攻击类型与防御策略对应关系表

表1 攻击类型与防御策略对应关系表

攻击类型

ATIC显示攻击类型

对应防御策略

SYN Flood

SYN flood

error-seq源认证

right-seq源认证

首包检查

源IP SYN报文比例异常限速

ACK Flood

ACK flood

会话严格模式检查

会话宽松模式检查

ACK首包检查

SYN-ACK Flood

SYN-ACK Flood

源认证防御

TCP首包检查

异常会话检查

RST/FIN Flood

FIN-RST flood

会话检查

TCP首包检查

TCP Fragmentation Flood

TCP fragment flood

TCP分片攻击防御

TCP Connection Flood

TCP connection flood

源IP新建会话检查

源IP并发会话检查

空连接检查

重传会话检查

Sockstress检查

ACK会话检查

SYN会话检查

TCP Malformed

TCP Malformed

TCP异常报文防御

TCP Bandwidth Overflow

TCP Bandwidth Overflow

TCP限流

TCP Fragment Bandwidth Overflow

TCP Fragment Bandwidth Overflow

TCP分片限流

UDP Flood

UDP Flood

指纹防御

UDP Fragment Flood

UDP Fragment Flood

UDP分片攻击防御

UDP Bandwidth Overflow

UDP Bandwidth Overflow

UDP限流

UDP Fragment Bandwidth Overflow

UDP Fragment Bandwidth Overflow

UDP分片限流

UDP Malformed

UDP Malformed

UDP异常报文防御

ICMP Flood

ICMP Flood

ICMP限速

Other Flood

Other Flood

Other防御

Other Bandwidth Overflow

Other Bandwidth Overflow

Other限流

DNS Query Flood

DNS Query flood

DNS缓存服务器TCP认证

DNS授权服务器CNAME认证

被动防御

DNS Reply Flood

DNS Reply flood

Reply认证防御

Source DNS Query Flow Abnormal

Source DNS Query Flow Abnormal

DNS Query源限速

Source DNS Reply Flow Abnormal

Source DNS Reply Flow Abnormal

DNS reply源限速

DNS Query Domain Flow Abnormal

DNS Query Domain Flow Abnormal

DNS Query域名限速

DNS Reply Domain Flow Abnormal

DNS Reply Domain Flow Abnormal

DNS reply域名限速

DNS No Such Name

DNS No Such Name

NXDomain请求检测

DNS Format Error

DNS Format Error

DNS报文合法性检查

DNS Size Abnormal

DNS Size Abnormal

DNS请求报文长度限制

DNS回应报文长度限制

SIP Flood

SIP Flood

SIP源探测

SIP Source Rate Abnormity

SIP Source Rate Abnormity

SIP源IP限速

HTTP Flood

HTTP Flood

302重定向

验证码

cookie源认证

JavaScript重定向

HTTP首包检查

HTTP指纹学习

代理检测

syn报文限速

ack报文限速

大资源检测

高频请求检测

固定URI检测

HTTP Connection Flood

HTTP Connection Flood

HTTP慢速连接检测

HTTP异常连接

HTTPS Flood

HTTPS Flood

HTTPS源认证防御

大资源检测

高频请求检测

固定资源请求检测

TLS Connection Flood

TLS Connection Flood

TLS防御重协商次数检查

TLS防御会话检查

空连接检测

Single IP Bandwidth Overflow

Single IP Bandwidth Overflow

单目的IP限流

Zone Bandwidth Overflow

Zone Bandwidth Overflow

防护对象限流

IP Reputation

IP Reputation

IP信誉

Host Traffic Over Flow

Host Traffic Over Flow

秒级黑洞

Malicious Domains Attack

Malicious Domains Attack

域名审计

Location Attack

Location Attack

位置策略

Filter Attack

Filter Attack

过滤器

Blacklist

Blacklist

黑名单

Global TCP Abnormal

Global TCP Abnormal

TCP阻断

TCP新建会话限速

Global TCP Fragment Abnormal

Global TCP Abnormal

TCP分片阻断

Global UDP Abnormal

Global UDP Abnormal

UDP阻断

UDP新建会话限速

Global Other Abnormal

Global Other Abnormal

Other阻断

Other新建会话限速


版权所有 © 华为技术有限公司