论文部分内容阅读
回顾了“5·19断网事件”的经过,从僵尸网络、DDoS、国内网际间的互联互通、软件后门及DNS自身存在的开放性与脆弱性等方面,对事件发生的原因进行了剖析。基于此事件,结合DNS服务存在的缺陷和安全隐患,分别从DNS清洗服务、分布式DNS服务器的部署、根域名服务器的安全保护、软件漏洞的管理、DNSSEC的部署及DDoS攻击的防范等技术层面,提出了相应的解决方法和思路。
Reviewed the causes of the incident in terms of the openness and vulnerability of the back door of the software and the DNS itself, including the botnet, DDoS, interoperability among domestic networks, Analysis. Based on this event, combined with the defects of DNS service and security risks, from the aspects of DNS cleaning service, deployment of distributed DNS server, security of root name server, management of software vulnerabilities, deployment of DNSSEC and prevention of DDoS attacks, , Put forward the corresponding solutions and ideas.