首页> 外国专利> A FULLY AUTOMATED METHOD FOR DEFENDING AGAINST DENIAL OF SERVICE ATTACKS AGAINST A TARGET VICTIM

A FULLY AUTOMATED METHOD FOR DEFENDING AGAINST DENIAL OF SERVICE ATTACKS AGAINST A TARGET VICTIM

机译:一种针对目标受害者防御服务攻击的全自动方法

摘要

A method and apparatus for defending against a Denial of Service attack wherein a target victim of an attack has recognized the existence of an attack and identified its source. The carrier network which provides service to the victim automatically receives one or more IP (Internet Protocol) source/destination IP address pairs from the victim, and then limits (e.g., blocks) the transmission of packets from the identified source address to the identified destination address. The carrier may implement this filtering capability as a stand-alone box included in the network, or as a line card incorporated into otherwise conventional network elements already present in the network. The source/destination address pairs to be blocked may be advantageously communicated from the victim with use of security signatures and with use of redundant connections from the victim to the carrier network to ensure receipt even under congested network conditions.
机译:一种防御拒绝服务攻击的方法和装置,其中攻击的目标受害者已经意识到攻击的存在并确定其来源。向受害者提供服务的运营商网络会自动从受害者接收一个或多个IP(Internet协议)源/目标IP地址对,然后限制(例如,阻止)从标识的源地址到标识的目的地的数据包传输地址。运营商可以将这种过滤功能实现为网络中包含的独立盒,或作为包含在网络中已经存在的其他常规网络元素中的线卡。可以使用安全签名以及使用从受害者到运营商网络的冗余连接来有利地从受害者传递待阻止的源/目的地地址对,以确保即使在拥塞的网络条件下也可以接收。

著录项

  • 公开/公告号IN257984B

    专利类型

  • 公开/公告日2013-11-29

    原文格式PDF

  • 申请/专利权人

    申请/专利号IN5966/CHENP/2007

  • 发明设计人 GROSSE ERIC HENRY;

    申请日2007-12-26

  • 分类号H04L29/08;

  • 国家 IN

  • 入库时间 2022-08-21 15:57:20

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号