Journal on Communications ›› 2020, Vol. 41 ›› Issue (6): 139-151.doi: 10.11959/j.issn.1000-436x.2020126

• Papers • Previous Articles     Next Articles

Design of key technologies for intranet dynamic gateway based on DPDK

Fucai CHEN,Weizhen HE,Guozhen CHENG,Shumin HUO,Dacheng ZHOU   

  1. National Digital Switching System Engineering and Technological R&D Center,Zhengzhou 450002,China
  • Revised:2020-03-26 Online:2020-06-25 Published:2020-07-04
  • Supported by:
    The National Key Research and Development Program of China(2018YFB080400);Foundation for Innovative Research Groups of the National Natural Science Foundation of China(61521003)

Abstract:

Aiming at the problems of high packet processing delay and high overhead caused by IP hopping,active defense gateway system with multi-layer network deployment structure was designed and implemented based on the data plane development kit (DPDK).Firstly,based on the DPDK fast forwarding framework,forwarding and processing performance of the system were optimized.Secondly,for the dynamic random mapping gateway with three different types of IP addresses,an efficient IP address allocation algorithm and an unpredictable IP address conversion algorithm were designed.The experimental results show that the designed system can effectively reduce the rate of information acquisition of sniffing attack,while greatly improving the processing delay caused by dynamic hopping.

Key words: active defense, moving target defense, IP address randomization, data plane development kit, sniffer attack

CLC Number: 

No Suggested Reading articles found!