في المرفقات توجد صورة لل ip datgram
هذه تغييرات تحصل على ال ip datgram الموجودة في الباكت هل هناك امكانية لاجراء هذه التغييرات باستخدام السي شارب
وكذللك في الرفقات توجد عدد كبير من التغغيرات على ال ip datagram حيث من خلالها استطيع ان احدد اذا كانت الباكت intrutive ام لا
ارجو المساعدة في ااجراء هذه التغييرات كما انني اود ارسال الباكت من client الى سيرفير ويقوم السيرفير بفحص الباكت وييكتشف التغييرات في ال ip datagram
امثلة على التغييرات
1-Large ICMP packet (severity 5, DoS): This signature is triggered when an IP datagram is received with the protocol field of the IP header set to 1(ICMP) and the IP length set to a value greater than 1024. A large ICMP packet may indicate a DoS attack.
2- ICMP Flood (severity 5, DoS): This signature is triggered when multiple IP datagrams are received directed at a single host on the network with the "protocol" field of the IP header set to 1 (ICMP). This indicates that a DoS attack may be in progress against your network
3-ICMP Ping Of Death (severity 5, DoS): This signature is triggered when an IP datagram is received with the protocol field of the IP header set to 1 (ICMP), the Last Fragment bit is set, and (IP offset * 8 ) + ( IP data length) > 65535 that is to say, the IP offset (which represents the starting position of this fragment in the original packet, and which is in 8 byte units) plus the rest of the packet is greater than the maximum size for an IP packet. This indicates a DoS attack.