作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (13): 125-127. doi: 10.3969/j.issn.1000-3428.2009.13.043

• 安全技术 • 上一篇    下一篇

基于IP报头选项的网络隐蔽通道技术

杨智丹1,2,刘克胜1,王 康1,3,汪松鹤1   

  1. (1. 电子工程学院网络系,合肥 230037;2. 66019部队,北京 100041;3. 江南计算技术研究所,无锡 214083)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-07-05 发布日期:2009-07-05

Network Covert Channel Technique Based on IP Header Option

YANG Zhi-dan1,2, LIU Ke-sheng1, WANG Kang1,3, WANG Song-he1   

  1. (1. Department of Network, Electronic Engineering Institute, Hefei 230037; 2. 66019 of People’s Liberation Army, Beijing 100041; 3. Jiangnan Institute of Computing Technology, Wuxi 214083)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-07-05 Published:2009-07-05

摘要: 为扩展和丰富协议隐写的载体,研究使用IP报头选项进行信息隐藏的可能性。通过对协议规范的分析,发现对选项指针字段的改写可以在选项字段中形成4种新的隐蔽通道。讨论这些隐蔽通道的原理,在模拟真实互联网的环境下实现防止路由器改写的IP选项通道,并结合网络隐蔽通道检测技术研究的最新进展分析对抗隐写分析应采取的措施。

关键词: 信息隐藏, 协议隐写, IP报头选项, 网络隐蔽通道

Abstract: In order to extend and diversify the carrier of protocol steganography, the possibility of concealing messages in IP option is studied. After analyzing the standard of network protocol, four new covert channels can be established in IP header through rewriting of option’s pointer field. The principles of covert channels are discussed and channels which can avoid router to overwrite are implemented at Internet circumstance by simulation. The countermeasure to steganalysis which should be taken is analyzed with newest development of network covert channel’s detection.

Key words: information hiding, protocol steganography, IP header option, network covert channel

中图分类号: