首页> 外国专利> NETWORK AND APPLICATION ATTACK PROTECTION BASED ON APPLICATION LAYER MESSAGE INSPECTION

NETWORK AND APPLICATION ATTACK PROTECTION BASED ON APPLICATION LAYER MESSAGE INSPECTION

机译:基于应用程序层消息检查的网络和应用程序攻击防护

摘要

A method is disclosed for protecting a network against a denial-of-service attack by inspecting application layer messages at a network element. According to one aspect, when a network element intercepts data packets that contain an application layer message, the network element constructs the message from the payload portions of the packets. The network element determines whether the message satisfies specified criteria. The criteria may indicate characteristics of messages that are suspected to be involved in a denial-of-service attack, for example. If the message satisfies the specified criteria, then the network element prevents the data packets that contain the message from being received by the application for which the message was intended. The network element may accomplish this by dropping the packets, for example. As a result, the application's host does not waste processing resources on messages whose only purpose might be to deluge and overwhelm the application.
机译:公开了一种用于通过在网络元件处检查应用层消息来保护网络免受拒绝服务攻击的方法。根据一个方面,当网络单元拦截包含应用层消息的数据分组时,网络单元从分组的有效载荷部分构造该消息。网络元素确定消息是否满足指定的条件。例如,该标准可以指示被怀疑与拒绝服务攻击有关的消息的特征。如果消息满足指定的标准,则网络元素会阻止包含该消息的数据包被该消息所针对的应用程序接收。网元例如可以通过丢弃分组来实现这一点。因此,应用程序的主机不会浪费消息的处理资源,而消息的唯一目的可能是淹没和淹没应用程序。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号