首页>
外国专利>
MITIGATION OF NTP AMPLIFICATION AND REFLECTION BASED DDOS ATTACKS
MITIGATION OF NTP AMPLIFICATION AND REFLECTION BASED DDOS ATTACKS
展开▼
机译:缓解NTP放大和基于DDOS攻击的攻击
展开▼
页面导航
摘要
著录项
相似文献
摘要
Systems and methods for mitigating DDoS attacks utilizing NTP are provided. According to one embodiment, a tracking table is maintained by a network security device protecting a private network. The tracking table contains information regarding NTP requests originated by clients of the private network and observed by the network security device. An NTP request sent from a client to an NTP server external to the private network is intercepted by the network security device. An NTP request flooding attack on the NTP server by the first client is mitigated by the network security device by: (i) determining based on the tracking table whether a prior NTP request directed to the NTP server and for which an NTP response has yet to be received was sent by the client within a predetermined or configurable time period of the NTP request; and (ii) when said determining is affirmative, dropping the NTP request.
展开▼