Netinfo Security ›› 2019, Vol. 19 ›› Issue (7): 59-66.doi: 10.3969/j.issn.1671-1122.2019.07.007

• Orginal Article • Previous Articles     Next Articles

Covert Channel Construction Method in Network Address Translation Environment

Yu SUN, Tian SONG()   

  1. School of Computer Science and Technology, Beijing Institute of Technology, Beijing 100081, China
  • Received:2019-04-29 Online:2019-07-19 Published:2020-05-11

Abstract:

Covert channel is a kind of communication technology that uses open channel to transmit secret information, and it is also an important part of security communication. This paper proposes a covert channel construction method that can penetrate the network address translation environment(NAT). This method uses NAT’s relationship between address and port mapping, controls the source port number of data packets, coding communication data by using coding technology. Then build a covert channel. In this paper, the real experimental environment of NAT is constructed, the data transmission rate and packet loss rate of the channel are measured under different parameter conditions and different application scenarios, and its security is analyzed. Select the appropriate channel parameters, in the public network scenario, the covert channel data transmission rate can reach 24.7 KB/s; up to 101.1 KB/s in the LAN scenario.

Key words: NAT, covert channel, One-Hot coding

CLC Number: