摘要:
A device and method for preventing Internet Protocol version 6 (IPv6) address being fraudulently attacked are disclosed in present invention, and the method comprises: detecting a Neighbor Solicitation (NS) data packet; judging whether the source address of the data packet is an unspecified address or not; if yes, checking the IPv6 address in the Target Address field and judging whether there is a corresponding binding table item or not; otherwise, collecting the correlative information and creating a binding table item corresponding to the IPv6 address; and constituting a data flow forwarding and control strategy according to the data in the binding table item, and applying the strategy to the data flow forwarding and control. The present invention solves the problem that the address is fraudulently attacked in the IPv6 network in which addresses are assigns based on various address assignment mechanisms.
摘要:
The present invention provides a tunnel gateway device used for: receiving a domain name system (DNS) server address for an inner layer or outer layer service network of a tunnel configured by an automatic control server according to a management protocol; and taking its own address as the DNS server's address and sending the address to a client, or sending the DNS server address to the client. The present invention also provides a method for obtaining the DNS, and the present invention implements the DNS server distribution and obtaining of the DNS without depending on the address protocol.