15Ä꣬DDoS¹¥»÷ÒѾ³ÉΪ×îÒýÈËעĿµÄ¡¢Êܵ½ºÚ¿Í»¶ÓµÄ¹¥»÷·½Ê½¡£Èç½ñ£¬ÕýÈçͬËÀÍöºÍ˰ÊÕÒ»Ñù£¬DDoS¹¥»÷³ÉΪÆóÒµÐèÒª³¤ÆÚÃæÁÙµÄÑϾþÌôÕ½¡£

¸ù¾Ý×îеÄͳ¼ÆÊý¾ÝÏÔʾ£¬2016ÄêÒÔÀ´£¬ÎÞÂÛÊÇDDoS¹¥»÷¹æÄ£ºÍƵÂʶ¼ÔÚ²»¶ÏÅÊÉý£¬ÓÈÆäÊǹ¥»÷Õß¿ªÊ¼Ô½À´Ô½¶àµÄʹÓÃDNS
ºÍDNSSEC£¬Í¨¹ý×îÉٵĽ©Ê¬ÍøÂç×ÊÔ´¶ÔÊܺ¦ÕßÔì³É×î´óµÄÓ°Ïì¡£ 
¸ù¾ÝNexusGuard¹«Ë¾µÄÑо¿½á¹û±íÃ÷£¬2016ÄêµÚ¶þ¼¾¶ÈµÄDDoS¹¥»÷½ÏÖ®µÚÒ»¼¾¶È³ÊÏÖ83%µÄÔö³¤·ù¶È¡£ÔÚËùÓй¥»÷ÐÐΪÖУ¬
DNS³ÉΪ2016ÄêʹÓõÄ×îÆÕ±éµÄÐÒé(2015ÄêΪNTPºÍSSDP)¡£
Õë¶ÔDNSµÄDDoS¹¥»÷Óֿɰ´¹¥»÷·¢ÆðÕߺ͹¥»÷ÌØÕ÷½øÐзÖÀࣺ
1¡¢°´¹¥»÷·¢ÆðÕß·ÖÀà
½©Ê¬ÍøÂ磺¿ØÖÆ´óÅú½©Ê¬ÍøÂçÀûÓÃÕæÊµDNSÐÒéÕ»·¢Æð´óÁ¿ÓòÃû²éѯÇëÇó;
Ä£Ä⹤¾ß£ºÀûÓù¤¾ßÈí¼þαÔìÔ´IP·¢Ëͺ£Á¿DNS²éѯ
2¡¢°´¹¥»÷ÌØÕ÷·ÖÀà
Flood¹¥»÷£º·¢Ëͺ£Á¿DNS²éѯ±¨Îĵ¼ÖÂÍøÂç´ø¿íºÄ¾¡¶øÎÞ·¨´«ËÍÕý³£DNS ²éѯÇëÇó;
×ÊÔ´ÏûºÄ¹¥»÷£º·¢ËÍ´óÁ¿·Ç·¨ÓòÃû²éѯ±¨ÎÄÒýÆðDNS·þÎñÆ÷³ÖÐø½øÐеü´ú²éѯ£¬´Ó¶ø´ïµ½½ÏÉٵĹ¥»÷Á÷Á¿ÏûºÄ´óÁ¿·þÎñÆ÷×ÊÔ´µÄÄ¿µÄ¡£ 
Imperva¹«Ë¾Incapsula²¿Ãŵı¨¸æÏÔʾ£º2015Äê4Ô¡ª2016Äê5ÔÂΪÆÚÒ»ÄêµÄʱ¼äÄÚ£¬Æä°ïÖú¿Í»§×è¶ÏÁËÿÖÜÆ½¾ù·åֵΪ445
Gb/sµÄDDoS¹¥»÷¡£ 
Imperva¹«Ë¾Incapsula²¿Ãŵı¨¸æ»¹±íÃ÷£¬Ä¿Ç°£¬Ó¦ÓòãµÄDDoS¹¥»÷ÈÔÕ¼¾ÝDDoS¹¥»÷»î¶¯µÄ
60%£¬µ«ÊÇÒ²ÕýÔÚÖð²½±»ÍøÂç²ã¹¥»÷ËùÈ¡´ú£¬¿ÉÄÜÊÇÒòΪ»ùÓÚDNSµÄDDoS¹¥»÷ÕýÈÕÒæÊ¢ÐС£Èç¹ûÇ÷ÊÆÕÕÔ¤ÆÚ·¢Õ¹µÄ»°£¬ÕâÁ½ÖÖÀàÐÍ¿ÉÄÜ»áÔÚ2018ÄêʵÏÖ²¢¼ÝÆëÇýµÄ״̬¡£ 
