![Phân tích tư tưởng của nhân dân qua đoạn thơ: Những người vợ nhớ chồng… Những cuộc đời đã hóa sông núi ta trong Đất nước của Nguyễn Khoa Điềm](https://timtailieu.net/upload/document/136415/phan-tich-tu-tuong-cua-nhan-dan-qua-doan-tho-039-039-nhung-nguoi-vo-nho-chong-nhung-cuoc-doi-da-hoa-song-nui-ta-039-039-trong-dat-nuoc-cua-nguyen-khoa-136415.jpg)
Từ chối dịch vụ (DoS) trong Microsoft ProxyServer, and Internet Security and Acceleration
Số trang: 4
Loại file: doc
Dung lượng: 31.50 KB
Lượt xem: 9
Lượt tải: 0
Xem trước 2 trang đầu tiên của tài liệu này:
Thông tin tài liệu:
Microsoft Corp.s Internet Security and Acceleration Server (ISA)Serverintegrates an extensible, multilayerenterprise firewall and ascalablehighperformanceweb cache. It builds on Microsoft Windows 2000security...
Nội dung trích xuất từ tài liệu:
Từ chối dịch vụ (DoS) trong Microsoft ProxyServer, and Internet Security and AccelerationTừchốidịchvụ(DoS)trongMicrosoftProxyServer,andInternetSecurityandAccelerationS:trangnàyđãđượcđọc lầnBEGINPGPSIGNEDMESSAGEHash:SHA1iDEFENSESecurityAdvisory04.09.03:http://www.idefense.com/advisory/04.09.03.txtDenialofServiceinMicrosoftProxyServer2.0andInternetSecurityandAccelerationServer2000April9,2003I.BACKGROUNDMicrosoftCorp.sInternetSecurityandAccelerationServer(ISA)Serverintegratesanextensible,multilayerenterprisefirewallandascalablehighperformancewebcache.ItbuildsonMicrosoftWindows2000securityanddirectoryforpolicybasedsecurity,accelerationandmanagementofinternetworking.Moreinformationisavailableathttp://www.microsoft.com/isaserver/.MSProxy2.0isthepredecessortoISAServer,moreinformationisavailableathttp://www.microsoft.com/isaserver/evaluation/previousversions/default.asp.II.DESCRIPTIONAvulnerabilityexistsinISAServerandMSProxy2.0thatallowsattackerstocauseadenialofserviceconditionbyspoofingaspeciallycraftedpackettothetargetsystem.AnotherimpactofthisvulnerabilityisthecapabilityofaremoteattackertogenerateaninfinitepacketstormbetweentwounpatchedsystemsimplementingISAServerorMSProxy2.0overtheInternet.BothISAServerandMSProxy2.0,bydefault,installaWinSockProxy(WSP)servicewspsrv.exe,designedfortestinganddiagnosticpurposes.TheWSPservicecreatesaUserDatagramProtocolsocketboundtoport1745.AspeciallycraftedpacketcancauseWSPtogenerateacontinuousfloodofrequestsandreplyrequirements.III.ANALYSISInthecaseoftheattackscenarioforaninternalLANattackercausingadenialofservice,thismalformedpacketmustmeetthefollowingcriteria:*ThesourceanddestinationIParethesameastheISAServer.*Thesourceanddestinationportis1745.*Thedatafieldisspeciallycraftedandresemblestherequestformat.AnattackerwithaccesstotheLANcananonymouslygenerateaspeciallycraftedUDPpacketthatwillcausethetargetISAServertofallintoacontinuousloopofprocessingrequestandreplypackets.ThiswillcausetheISAServertoconsume100percentoftheunderlyingsystemsCPUusage.ItwillcontinuetodosountilthesystemrebootsortheWinSockProxy(WSP)servicerestarts.InthecaseoftheattackscenarioofaremoteattackercausingapacketstormbetweentwosystemsrunningISAServerorMSProxy2.0,themalformedpacketmustmeetthefollowingcriteria:*ThesourceIPisoneofthetargets*ThedestinationIPistheothertarget*Thesourceanddestinationportis1745.