Summary: | 碩士 === 國防大學中正理工學院 === 電子工程研究所 === 92 === Network performance and security are playing a very important role in current Internet environment. Most network security systems focus on edge systems such as servers, firewalls, and intrusion detection systems. Another target could be attacked are “network routing protocols”. Network routing protocols are used to create and maintain routing information and forward packets. Once routing protocols are under attack, routing information will be modified into incorrect situation or very large size and thus affects the packet forwarding and router function. In this thesis, we examine the performance and security issues of various routing protocols including RIP, IGRP, EIGRP, and OSPF. An experimental network environment is setup to implement various routing activities which are monitored and analyzed via logging and snmp trap analysis systems. Various routing performance metrics are evaluated and analyzed via the logged and trapped information. Finite state automata are designed to trace the routing behavior and detect malicious routing table updates.
|