论文标题
基于IPv6的住宅宽带网络中的网络侦察
Network Reconnaissance in IPv6-based Residential Broadband Networks
论文作者
论文摘要
网络扫描是一种广泛使用的技术,可以在整个Internet上收集信息。从IPv4到IPv6的过渡会导致传统的网络扫描变得降低了。由于使用NAT,越来越多的主机是仅通过IPv4公开寻址的主机,或者由于使用NAT而公开寻址,这促使需要基于IPv6的Internet网络扫描技术。 IPv6网络扫描的所有当前方法都使用丢失列表(扫描的IPv6地址列表)。已经介绍了各种编译杀手清单的方法,但它们对服务器托管的偏见很大,并且找不到客户端主机的地址 - 智能手机,平板电脑,PC,“智能家居”设备等。客户端主机是连接到Internet的大多数设备。此外,当连接到住宅宽带连接时,它们可以以实质性的速度交换数据,从而使它们成为僵尸网络的吸引力。扫描住宅宽带网络具有挑战性,因为活动地址的变化频率要比服务器主机的地址更频繁。 该硕士论文旨在将先前的IPv6网络扫描技术调整到住宅宽带网络中。为此,做出了以下贡献: IPv6地址空间可视化方法的描述和评估, 将NTP池项目引入公共和被动IPv6命中列表源,主要检测客户端主机,“智能主页”设备和CPE, 互联网访问提供商网络的扫描技术的描述, 关于德国三大住宅宽带网络的案例研究。
Network scanning has been a widely used technique to gather information on the Internet as a whole. The transition from IPv4 to IPv6 causes traditional network scanning to become less useful. An increasing number of hosts is either IPv6-only or not publicly addressable via IPv4 due to the use of NAT, prompting a need for network scanning techniques for the IPv6-based Internet. All current approaches to IPv6 network scanning make use of hitlists (lists of IPv6 addresses to be scanned). A variety of methods for compiling hitlists have been presented, but they have a strong bias towards server hosts, and do not find addresses of client hosts -- smartphones, tablets, PCs, 'smart home' devices, etc. -- in a significant amount. Client hosts are the majority of devices connected to the Internet. Furthermore, when connected to a residential broadband connection, they can exchange data at substantial speeds, making them attractive targets for botnets. Scanning residential broadband networks is challenging because the active addresses are changing much more frequently than addresses of server hosts. This master's thesis aims to adapt prior IPv6 network scanning techniques to residential broadband networks. To this end, the following contributions are made: Description and evaluation of an IPv6 address space visualization method, Introduction of the NTP Pool Project as a public and passive IPv6 hitlist source detecting mostly client hosts, 'Smart Home' devices and CPEs, Description of a scanning technique for Internet access provider networks, Case study on the three major German residential broadband networks.