基于Storm的BGP報(bào)文分析系統(tǒng)設(shè)計(jì)與實(shí)現(xiàn)
本文選題:BGP + 域間路由事件; 參考:《北京郵電大學(xué)》2017年碩士論文
【摘要】:邊界網(wǎng)關(guān)協(xié)議(BGP)作為域間主要的路由協(xié)議,是互聯(lián)網(wǎng)不同自治域間互聯(lián)互通的基礎(chǔ),對(duì)互聯(lián)網(wǎng)的連通性和穩(wěn)定性發(fā)揮著重要作用。路由策略錯(cuò)誤配置、網(wǎng)絡(luò)環(huán)境變化以及針對(duì)路由協(xié)議缺陷的攻擊等帶有破壞性的域間路由事件嚴(yán)重影響互聯(lián)網(wǎng)應(yīng)用服務(wù)的性能。BGP路由報(bào)文數(shù)據(jù)是研究域間路由事件的基礎(chǔ),隨著分布式監(jiān)測(cè)節(jié)點(diǎn)的不斷增加以及路由事件實(shí)時(shí)監(jiān)控的需要,原有的路由采集平臺(tái)已不能滿足監(jiān)測(cè)數(shù)據(jù)快速增長(zhǎng)和數(shù)據(jù)挖掘多樣化的需求,構(gòu)建細(xì)粒度的路由采集和數(shù)據(jù)歸檔分析系統(tǒng)以支持實(shí)時(shí)域間路由事件分析具有重要意義。本文首先對(duì)BGP報(bào)文分析系統(tǒng)進(jìn)行了需求分析,提出了系統(tǒng)所支持的基本業(yè)務(wù)需求:多源數(shù)據(jù)采集、數(shù)據(jù)歸并處理、數(shù)據(jù)持久化存儲(chǔ)、實(shí)時(shí)報(bào)文分析計(jì)算、路由事件回放及檢索等,并進(jìn)行了需求功能分解。其次,本文基于Storm的流式大數(shù)據(jù)分析框架對(duì)BGP報(bào)文分析系統(tǒng)進(jìn)行了結(jié)構(gòu)設(shè)計(jì)和功能模塊劃分,基于可靠消息隊(duì)列實(shí)現(xiàn)了多源路由報(bào)文數(shù)據(jù)歸并,基于面向內(nèi)存的流式計(jì)算技術(shù)實(shí)現(xiàn)了路由報(bào)文的實(shí)時(shí)分析和水平擴(kuò)展以及基于大數(shù)據(jù)存儲(chǔ)技術(shù)實(shí)現(xiàn)了路由事件分析結(jié)果的持久化存儲(chǔ)和快速檢索回放,從而建立了面向?qū)崟r(shí)和流式計(jì)算的域間路由報(bào)文數(shù)據(jù)采集、存儲(chǔ)和分析平臺(tái)。最后,對(duì)BGP報(bào)文分析系統(tǒng)進(jìn)行了功能和性能測(cè)試,測(cè)試結(jié)果表明系統(tǒng)各個(gè)功能模塊運(yùn)行良好并且業(yè)務(wù)處理高效。
[Abstract]:Boundary Gateway Protocol (BGP), as the main routing protocol between different domains, is the basis of interconnection among different autonomous domains of the Internet, and plays an important role in the connectivity and stability of the Internet. Routing policy misconfiguration, network environment changes, and attacks against routing protocol defects, such as destructive inter-domain routing events seriously affect the performance of Internet application services. BGP routing packet data is the basis of the study of inter-domain routing events. With the increasing of distributed monitoring nodes and the need of real-time monitoring of routing events, the original routing acquisition platform can no longer meet the needs of rapid growth of monitoring data and diversification of data mining. It is of great significance to construct a fine-grained routing collection and data archiving analysis system to support real-time inter-domain routing event analysis. In this paper, the requirements of BGP packet analysis system are analyzed, and the basic business requirements are put forward: multi-source data acquisition, data merging and processing, data persistence storage, real-time message analysis and calculation. Routing events are played back and retrieved, and the requirement function is decomposed. Secondly, this paper designs the structure and partition of function modules of big data message analysis system based on Storm, and realizes the data merging of multi-source routing message based on reliable message queue. The real-time analysis and horizontal expansion of routing packets based on memory-oriented flow computing technology and the persistence storage and fast retrieval playback of routing event analysis results are realized based on big data storage technology. Thus, an inter-domain routing data acquisition, storage and analysis platform for real-time and flow computing is established. Finally, the function and performance of the BGP packet analysis system are tested. The test results show that each functional module of the system is running well and the business processing is efficient.
【學(xué)位授予單位】:北京郵電大學(xué)
【學(xué)位級(jí)別】:碩士
【學(xué)位授予年份】:2017
【分類號(hào)】:TP393.0;TP311.52
【參考文獻(xiàn)】
相關(guān)期刊論文 前3條
1 申志偉;辛葉舟;;基于新技術(shù)的網(wǎng)絡(luò)空間安全架構(gòu)分析[J];互聯(lián)網(wǎng)天地;2015年10期
2 陳華山;皮蘭;劉峰;林東岱;;網(wǎng)絡(luò)空間安全科學(xué)基礎(chǔ)的研究前沿及發(fā)展趨勢(shì)[J];信息網(wǎng)絡(luò)安全;2015年03期
3 李留英;;基于大數(shù)據(jù)的網(wǎng)絡(luò)空間安全戰(zhàn)略的構(gòu)建[J];數(shù)字圖書館論壇;2014年02期
相關(guān)博士學(xué)位論文 前1條
1 劉欣;互聯(lián)網(wǎng)域間路由安全監(jiān)測(cè)技術(shù)研究[D];國(guó)防科學(xué)技術(shù)大學(xué);2008年
相關(guān)碩士學(xué)位論文 前6條
1 趙爭(zhēng)業(yè);面向網(wǎng)絡(luò)空間態(tài)勢(shì)的多源數(shù)據(jù)融合技術(shù)研究[D];國(guó)防科學(xué)技術(shù)大學(xué);2012年
2 陳亮;基于國(guó)際視圖的域間路由監(jiān)測(cè)與態(tài)勢(shì)可視化[D];國(guó)防科學(xué)技術(shù)大學(xué);2011年
3 燕強(qiáng);基于多平面的域間路由安全監(jiān)測(cè)技術(shù)研究[D];國(guó)防科學(xué)技術(shù)大學(xué);2011年
4 趙鵬;國(guó)家級(jí)互聯(lián)網(wǎng)域間路由安全監(jiān)測(cè)系統(tǒng)的設(shè)計(jì)與優(yōu)化[D];國(guó)防科學(xué)技術(shù)大學(xué);2010年
5 馬俊;多粒度互聯(lián)網(wǎng)域間路由安全監(jiān)測(cè)系統(tǒng)設(shè)計(jì)與實(shí)現(xiàn)[D];國(guó)防科學(xué)技術(shù)大學(xué);2008年
6 鄧文平;域間路由安全監(jiān)測(cè)系統(tǒng)的研究與實(shí)現(xiàn)[D];國(guó)防科學(xué)技術(shù)大學(xué);2006年
,本文編號(hào):2107676
本文鏈接:http://sikaile.net/guanlilunwen/ydhl/2107676.html