作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2018, Vol. 44 ›› Issue (11): 123-128. doi: 10.19678/j.issn.1000-3428.0048569

• 安全技术 • 上一篇    下一篇

通用僵尸网络实验平台设计

李大伟   

  1. 南京工程学院 计算机工程学院,南京 211167)
  • 收稿日期:2017-09-06 出版日期:2018-11-15 发布日期:2018-11-15
  • 作者简介:李大伟(1981—),男,高级工程师、博士,主研方向为信息安全、虚拟化网络仿真
  • 基金资助:

    国家自然科学基金(61572263);中国博士后科学基金(2017M611807);南京工程学院人才启动项目(YKJ201721)

Design of Universal Botnet Experimental Platform

LI Dawei   

  1. School of Computer Engineering,Nanjing Institute of Technology,Nanjing 211167,China
  • Received:2017-09-06 Online:2018-11-15 Published:2018-11-15

摘要:

在开放网络中研究僵尸网络具有过程不可控、规模难以扩展、无法重复实验等弊端。为解决该问题,研究大规模可定制的通用僵尸网络实验平台的需求和设计原则,建立一种僵尸网络仿真平台体系框架,从基础环境虚拟化构建、传播行为仿真、数据集加载和流量合成3个方面讨论系统实现的关键技术。在P2P和IoT僵尸网络场景中分别进行实验,结果表明,基于该仿真平台可有效开展僵尸网络的检测、识别等实验。

关键词: 僵尸网络, 实验床, 虚拟化, 仿真技术, 性能分析

Abstract:

Botnet research in open networks has many drawbacks,such as uncontrollable process,difficult to scale,and unable to repeat experiments.In order to solve this problem,the requirement and design principle of the universal botnet experimental platform with mass customization are studied,and a botnet simulation platform architecture is established.The key technologies of the system implementation are discussed from three aspects:the construction of basic environment virtualization,propagation behavior simulation,data set loading and traffic synthesis.Finally,experimental results in P2P and IoT botnet scenarios show that the simulation platform can effectively carry out botnet detection and recognition experiments.

Key words: botnet, testbed, virtualization, simulation technology, performance analysis

中图分类号: