文档介绍:电力二次系统安全防护的DDoS攻击原理及防御技术
梁智强谢善益
(广东电网公司电力科学研究院广州 510080)
[摘要] 目前,各电力企业根据国家电力监管委员会第五号令《电力二次系统安全防护规定》及《全国电力二次系统安全防护总体方案》等有关文件要求,对电力二次系统制定并实施了信息安全防护措施。
本文首先综述了DDoS攻击的原理;然后依据电力二次系统安全防护总体方案,结合DDoS攻击的特点,分析了安全防护系统中可能受到DDoS攻击的风险;最后对电力二次系统安全防护体系中的DDoS攻击防御技术进行了探讨。
[关键字] DDoS 电力二次系统安全防护防御技术
[Abstract ] Currently, under the State Electricity mission Decree Fifth "Electricity auxiliary system security protection requirements" and "National power auxiliary system security protection overall plan" and requirements of other relevant documentation, the power auxiliary systems are developed and implemented information security protective measures by electric power enterprises.
This paper reviewed the principles of DDoS attacks; Then, based on the power auxiliary system security protection overall plan, combined with the characteristics of DDoS attacks, analyzed the risk of DDoS attacks that may be subject to the security protection system; Finally, the DDoS attack defense techniques of the power auxiliary system security protection system are discussed.
[Key words] DDoS power auxiliary system security protection defense technique
DDoS攻击
DDoS攻击概念
DDoS[1](Distributed Denial of Service,分布式拒绝服务)攻击是一种基于DoS[1](Denial of Service,拒绝服务)的特殊形式的拒绝服务攻击,是一种分布、协作的大规模攻击方式[1]。DoS攻击只要一台计算机就可实现,而DDoS攻击是利用一批受控制的计算机发起攻击。DDoS攻击的攻击者不需要直接对目标进行攻击,只需要控制大量的僵尸主机就可以容易地从不同站点并发地发起攻击,攻击来势迅猛,令人难以防备,因此DDoS攻击具有很大的破坏性。