-Alive?????Web Server????TCP????????????????????????????????key-value??????????????????a:b
?????路???????HTTP?????薪???????????????????????????????????????????????????????????Web??????????????????TCP?????????????渭?????
?????????Slowloris??????????????????POST??????Web Server??????????????Content-Length?????????????????????POST???????????????????Slowloris??????rsnake??????????????????渭?http://ha.ckers.org/slowloris/slowloris.pl??
??????

???路???
??????????????????
2023/3/23 14:23:39???写?貌??????????
2023/3/22 16:17:39????????????????????些??
2022/6/14 16:14:27??????????????????????????
2021/10/18 15:37:44???????????????
2021/9/17 15:19:29???路???????路
2021/9/14 15:42:25?????????????
2021/5/28 17:25:47??????APP??????????
2021/5/8 17:01:11