请输入您要查询的百科知识:

 

词条 Generalized TTL security mechanism
释义

  1. Introduction

  2. Implementation

  3. History

  4. See also

  5. External links

{{Orphan|date=February 2009}}{{refimprove|date=July 2016}}

The Generalized TTL Security Mechanism (GTSM) is a proposed Internet data transfer security method relying on a packet's Time to Live (IPv4) or Hop limit (IPv6) thus to protect a protocol stack from an attack of packets sent in rapid succession.

Introduction

The desired purpose of this proposal is to protect router infrastructure from overload-based attacks.

Implementation

For protocols which GTSM is enabled, the following procedure is performed.

  • If the router is directly connected
    • Change the outbound TTL to 255 for its protocol connection
    • If the protocol is a configured protocol peer
      Set the Access Control List (ACL) to allow packets of the given protocol to only pass to the route processor (RP). The TTL must be set to either 255 if the destination is directly connect or 255 minus the range of acceptable hops if not connect directly. This method assumes however that the ACL designated by the receive path is configured to control packets passing to the RP.
      • If the inbound TTL is set to 255 or 255 minus the range of acceptable hops (when the peer is not directly connected), the packet will not be processed and will be sent to a low priority queue.

      History

      Many people have been given credit for creating the idea. Among them are Paul Traina and Jon Stewart. A similar method was also proposed by Ryan McDowell.{{cn|date=July 2016}}

      See also

      • Protocol stack
      • Denial-of-service attack

      External links

      • The Generalized TTL Security Mechanism (GTSM), RFC 5082
      • [https://www.mosaic451.com/2015-another-record-year-cybersecurity-breaches/ 2015, a Record Year in CyberSecurity Breaches]

      2 : Computer network security|Internet terminology

随便看

 

开放百科全书收录14589846条英语、德语、日语等多语种百科知识,基本涵盖了大多数领域的百科知识,是一部内容自由、开放的电子版国际百科全书。

 

Copyright © 2023 OENC.NET All Rights Reserved
京ICP备2021023879号 更新时间:2024/9/20 20:27:24