首页> 外国专利> Identifying a distributed denial of service (DDOS) attack within a network and defending against such an attack

Identifying a distributed denial of service (DDOS) attack within a network and defending against such an attack

机译:识别网络内的分布式拒绝服务(DDOS)攻击并防御此类攻击

摘要

The invention provides methods, apparatus and systems for detecting distributed denial of service (DDoS) attacks within the Internet by sampling packets at a point or points in Internet backbone connections to determine a packet metric parameter. The packet metric parameter which might comprise the volume of packets received is analyzed over selected time intervals with respect to specified geographical locations in which the hosts transmitting the packets are located. The expected behavior can be employed to identify traffic distortions revealing a DDoS attack. In a complementary aspect, the invention provides a method of authenticating packets at routers in order to elevate the QoS of authenticated packets. This method can be used to block or filter packets and can be used in conjunction with the DDoS attack detection system to defend against DDoS attacks within the Internet in a distributed manner.
机译:本发明提供了用于通过在因特网主干连接中的一个或多个点处对分组进行采样以确定分组度量参数来检测因特网中的分布式拒绝服务(DDoS)攻击的方法,装置和系统。相对于发送分组的主机所位于的指定地理位置,在选定的时间间隔内分析可能包括接收到的分组量的分组度量参数。可以采用预期的行为来识别显示DDoS攻击的流量失真。在补充方面,本发明提供了一种在路由器处认证分组的方法,以提高认证分组的QoS。此方法可用于阻止或过滤数据包,并可与DDoS攻击检测系统结合使用,以分布式方式防御Internet内的DDoS攻击。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号