: , , . ( , , ..), , . , , . Web-, , . .
, , .. , , , , , . .
-, . , , . , . , , hack, crack phreak , .
-, . . , , . , , IP- , .
, , . , , , . , TPC/IP. . , . - (IP) . IP . , (Request for Comments, RFC), IP. , IP , , , , . , IP, .
, , promiscuous mode ( , , ). , . . . , (Telnet, FTP, SMTP, POP3 ..), , (, ).
, . . -, , . ( ). , , , , . , .
:
. . , . (One-Time Passwords, OTP). , , , , . , , -, , -, -. - . (token) , ( ) . , , . , . , (, ), .
. . , , Ethernet, , , . , .
. , , . , , , . , . , LOpht Heavy Industries, AntiSniff.
. , . , , ( ). Cisco IPSec, IP. SSH (Secure Shell) SSL (Secure Socket Layer).
IP-
IP- , , , . : IP-, IP-, , . IP- . DoS, , .
, IP- , . , IP-. , , , .
IP-, , .
( ) .
. IP- . IP-, , , . , IP-, ; , .
RFC 2827. ( ). , IP- . , RFC 2827, (ISP). , , . , ISP IP- 15.1.1.0/24, , ISP , 15.1.1.0/24. , , , . , , . , RFC 2827 (10.0.0.0/8), ( ) ( 10.1.5.0/24).
IP- , : . IP- , IP-. . . , .
Denial of Service (DoS), , . , . DoS , , DoS . DoS , . DoS, , :
TCP SYN Flood;
Ping of Death;
Tribe Flood Network (TFN) Tribe Flood Network 2000 (TFN2K);
Trinco;
Stacheldracht;
Trinity.
(Computer Emergency Response Team, CERT), DoS.
www.cert.org/tech_tips/denial_of_service.html. DoS . , - , DoS , . ( Web- FTP-) DoS , , , , . DoS -, TCP ICMP (Internet Control Message Protocol).
DoS , . , . , . , , , . , DoS (distributed DoS, DDoS).
DoS :
. DoS. RFC 2827. , .
-DoS. -DoS . .
(traffic rate limiting). (ISP) . , . ICMP, . (D)DoS ICMP.
, (brute force attack), , IP- . IP- , , . (brute force attack).
, (, ). , , . , , , .
, ( ) : , . , , , , .
, . / . , , .
, . . , (#, %, $ ..). , . , . , , , , . , . . L0phtCrack, Windows NT. , , .
http://www.l0phtcrack.com/.
Man-in-the-Middle
Man-in-the-Middle , . , , , , . , . , , , DoS, .
Man-in-the-Middle . , , . , (, ), Man-in-the-Middle .
. (sendmail, HTTP, FTP). , , ( , ). , (). , , .
, , . , , Web-, 80. web- Web-, . 80.
. . . , , :
- - / ;
: Bugtrad (
http://www.securityfocus.com) CERT (
http://www.cert.com);
. - , , . DNS, - . DNS , . - , DNS, , . , , , . , , . , .
. , , ICMP - , -, , . , - , IP-. IDS , (ISP), , .
();
, (IDS) IDS:
- IDS (NIDS) , . NIDS , , / ;
- - IDS (HIDS) . .
IDS , . , . IDS . IDS . IDS , .
, . , . . DNS, SMTP HTTP. , , . , , . , .
. , , . , , IP-, .
, , . , . (DMZ), , . , . , , . , , . , , netcat.
http://www.avian.org.
(. ). , - IDS (HIDS).
, . elnet, elnet . elnet authorization required to use this resource ( ). , . , .
. . Telnet , Web- . , . , .
. , . , command.com ( Windows) , command.com.
, , , . , , . , , . , .
, , , . . . .