作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (05): 135-137. doi: 10.3969/j.issn.1000-3428.2007.05.047

• 安全技术 • 上一篇    下一篇

交换式网络下HTTP会话的劫持研究及其对策

王 鹏,季 明,梅 强,祝跃飞   

  1. (信息工程大学网络工程系,郑州 450002)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-03-05 发布日期:2007-03-05

HTTP Session Hijacking on Switch LAN and Its Countermeasures

WANG Peng, JI Ming, MEI Qiang, ZHU Yuefei   

  1. (Network Engineering Department , Information Engineering University, Zhengzhou 450002)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-03-05 Published:2007-03-05

摘要: 针对ARP协议和TCP协议的安全漏洞,在分析HTTP协议安全缺陷的基础上,提出了HTTP中间人会话劫持的理论,通过实验论证了在用户使用HTTP协议进行文件下载时引发中间人攻击的可能性。为避免此种攻击所造成的安全威胁,提出了采用静态ARP表、监控ARP缓存异常、使用HTTPS协议3种不同的安全措施来增加网络的安全性。

关键词: ARP欺骗, 会话劫持, 中间人攻击

Abstract: Base on the ARP spoof and TCP session hijacking, the HTTP session hijacking is presented, and an experiment is made to testify the possibility of HTTP man in the middle attack. It proves that HTTP session hijacking could be taken place on switch LAN easily, when LAN users downloading the files on the HTTP protocol. At the end of this paper, the advices are given on how to improve the network security and prevent HTTP session hijacking by using the three ways: static ARP table,watch the ARP table and HTTPS protocol.

Key words: ARP spoof, Session hijacking, MITM