RFC2757-Long Thin Networks-chifire自译本(8)

博客探讨了TCP网络性能与安全问题。指出共享网络性能信息时,部分信息不应共享,否则会带来安全风险。性能增强代理存在中间人角色的安全隐患,需提前应用基于IPSEC的保护。虽高层安全机制减轻了部分影响,但协议头仍可能被破解。
 

 

   -  共享网络性能信息(TCP控制块和拥塞管理模块)

     

有些信息不应当被共享。例如,TCP顺序号用来防止伪装攻击(spoofing attacks),甚至有关性能参数的共享都会给拒绝服务攻击造成机会[Touch97]

 

   -  性能增强代理(Performance Enhancing Proxies

 

从安全攻击角度看,此类系统扮演了中间人(men-in-the-middle)的角色。因此,必须要特别小心,以避免系统被劫持(hijack)或被滥用(misuse)。

 

最后的观点不应被轻视:只要中间介质节点进行的操作与其在端对端下不同,就会存在安全问题。这并非专指性能增强代理。应当提前应用基于IPSEC的保护,以使殊如SNOOP模块、头压缩(TCPUDPRTP等)、HTTP代理能够参与工作。

 

一些高层的安全机制(如RTP加密、在TCP负载中进行TLS加密)已经减轻了这个安全问题的影响,然而,协议头仍是可见的,仍可能被通信分析所破解并遭受拒绝服务攻击。

 

 

9 参考书目(References

 

   [ACKSPACING]   Partridge, C., "ACK Spacing for High Delay-Bandwidth

                  Paths with Insufficient Buffering", Work in Progress.

 

   [ADGGHOSSTT98] Allman, M., Dawkins, S., Glover, D., Griner, J.,

                  Henderson, T., Heidemann, J., Kruse, H., Osterman, S.,

                  Scott, K., Semke, J., Touch, J. and D. Tran, "Ongoing

                  TCP Research Related to Satellites", Work in Progress.

 

   [AGS98]        Allman, M., Glover, D. and L. Sanchez, "Enhancing TCP

                  Over Satellite Channels using Standard Mechanisms",

                  BCP 28, RFC 2488, January 1999.

 

   [Allman98]     Mark Allman. On the Generation and Use of TCP

                  Acknowledgments. ACM Computer Communication Review,

                  28(5), October 1998.

 

   [AHO98]        Allman, M., Hayes, C., Ostermann, S., "An Evaluation

                  of TCP with Larger Initial Windows," Computer

                  Communication Review, 28(3), July 1998.

 

Montenegro, et al.           Informational                     [Page 36]


 

   [BBKT96]       Bhagwat, P., Bhattacharya, P., Krishna, A., Tripathi,

                  S., "Enhancing Throughput over Wireless LANs Using

                  Channel State Dependent Packet Scheduling," in Proc.

                  IEEE INFOCOM'96, pp. 1133-40, March 1996.

 

   [BBKVP96]      Bakshi, B., P., Krishna, N., Vaidya, N., Pradhan,

                  D.K., "Improving Performance of TCP over Wireless

                  Networks," Technical Report 96-014, Texas A&M

                  University, 1996.

 

   [BPSK96]       Balakrishnan, H., Padmanabhan, V., Seshan, S., Katz,

                  R., "A Comparison of Mechanisms for Improving TCP

                  Performance over Wireless Links," in ACM SIGCOMM,

                  Stanford, California, August 1996.

 

   [BPK99]        Balakrishnan, H., Padmanabhan, V., Katz, R., "The

                  effects of asymmetry on TCP performance," ACM Mobile

                  Networks and Applications (MONET), Vol. 4, No. 3,

                  1999, pp. 219-241.

 

   [BV97]         S. Biaz and N. H. Vaidya, "Distinguishing Congestion

                  Losses  from Wireless Transmission Losses: A Negative

                  Result," Seventh International Conference on Computer

                  Communications and Networks (IC3N), New Orleans,

                  October 1998.

 

   [BV98]         Biaz, S., Vaidya, N., "Sender-Based heuristics for

                  Distinguishing Congestion Losses from Wireless

                  Transmission Losses," Texas A&M University, Technical

                  Report 98-013, June 1998.