*Thedatafieldisspeciallycraftedandresemblestherequestformat.IV.DETECTIONiDEFENSEhasverifiedthatMicrosoftISAServer2000andMSProxy2.0arebothvulnerabletothesamemalformedpacketcharacteristicsdescribedabove.Wspsrv.exeisenabledbydefaultinProxyServer2.0.TheMicrosoftFirewallserverisenabledbydefaultinISAServerfirewallmodeandISAServerintegratedmodeinstallations.ItisdisabledinISAServercachemodeinstallations.V.WORKAROUNDTopreventthesecondattackscenario,applyingressfilteringontheInternetrouteronUDPport1745topreventamalformedpacketfromreachingtheISAServerandcausingapacketstorm.VI.RECOVERYRestarteithertheWinSockProxyServiceortheaffectedsystemtoresumenormaloperation.VII.VENDORFIX/RESPONSEMicrosofthasprovidedfixesforProxyServer2.0andISAServerathttp://www.microsoft.com/technet/security/bulletin/MS03012.asp.VIII.CVEINFORMATIONTheMitreCorp.sCommonVulnerabilitiesandExposures(CVE)ProjecthasassignedtheidentificationnumberCAN20030110tothisissue.IX.DISCLOSURETIMELINE01/23/2003IssuedisclosedtoiDEFENSE02/24/2003security@microsoft.comcontacted02/24/2003ResponsefromIainMulholland,MSRC02/25/2003iDEFENSEclientsnotified03/03/2003StatusrequestfromiDEFENSE03/11/2003StatusrequestfromiDEFENSE03/11/2003ResponsefromIainMulholland,MSRC03/13/2003StatusrequestfromiDEFENSE03/18/2003StatusrequestfromiDEFENSE03/18/2003ResponsefromIainMulholland,MSRC03/24/2003StatusrequestfromiDEFENSE03/25/2003ResponsefromIainMulholland,MSRC04/09/2003PublicDisclosureGetpaidforsecurityresearchhttp://www.idefense.com/contributor.htmlSubscribetoiDEFENSEAdvisories:sendemailtolistserv@idefense.com,subjectline:subscribeAboutiDEFENSE:iDEFENSEisaglobalsecurityintelligencecompanythatproactivelymonitorssourcesthroughouttheworld—fromtechnicalvulnerabilitiesandhackerprofilingtotheglobalspreadofvirusesandothermaliciouscode.Oursecurityintelligenceservicesprovidedecisionmakers,frontline ...
Nội dung trích xuất từ tài liệu:
Từ chối dịch vụ (DoS) trong Microsoft ProxyServer, and Internet Security and AccelerationTừchốidịchvụ(DoS)trongMicrosoftProxyServer,andInternetSecurityandAccelerationS:trangnàyđãđượcđọc lầnBEGINPGPSIGNEDMESSAGEHash:SHA1iDEFENSESecurityAdvisory04.09.03:http://www.idefense.com/advisory/04.09.03.txtDenialofServiceinMicrosoftProxyServer2.0andInternetSecurityandAccelerationServer2000April9,2003I.BACKGROUNDMicrosoftCorp.sInternetSecurityandAccelerationServer(ISA)Serverintegratesanextensible,multilayerenterprisefirewallandascalablehighperformancewebcache.ItbuildsonMicrosoftWindows2000securityanddirectoryforpolicybasedsecurity,accelerationandmanagementofinternetworking.Moreinformationisavailableathttp://www.microsoft.com/isaserver/.MSProxy2.0isthepredecessortoISAServer,moreinformationisavailableathttp://www.microsoft.com/isaserver/evaluation/previousversions/default.asp.II.DESCRIPTIONAvulnerabilityexistsinISAServerandMSProxy2.0thatallowsattackerstocauseadenialofserviceconditionbyspoofingaspeciallycraftedpackettothetargetsystem.AnotherimpactofthisvulnerabilityisthecapabilityofaremoteattackertogenerateaninfinitepacketstormbetweentwounpatchedsystemsimplementingISAServerorMSProxy2.0overtheInternet.BothISAServerandMSProxy2.0,bydefault,installaWinSockProxy(WSP)servicewspsrv.exe,designedfortestinganddiagnosticpurposes.TheWSPservicecreatesaUserDatagramProtocolsocketboundtoport1745.AspeciallycraftedpacketcancauseWSPtogenerateacontinuousfloodofrequestsandreplyrequirements.III.ANALYSISInthecaseoftheattackscenarioforaninternalLANattackercausingadenialofservice,thismalformedpacketmustmeetthefollowingcriteria:*ThesourceanddestinationIParethesameastheISAServer.