¸ù¾Ý×îеÄDDoSÇ÷ÊÆ±¨¸æ£¬·¸×ï·Ö×ÓÕýÀûÓÃDNSSECÐÒé½øÐÐDDOS ¹¥»÷¡£DNSSECÊÇ¡°ÓòÃûϵͳ°²È«À©Õ¹¡±µÄ¼ò³Æ£¬×÷ΪDNSÐÒéµÄÀ©Õ¹£¬Æä°üÀ¨ÁËÖî¶à±£»¤DNSÈÏÖ¤ºÍÊý¾ÝÍêÕû¶ÈµÄ°²È«ÌØÐÔ£¬È»¶ø¡°·´ÉäDDoS¡±Ò²ÔÚÀÄÓÃDNSSECÐÒé¡£
Neustar¹«Ë¾µÄÑо¿ÈËÔ±³Æ¹¥»÷ÕßÏòÇ©ÊðÓÐANYÖ¸ÁîµÄÓòÃû·þÎñÆ÷·¢ËÍDNSSECÇëÇó£¬ANYÖ¸ÁîÄܹ»Ç¿ÖÆDNSSEC·þÎñÆ÷ÊÕ¼¯ËùÓйØÓÚÓòÃûºÍÇëÇóÓ¦´ðµÄDNSÐÅÏ¢¡£
ÓÉÓÚDNSSEC·þÎñÆ÷ÇëÇóÄܹ»ÓüٵÄIPµØÖ·Î±Ô죬¹¥»÷ÕßÓÕÆ·þÎñÆ÷ÏìÓ¦Êܺ¦ÕßµÄIPµØÖ·£¬¸øDDoS¹¥»÷µÄÄ¿±ê·¢ËÍÀ¬»øÁ÷Á¿¡£
¶ÔÓÚÖ»Å䱸ÁË»ù´¡DDOS·ÀÓùµÄÆóÒµ¶øÑÔ£¬»ùÓÚDNSSECµÄºéË®¹¥»÷¿ÉÒÔºÜÈÝÒ×ʹÆäÍøÂçÏÂÏߣ¬²¢¸³Óè¹¥»÷Õß×ÔÓÉ·ÃÎÊÆóÒµ»ù´¡ÉèÊ©µÄȨÏÞ¡£
¸ù¾ÝNeustar¹«Ë¾µÄ×îÐÂÑо¿ ±íÃ÷£¬ Ô¼ÓÐ80%µÄ£¬³¬¹ý1300¸öDNSSEC·þÎñÆ÷ÓÉÓÚÅäÖò»µ±£¬¹¥»÷Õß¿ÉÒÔÀûÓÃÕâЩ·þÎñÆ÷½øÐиßÓÚÆ½¾ùˮƽµÄ·´ÉäDDoS¹¥»÷¡£ 
Arbor NetworksµÄÑо¿½á¹û±íÃ÷£¬DDOS¹¥»÷µÄ¹æÄ£ºÍƵÂʾù³ÊÏÖÉÏÉýÇ÷ÊÆ¡£½ö2016ÄêÉϰëÄ꣬
¹æÄ£³¬¹ý 100Gb/sµÄ¹¥»÷¾ÍÓÐ274Æð£¬¶ø2015ÄêÈ«Äê²ÅÖ»ÓÐ223Æð;2016ÄêÉϰëÄêÁ÷Á¿³¬¹ý200Gb/s
µÄ¹¥»÷¹²46Æð£¬¶ø2015ÄêÈ«ÄêÖ»ÓÐ16Æð;´ËÍ⣬2016ÄêÉϰëÄê¹æÄ£×î´óµÄDDoS ¹¥»÷Á÷Á¿´ïµ½579Gb/s£¬½Ï2015ÄêÌá¸ß73%¡£ 
¸ù¾ÝArbor Networks±¨¸æÏÔʾ£ºÓë2015ÄêÏà±È£¬2016ÄêÉϰëÄêµÄƽ¾ùDDOS¹¥»÷¹æÄ£Ôö³¤ÁË30%¡£¸Ã¹«Ë¾¹À¼Æµ½2016ÄêÄêµ×ƽ¾ù¹¥»÷¹æÄ£Ô¤¼Æ´ïµ½1.15Gb/s¡£