 

   [BV98a]        Biaz, S., Vaidya, N., "Discriminating Congestion

                  Losses from Wireless Losses using Inter-Arrival Times

                  at the Receiver," Texas A&M University, Technical

                  Report 98-014, June 1998.

 

   [BW97]         Brasche, G., Walke, B., "Concepts, Services, and

                  Protocols of the New GSM Phase 2+ general Packet Radio

                  Service," IEEE Communications Magazine, Vol. 35, No.

                  8, August 1997.

 

Montenegro, et al.           Informational                     [Page 37]


   [CB96]         Cheshire, S., Baker, M., "Experiences with a Wireless

                  Network in MosquitoNet," IEEE Micro, February 1996.

                  Available online as:

                  http://rescomp.stanford.edu/~cheshire/papers/wireless.ps.

 

   [CDMA]         Electronic Industry Alliance(EIA)/Telecommunications

                  Industry Association (TIA), IS-95: Mobile Station-Base

                  Station Compatibility Standard for Dual-Mode Wideband

                  Spread Spectrum Cellular System, 1993.

 

   [CDPD]         Wireless Data Forum, CDPD System Specification,

                  Release 1.1, 1995.

 

   [CM]           Hari Balakrishnan and Srinivasan Seshan, "The

                  Congestion Manager," Work in Progress.

 

   [CTCSM97]      Chang, H., Tait, C., Cohen, N., Shapiro, M.,

                  Mastrianni, S., Floyd, R., Housel, B., Lindquist, D.,

                  "Web Browsing in a Wireless Environment: Disconnected

                  and Asynchronous Operation in ARTour Web Express," in

                  Proc. MobiCom'97, Budapest, Hungary, September 1997.

 

   [Demers90]     Demers, A., Keshav, S., and Shenker, S., Analysis and

                  Simulation of a Fair Queueing Algorithm,

                  Internetworking: Research and Experience, Vol. 1,

                  1990, pp. 3-26.

 

   [ECN]          Ramakrishnan, K. and S. Floyd, "A Proposal to add

                  Explicit Congestion Notification (ECN) to IP", RFC

                  2481, January 1999.

 

   [Floyd95]      Floyd, S., and Jacobson, V., Link-sharing and Resource

                  Management Models for Packet Networks. IEEE/ACM

                  Transactions on Networking, Vol. 3 No. 4, pp. 365-386,

                  August 1995.

   [FSS98]        Fragouli, C., Sivaraman, V., Srivastava, M.,

                  "Controlled Multimedia Wireless Link Sharing via

                  Enhanced Class-Based Queueing with Channel-State-

                  Dependent Packet Scheduling," Proc. IEEE INFOCOM'98,

                  April 1998.

   [GPRS]        ETSI, "General Packet Radio Service (GPRS): Service

                  Description, Stage 2," GSM03.60, v.6.1.1 August 1998.

 

Montenegro, et al.           Informational                     [Page 38]


   [GSM]          Rahnema, M., "Overview of the GSM system and protocol

                  architecture," IEEE Communications Magazine, vol. 31,

                  pp 92-100, April 1993.

 

   [HL96]         Hausel, B., Lindquist, D., "WebExpress: A System for

                  Optimizing Web Browsing in a Wireless Environment," in

                  Proc.  MobiCom'96, Rye, New York, USA, November 1996.

 

   [HTTP-PERF]    Henrik Frystyk Nielsen (W3C, MIT), Jim Gettys (W3C,

                  Digital), Anselm Baird-Smith (W3C, INRIA), Eric

                  Prud'hommeaux (W3C, MIT), Hon Lie (W3C, INRIA), Chris

                  Lilley (W3C, INRIA), "Network Performance Effects of

                  HTTP/1.1, CSS1, and PNG," ACM SIGCOMM '97, Cannes,

                  France, September 1997.  Available at:

                  http://www.w3.org/Protocols/HTTP/Performance/Pipeline.html

 

   [IPPCP]        Shacham, A., Monsour, R., Pereira, R. and M. Thomas,

                  "IP Payload Compression Protocol (IPComp)", RFC 2393,

                  December 1998.

 

   [IPHC]         Degermark, M., Nordgren, B. and S. Pink, "IP Header

                  Compression", RFC 2507, February 1999.

