首页> 外国专利> SPOOFING ATTACK DEFENSE METHOD CAPABLE OF REDUCING THE LOAD OF A BLOCKING SERVER BY SENSING AND PROTECTING A SPOOFING ATTACK IN EACH CLIENT

SPOOFING ATTACK DEFENSE METHOD CAPABLE OF REDUCING THE LOAD OF A BLOCKING SERVER BY SENSING AND PROTECTING A SPOOFING ATTACK IN EACH CLIENT

机译:能够通过感知和保护每个客户端中的欺骗攻击来减少阻塞服务器负载的欺骗攻击防御方法

摘要

PURPOSE: A spoofing attack defense method is provided to rapidly defend against a spoofing attack by tracking an IP(Internet Protocol) and an MAC(Medium Access Control) address by storing the IP and MAC address beforehand.;CONSTITUTION: A blocking server collects the IP address of the connected client and an MAC address(S102). When ARP(Address Resolution Protocol) packet is inserted into the client, the client extracts the IP address and MAC address of a transmitter from the ARP packet(S106). When the ARP packet is infected, the blocking server blocks the transmission and reception of the infected ARP packet(S110). The blocking server revises corresponding IP-MAC address in the ARP table(S112).;COPYRIGHT KIPO 2013;[Reference numerals] (AA) Start; (BB) Finish; (S102) Blocking server collects the IP address of the connected client and an MAC address; (S104) APP packet inside the network is broadcasted; (S106) Client extracts the IP address and MAC address of a transmitter from the ARP packet; (S108) IP and MAC address is tested; (S110) Is it an infected ARP?; (S112) Infected ARP packet is deleted from the table, and is blocked; (S114) MAC address corresponding to the IP address is fixed; (S116) Infected ARP packet information is transmitted to the blocking server; (S118) Packet data is transmitted to the normal MAC address
机译:目的:提供一种欺骗攻击防御方法,通过预先存储IP和MAC地址来跟踪IP(互联网协议)和MAC(媒体访问控制)地址,从而快速防御欺骗攻击。组成:阻止服务器收集连接的客户端的IP地址和MAC地址(S102)。当将ARP(地址解析协议)分组插入客户端时,客户端从ARP分组中提取发送器的IP地址和MAC地址(S106)。当ARP分组被感染时,阻止服务器阻止被感染的ARP分组的发送和接收(S110)。阻止服务器修改ARP表中的相应IP-MAC地址(S112)。; COPYRIGHT KIPO 2013; [参考数字](AA)开始; (BB)完成; (S102)阻塞服务器收集所连接客户端的IP地址和MAC地址; (S104)广播网络内部的APP包; (S106)客户端从ARP包中提取发送者的IP地址和MAC地址; (S108)测试IP和MAC地址; (S110)是被感染的ARP吗? (S112)从表中删除被感染的ARP分组,并对其进行阻止; (S114)IP地址对应的MAC地址是固定的; (S116)将感染的ARP分组信息发送给阻塞服务器; (S118)分组数据被发送到普通MAC地址

著录项

  • 公开/公告号KR20120126674A

    专利类型

  • 公开/公告日2012-11-21

    原文格式PDF

  • 申请/专利权人 ESTSOFT CORP.;

    申请/专利号KR20110044667

  • 发明设计人 JUNG WOO YOUNG;KIM JUN SEOB;

    申请日2011-05-12

  • 分类号H04L12/22;H04L12/26;H04L29/08;G06F21/20;

  • 国家 KR

  • 入库时间 2022-08-21 16:28:43

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号