*Thesourceanddestinationportis1745.*Thedatafieldisspeciallycraftedandresemblestherequestformat.AnattackerwithaccesstotheLANcananonymouslygenerateaspeciallycraftedUDPpacketthatwillcausethetargetISAServertofallintoacontinuousloopofprocessingrequestandreplypackets.ThiswillcausetheISAServertoconsume100percentoftheunderlyingsystemsCPUusage.ItwillcontinuetodosountilthesystemrebootsortheWinSockProxy(WSP)servicerestarts.InthecaseoftheattackscenarioofaremoteattackercausingapacketstormbetweentwosystemsrunningISAServerorMSProxy2.0,themalformedpacketmustmeetthefollowingcriteria:*ThesourceIPisoneofthetargets*ThedestinationIPistheothertarget*Thesourceanddestinationportis1745.*Thedatafieldisspeciallycraftedandresemblestherequestformat.IV.DETECTIONiDEFENSEhasverifiedthatMicrosoftISAServer2000andMSProxy2.0arebothvulnerabletothesamemalformedpacketcharacteristicsdescribedabove.Wspsrv.exeisenabledbydefaultinProxyServer2.0.TheMicrosoftFirewallserverisenabledbydefaultinISAServerfirewallmodeandISAServerintegratedmodeinstallations.ItisdisabledinISAServercachemodeinstallations.V.WORKAROUNDTopreventthesecondattackscenario,applyingressfilteringontheInternetrouteronUDPport1745topreventamalformedpacketfromreachingtheISAServerandcausingapacketstorm.VI.RECOVERYRestarteithertheWinSockProxyServiceortheaffectedsystemtoresumenormaloperation.VII.VENDORFIX/RESPONSEMicrosofthasprovidedfixesforProxyServer2.0andISAServerathttp://www.microsoft.com/technet/security/bulletin/MS03012.asp.VIII.CVEINFORMATIONTheMitreCorp.sCommonVulnerabilitiesandExposures(CVE)ProjecthasassignedtheidentificationnumberCAN20030110tothisissue.IX.DISCLOSURETIMELINE01/23/2003IssuedisclosedtoiDEFENSE02/24/2003security@microsoft.comcontacted02/24/2003ResponsefromIainMulholland,MSRC02/25/2003iDEFENSEclientsnotified03/03/2003StatusrequestfromiDEFENSE03/11/2003StatusrequestfromiDEFENSE03/11/2003ResponsefromIainMulholland,MSRC03/13/2003StatusrequestfromiDEFENSE03/18/2003StatusrequestfromiDEFENSE03/18/2003ResponsefromIainMulholland,MSRC03/24/2003StatusrequestfromiDEFENSE03/25/2003ResponsefromIainMulholland,MSRC04/09/2003PublicDisclosureGetpaidforsecurityresearchhttp://www.idefense.com/contributor.htmlSubscribetoiDEFENSEAdvisories:sendemailtolistserv@idefense.com,subjectline:subscribeAboutiDEFENSE:iDEFENSEisaglobalsecurityintelligencecompanythatproactivelymonitorssourcesthroughouttheworld—fromtechnicalvulnerabilitiesandhackerprofilingtotheglobalspreadofvirusesandothermaliciouscode.Oursecurityintelligenceservicesprovidedecisionmakers,frontline ...
Tìm kiếm theo từ khóa liên quan:
kỹ năng máy tính thủ thuật máy tính mẹo cài đặt bảo mật mạng Microsoft ProxyServer Internet Security and AccelerationTài liệu liên quan:
-
Top 10 mẹo 'đơn giản nhưng hữu ích' trong nhiếp ảnh
11 trang 336 0 0 -
Đáp án đề thi học kỳ 2 môn cơ sở dữ liệu
3 trang 331 1 0 -
Làm việc với Read Only Domain Controllers
20 trang 330 0 0 -
Sửa lỗi các chức năng quan trọng của Win với ReEnable 2.0 Portable Edition
5 trang 229 0 0 -
Kỹ thuật và ứng dụng của khai thác văn bản
3 trang 225 0 0 -
Phần III: Xử lý sự cố Màn hình xanh
3 trang 225 0 0 -
Tổng hợp 30 lỗi thương gặp cho những bạn mới sử dụng máy tính
9 trang 217 0 0 -
Hướng dẫn sử dụng mạch nạp SP200S
31 trang 215 0 0 -
Sao lưu dữ liệu Gmail sử dụng chế độ Offline
8 trang 214 0 0 -
Giáo trình Bảo trì hệ thống và cài đặt phần mềm
68 trang 213 0 0