Dissertation > Excellent graduate degree dissertation topics show
ARP spoofing prevention design based on NDIS intermediate driver
Author: WangXiaoLing
Tutor: LeiHang
School: University of Electronic Science and Technology
Course: Applied Computer Technology
Keywords: campus network ARP spoof NDIS DDK defence
CLC: TP393.08
Type: Master's thesis
Year: 2009
Downloads: 69
Quote: 0
Read: Download Dissertation
Abstract
|
With the rapid development and gradual popularization of network, its application has already infiltrated into every fields of the society, and become an indispensable and key tool for the social growth. However, its efficiency and safety attracts more and more attention. Of the various threats to network, ARP Spoof Attack has gradually gained the most concern.The base of modern Internet is TCP/IP protocol cluster, whose security was not fully considered in its original design. Therefore, there are some security risks in many of its protocols, which enable it easy for hackers to attack the network. There also exist some faults of ARP protocol due to its widespread transmission, and so on. Taking advantage of the fault of the ARP protocol, Hackers usually send forged ARP response packets, and make the target computer receive the forged mapping relation between the IP Address and the MAC Address, to update the ARP cache, and to realize network monitoring, stealing user account, and tampering site content, etc.. Furthermore, Hackers often combine the ARP deception theory with other ways to get other attacks---listening, denying service, mounting virus, and so on. Due to these, in order to keep the security, reliability and high efficiency of network, it is necessary for us to understand the ARP deception theory and its attacking ways, and so to improve our network security awareness and to take measures positively.Firstly, the present paper introduces TCP/IP protocol cluster and the basic knowledge of network security. Then, the working principle and features of the ARP protocol are presented, and its faults are analyzed. The faults include the base of ARP --- any host is reliable in the network, ARP request packets are widely transmitted, even if ARP request packet is not transmitted, ARP response packet can be received, The received ARP response packet, being stateless, needs no confirmation,and so on. Thirdly, ARP reception theory and its implementation are studied with the introduction of some functions and general defending methods for ARP deception. Lastly, the data transmitting and receiving process of NDIS intermediate driver is analyzed with the definition of NDIS packet. By using the Windows2000DDK Development Kit of Microsoft, basing on the NDIS intermediate driver and MicrosoftWindows2000/XP, under an development environment of MicrosoftVisualC++V6.0, an ARP spoof prevention methods---S-ARP for campus network is designed, which are applicable for efficient checking and preventing ARP spoof virus by filtering and analyzing the data packet received and transmitted.The method has some practial value.
|
Related Dissertations
- Campus Network Management Flow Analysis Technology Research and Implementation,TP393.06
- Design and Implementation of Packet Processing under UWB,TN925
- Based on TCP / IP, no shaft offset Remote Monitoring System Design,TP277
- ARP Spoofing Defense System Design and Implementation,TP393.08
- Campus Network, An Oasis for Teacher’s Growth,G451
- IPv6-based IGP routing protocol analysis and application,TP393.04
- Design and Implementation of the campus network intrusion detection system,TP393.18
- The Design, Implementation and Performance Verification of Integrated VPN System Based on IPv6 Campus Network,TP393.08
- Research and Development of Digital Resources Search Engine Technologies on Campus Network,TP391.3
- Expression of Mice Ovum Mutant Gene in Early Embryonic Development,S865.13
- The Research on Compatibility between DDK Oocyte Cytoplasmic Substance and PWK Sperm Factor in Mice,S865.13
- Design and implementation of video surveillance systems based on wireless network,TP277
- Design and Implementation of Stateful Inspection Firewall,TP393.08
- Research and Implementation of Yanbian University campus network based on IPv6 security,TP393.08
- The Design of Next Generation Campus Networkd Based on IPv6,TP393.18
- Campus network environment, network security and defense research and practice,TP393.18
- Design and Implementation of the Web-based Campus Network Performance Measurement and Analysis System,TP393.06
- University City Campus Network Culture Construction Status and Strategies,G641
- Kang national defense Thought,K256
- Campus Network Culture to University Students’ Influence and Dealing with Strategy Research,G641
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|