| 10.14489/vkit.2019.01.pp.037-047 |
|
DOI: 10.14489/vkit.2019.01.pp.037-047 Басыня Е. А. Аннотация. Рассмотрена проблематика построения систем информирования и оповещения населения с использованием глобальной сети Интернет, функционирующей на базе стека протоколов TCP / IP (Transmission Control Protocol / Internet Protocol). Описаны различные сферы применения данных систем: от обеспечения безопасности населения и территорий, в том числе защиты от чрезвычайных ситуаций, до рекламной деятельности. Определены базовые уязвимости стека протоколов TCP / IP, связанные с несовершенством программного обеспечения операционных систем (ОС) и прикладных решений. Представлено описание распределенной системы информирования и экстренного оповещения населения с применением беспроводной передачи данных по Wi-Fi (Wireless Fidelity) и 4G/LTE (Fourth Generation / Long-Term Evolution) каналам связи. Сформулирована научная новизна предлагаемого метода – полноценная фальсификация слепков ОС, используемых сервисов, служб и их уязвимостей. Проведены эксперименты по анализу и дешифровке информационных потоков с использованием профильных программных продуктов. Представлен эксперимент по исследованию разработанной системы механизмами активного и пассивного анализа трафика и информационных систем в сравнении с существующими решениями на основе выставления ловушек. Предложенный продукт интегрирован в качестве модуля системы интеллектуально-адаптивного управления сетевой инфраструктурой предприятия. Ключевые слова: система информирования и оповещения населения; беспроводная передача данных по каналам Wi-Fi и 4G/LTE; виртуальная частная сеть; многослойное шифрование; инкапсуляция; модификация простукивания портов; ловушка.
Basinya E. A. Abstract. The paper addresses the issue of building public alert and warning systems using a global Internet network operating on the basis of the TCP/IP protocol stack. Various scopes of application are considered: from ensuring the security of the population and territories, including protection from emergencies, to advertising activities. The basic vulnerabilities of the TCP / IP protocol stack are described, as well as the imperfection of operating system and application solutions software. This article describes the development of a distributed public alert and warning system with the use of wireless data transmission by Wi-Fi and 4G / LTE channels. The operation of this system is carried out using the original method of counteracting the tools of active and passive traffic and information resources analysis at facilities with weak computing powers, such as modern single-board computers based on the ARM (Advanced RISC Machine, RISC – Reduced Instruction Set Computer) platform. The novelty of the proposed method is the conduct of operating system fingerprints as well as services used and their vulnerabilities full falsification, generating false various services traffic, sending false authentication information (logins and passwords) with further attacker actions tracking, and also the identification of hacking and anonymization tools used by the intruder. The system health check assessment included manual and automated testing of the developed software product and client hardware implementation. Also the experiments to analyze and decrypt information flows using specialized software products were conducted. An experiment to study the developed system by the mechanisms of active and passive analysis of traffic and information systems in comparison with the existing solutions based on setting of traps (honeypots) is presented. The proposed software is integrated as one of the modules of the system for intelligent adaptive enterprise network infrastructure management. Keywords: Public alert and warning system; Wireless data transmission by Wi-Fi and 4G/LTE channels; Virtual private network; Multilayer encryption; Encapsulation; Port knocking modification; Trap.
РусЕ. А. Басыня (Новосибирский государственный технический университет, Научно-исследовательский институт информационно-коммуникационных технологий, Новосибирск, Россия) E-mail: Этот e-mail адрес защищен от спам-ботов, для его просмотра у Вас должен быть включен Javascript EngE. A. Basinya (Novosibirsk State Technical University, Research Institure of Information and Communications Technologies, Novosibirsk, Russia) E-mail: Этот e-mail адрес защищен от спам-ботов, для его просмотра у Вас должен быть включен Javascript
Рус1. Tiwari M., Kumar S. Vulnerability of MR-ARP in Prevention of ARP Poisoning and Solution // Proc. of the 2nd Intern. Symposium on Security in Computing and Communications (SSCC – 2014). 2014. P. 363 – 369. Eng1. Tiwari M., Kumar S. (2014). Vulnerability of MR-ARP in Prevention of ARP Poisoning and Solution. In Proceedings of the 2nd International Symposium on Security in Computing and Communications (SSCC – 2014), pp. 363-369.
РусСтатью можно приобрести в электронном виде (PDF формат). DOI: 10.14489/vkit.2019.01.pp.037-047 Скопируйте DOI статьи и перейдите по ссылке https://id-spektr.ru/product/pokupka-elektronnoy-stati-iz-zhurnala-vestnik-kompyuternyh-i-informatsionnyh-tehnologiy В комментарии к заказу обязательно укажите DOI статьи. .
EngThis article is available in electronic format (PDF). DOI: 10.14489/vkit.2019.01.pp.037-047 Copy the article DOI and follow the link https://id-spektr.ru/product/pokupka-elektronnoy-stati-iz-zhurnala-vestnik-kompyuternyh-i-informatsionnyh-tehnologiy Please specify the article DOI in the order comments.
.
|
Архив номеров
Разработка концепции и создание сайта - ООО «Издательский дом «СПЕКТР»