 

   [IPHC-RTP]     Casner, S. and  V. Jacobson, "Compressing IP/UDP/RTP

                  Headers for Low-Speed Serial Links", RFC 2508, February 1999.

 

   [IPHC-PPP]     Engan, M., Casner, S. and C. Bormann, "IP Header

                  Compression over PPP", RFC 2509, February 1999.

 

   [ITCP]         Bakre, A., Badrinath, B.R., "Handoff and Systems

                  Support for Indirect TCP/IP. In Proceedings of the

                  Second USENIX Symposium on Mobile and Location-

                  Independent Computing, Ann Arbor, Michigan, April 10-11, 1995.

 

   [Jain89]       Jain, R., "A Delay-Based Approach for Congestion

                  Avoidance in Interconnected Heterogeneous Computer

                  Networks," Digital Equipment Corporation, Technical

                  Report DEC-TR-566, April 1989.

 

   [Karn93]       Karn, P., "The Qualcomm CDMA Digital Cellular System"

                  Proc. USENIX Mobile and Location-Independent Computing

                  Symposium, USENIX Association, August 1993.

 

Montenegro, et al.           Informational                     [Page 39]

单向双向V2G 环境下分布式电源与电动汽车充电站联合配置方法(Matlab代码实现)内容概要:本文介绍了在单向和双向V2G(Vehicle-to-Grid)环境下,分布式电源与电动汽车充电站的联合配置方法,并提供了基于Matlab的代码实现。研究涵盖电力系统优化、可再生能源接入、电动汽车充放电调度、储能配置及微电网经济调度等多个关键技术领域,重点探讨了在不同电价机制和需求响应策略下,如何通过智能优化算法实现充电站与分布式电源的协同规划与运行优化。文中还展示了多种应用场景,如有序充电调度、鲁棒优化模型、多目标优化算法(如NSGA-II、粒子群算法)在电力系统中的实际应用,体现了较强的工程实践价值和技术综合性。; 适合人群:具备电力系统、新能源、智能优化算法等相关背景的科研人员、研究生及从事能源系统规划与优化的工程技术人员;熟悉Matlab/Simulink仿真工具者更佳。; 使用场景及目标:①用于科研项目中关于电动汽车与分布式电源协同配置的模型构建与仿真验证;②支持毕业论文、期刊投稿中的案例分析与算法对比;③指导实际电力系统中充电站布局与能源调度的优化设计。; 阅读建议:建议结合文中提供的Matlab代码与具体案例进行同步实践,重点关注优化模型的数学建模过程与算法实现细节,同时可参考文末网盘资源获取完整代码与数据集以提升学习效率。
【电动车】【超级棒】基于蒙特卡洛模拟法的电动汽车充电负荷研究(Matlab代码实现)内容概要:本文围绕基于蒙特卡洛模拟法的电动汽车充电负荷研究展开,利用Matlab代码实现对不同类型电动汽车(如常规充电、快速充电、换电模式)在不同场景下的充电负荷进行建模与仿真。通过蒙特卡洛方法模拟大量电动汽车的充电行为,结合用户出行规律、充电时间、电量需求等随机因素,分析电动汽车规模化接入电网后对电力系统负荷的影响,并探讨分时电价策略对充电负荷的引导作用,进而优化电网运行。研究涵盖充电负荷的空间分布特性、时间分布特征及对电网峰谷差的影响,旨在为电力系统规划和电动汽车有序充电管理提供理论支持和技术工具。; 适合人群:具备一定电力系统、交通工程或新能源汽车背景的研究生、科研人员及从事智能电网、电动汽车相关领域的工程技术人员。; 使用场景及目标:①用于研究大规模电动汽车接入对配电网负荷曲线的影响;②支撑分时电价、需求响应等政策制定与优化;③为充电站规划、电网调度、储能配置等提供数据支持和仿真平台;④适用于学术研究、课题复现及工程项目前期分析。; 阅读建议:建议读者结合文中提供的Matlab代码进行实践操作,重点关注蒙特卡洛模拟的参数设置、充电行为的概率建模过程,并尝试调整输入变量以观察负荷变化趋势,加深对电动汽车充电负荷不确定性和聚合效应的理解。
评论
成就一亿技术人!
拼手气红包6.0元
还能输入1000个字符
 
红包 添加红包
表情包 插入表情
 条评论被折叠 查看
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值