首页> 外国专利> SDN DNS THE SYSTEM FOR DEFENDING DNS AMPLIFICATION ATTACKS IN SOFTWARE-DEFINED NETWORKS AND THE METHOD THEREOF

SDN DNS THE SYSTEM FOR DEFENDING DNS AMPLIFICATION ATTACKS IN SOFTWARE-DEFINED NETWORKS AND THE METHOD THEREOF

机译:SDN DNS在软件定义的网络中防御DNS放大攻击的系统及其方法

摘要

The present invention relates to a software-defined network (SDN)-based domain name system (DNS) amplification attack defense system and a method thereof. According to an embodiment of the present invention, the defense system may comprise: a malicious DNS defender which transmits, to a rule generation unit, information flow about DNS flowing into a port connected to an external network; the rule generation unit for generating a DNS response blocking rule for the information flow about the DNS received from the malicious DNS defender; and a DNS verification unit for analyzing a packet of a DNS request message when the SDN controller receives the DNS request message from a host.
机译:本发明涉及一种基于软件定义网络(SDN)的域名系统(DNS)放大攻击防御系统及其方法。根据本发明的实施例,防御系统可以包括:恶意DNS防御器,其向规则生成单元发送与流入连接到外部网络的端口的DNS有关的信息流;规则生成单元,用于为从恶意DNS防御者接收到的关于DNS的信息流生成DNS响应阻止规则; DNS验证单元,用于当SDN控制器从主机接收到DNS请求消息时,分析DNS请求消息的分组。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号