首页> 外国专利> Method for thwarting application layer hypertext transport protocol flood attacks focused on consecutively similar application-specific data packets

Method for thwarting application layer hypertext transport protocol flood attacks focused on consecutively similar application-specific data packets

机译:阻止连续相似的特定于应用程序的数据包的应用程序层超文本传输​​协议泛洪攻击的方法

摘要

The present invention provides a methodology to thwart attacks that utilize consecutive hypertext transport protocol packets with similar structures, arriving from a plurality of computer systems on a network, such as the Internet, destined for a single or more computer systems on a secondary network, at such a rate with sufficient complexity to produce an effect on the target computer system or systems such that legitimate clients are denied access to requested services, thus creating a “denial of service” situation. The methodology focuses on the dynamic and proactive reassessment of data packet payload content to maintain a running value of similarity or dissimilarity, thus permitting intermediary apparatuses that are performing this computation to create distinction between legitimate clients and illegitimate clients.
机译:本发明提供了一种用于阻止攻击的方法,该方法利用具有相似结构的连续超文本传输​​协议分组,这些分组是从网络(例如,因特网)上的多个计算机系统到达的,该多个计算机系统预定发往次级网络上的单个或多个计算机系统。这种速率具有足够的复杂性,以对目标计算机系统或多个系统产生影响,从而使合法客户端无法访问请求的服务,从而造成“拒绝服务”情况。该方法集中于动态和主动地重新评估数据分组有效载荷内容,以保持相似或不相似的运行值,从而允许执行此计算的中间设备在合法客户端和非法客户端之间建立区分。

著录项

  • 公开/公告号US9043912B2

    专利类型

  • 公开/公告日2015-05-26

    原文格式PDF

  • 申请/专利权人 MEHDI MAHVI;

    申请/专利号US201414217320

  • 发明设计人 MEHDI MAHVI;

    申请日2014-03-17

  • 分类号H04L29/06;

  • 国家 US

  • 入库时间 2022-08-21 15:18:58

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号