±¨¸æ¾¯¸æËµ£¬1 Gb/sµÄDDoS¹¥»÷×ãÒÔʹ´ó¶àÊýÍøÂç×éÖ¯ÍêÈ«ÀëÏß¡£ 
¿¨°Í˹»ùʵÑéÊҵı¨¸æÏÔʾ£¬2016ÄêµÚ¶þ¼¾¶È£¬Éæ¼°LinuxµÄ½©Ê¬ÍøÂçDDoS¹¥»÷µÄ±ÈÀýÒѾÅÊÉýµ½70.2%£¬±Èǰ¼¸¸ö¼¾¶ÈÓÐÒ»¸öÏÔÖøµÄÔö·ù¡£
2016ÄêµÚÒ»¼¾¶È£¬³¬¹ý70%µÄ¹¥»÷³ÖÐøÊ±¼ä¶¼²»³¬¹ýËĸöСʱ£¬¶ø2016ÄêµÚ¶þ¼¾¶È£¬³ÖÐøÊ±¼ä×µÄDDoS¹¥»÷³ÖÐø291¸öСʱ£¬»òÔ¼12.1Ì죬½ÏµÚÒ»¼¾¶È×µÄ¹¥»÷(8Ìì)ÏÔÖø±ä³¤¡£
ÁíÒ»·½Ã棬×µÄ¹¥»÷³ÖÐøÊ±¼äÒ²ÏÔÖøËõ¶Ì£¬Éæ¼°LinuxµÄ½©Ê¬ÍøÂçDDoS¹¥»÷µÄ±ÈÀýΪ44.5%£¬¶øÔÚ2015ÄêµÚËļ¾¶È£¬Éæ¼°LinuxµÄ½©Ê¬ÍøÂçDDoS¹¥»÷µÄ±ÈÀýΪ54.8%¡£
¿¨°Í˹»ùʵÑéÊÒÊ×ϯ¶ñÒâÈí¼þ·ÖÎöʦOleg KupreevÆÀÂÛ£º
¡°Linux·þÎñÆ÷ͨ³£»á°üº¬Ò»Ð©³£¼û©¶´£¬µ«ÊÇÕâЩ·þÎñÆ÷ºÜÉÙ°²×°¿É¿¿µÄ°²È«½â¾ö·½°¸£¬Ê¹µÃËüÃǺÜÈÝÒ×±»½©Ê¬³ÌÐòËù¸ÐȾ¡£ÕâЩÒòËØÈÃLinux·þÎñÆ÷³ÉΪ½©Ê¬ÍøÂçÔËÓªÕß½øÐй¥»÷µÄ¹¤¾ß¡£ÀûÓûùÓÚLinuxµÄ¼ÆËã»ú·¢¶¯¹¥»÷·Ç³£¼òµ¥£¬²¢ÇÒÓÐЧ¡£ÕâЩ¹¥»÷¿ÉÒÔ³ÖÐøÊýÖÜ£¬¶ø·þÎñÆ÷µÄÖ÷È˸ù±¾¾Í²»»áÒâʶµ½×Ô¼ºµÄ·þÎñÆ÷³ÉΪÁ˹¥»÷À´Ô´¡£²»½öÈç´Ë£¬Ö»Ê¹ÓÃһ̨·þÎñÆ÷£¬ÍøÂç×ï·¸¾Í¿ÉÒÔʵʩ¹æÄ£¿ÉæÇÃÀÊý°Ų̀¼ÆËã»úËù·¢¶¯µÄ¹¥»÷¡£ËùÒÔ£¬ÆóÒµÐèÒªÊÂÏÈ×¼±¸ºÃÓ¦¶ÔÕâÖÖÇé¿ö£¬È·±£ÆóÒµµÃµ½¿É¿¿µÄ·´DDoS¹¥»÷±£»¤£¬µÖÓù¸÷ÖÖ¸´Ôӳ̶ȺͳÖÐøÊ±³¤µÄ¹¥»÷¡±¡£ 
Imperva ¹«Ë¾Incapsula²¿Ãŵı¨¸æ±íÃ÷£¬¾ø´ó¶àÊýµÄDDoS¹¥»÷µÄ³ÖÐøÊ±¼äÏ൱¶Ì¡£2016ÄêµÚÒ»¼¾¶È£¬³¬¹ý93%µÄ¹¥»÷³ÖÐøÊ±¼äÔÚÒ»¸öСʱÄÚ¡£
|