首页> 外国专利> Method and apparatus for protecting legitimate traffic from DoS and DDoS attacks

Method and apparatus for protecting legitimate traffic from DoS and DDoS attacks

机译:保护合法流量免受DoS和DDoS攻击的方法和装置

摘要

An apparatus for protecting legitimate traffic from DoS and DDoS attacks has a high-priority (505) and a low-priority (506) queue. Besides, a queue information table (402) has STT (Source-based Traffic Trunk) service queue information of a specific packet. A queue coordinator (502) updates the queue information table (502) based on a load of a provided STT and a load of the high-priority queue (505). A packet classifier (504) receives a packet from the network access unit (508), investigates an STT service queue of the packet from the queue information table (502), selectively transfers the packet to the high-priority (505) or the low-priority (506) queue and provides information on the packet to the queue coordinator (503). A buffer (507) buffers outputs of the high-priority (505) and the low-priority (506) queue and provides outputs to the network (509) to be protected.
机译:保护合法流量免受DoS和DDoS攻击的设备具有高优先级( 505 )和低优先级( 506 )队列。此外,队列信息表( 402 )具有特定数据包的STT(基于源的业务干线)服务队列信息。队列协调器( 502 )基于提供的STT的负载和高优先级队列( 505)的负载更新队列信息表( 502 )。数据包分类器( 504 )从网络访问单元( 508 )接收数据包,从队列信息表( 502)检查数据包的STT服务队列),选择性地将数据包传输到高优先级( 505 )或低优先级( 506 )队列,并将有关数据包的信息提供给队列协调员( 503 )。缓冲区( 507 )缓冲高优先级( 505 )和低优先级( 506 )队列的输出,并将输出提供给网络( 509 )受到保护。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号