首页> 外国专利> APPARATUS AND METHOD FOR DETECTING AND PREVENTING DDOS ATTACK BASED ON FLOW

APPARATUS AND METHOD FOR DETECTING AND PREVENTING DDOS ATTACK BASED ON FLOW

机译:基于流量的DDOS攻击检测与预防装置及方法

摘要

The present invention relates to an apparatus and a method for detecting and preventing distributed denial of service (DDoS) attacks based on a flow, capable of preventing an overflow even if traffic is increased. The method for detecting and preventing DDoS attacks includes the steps of: checking whether a DDoS attack property is present in each input packet, and generating flow information including a flag indicating existence of the DDoS attack property and a DDoS counter indicating the number of times; detecting the DDoS attacks over IP by using a value obtained by aggregating the DDoS counter included in the flow information over IP; and as a result of the detection, selectively omitting bandwidth limitation and transmitting a packet, depending on correspondence of the packet transmitted to an IP under the DDoS attack to a flow of which service is analyzed beforehand.;COPYRIGHT KIPO 2016
机译:本发明涉及一种用于基于流来检测和防止分布式拒绝服务(DDoS)攻击的设备和方法,即使流量增加也能够防止溢出。检测和防止DDoS攻击的方法包括以下步骤:检查每个输入包中是否存在DDoS攻击属性;生成流信息,该流信息包括指示DDoS攻击属性存在的标志和指示次数的DDoS计数器。使用通过聚合包括在IP流信息中的DDoS计数器获得的值来检测对IP的DDoS攻击;检测的结果是,根据在DDoS攻击下发送到IP的数据包与预先分析其服务流的对应关系,有选择地忽略带宽限制并发送数据包。; COPYRIGHT KIPO 2016

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号