首页> 外国专利> Method, apparatus, and program for detecting a port scan with the source address of the bogus

Method, apparatus, and program for detecting a port scan with the source address of the bogus

机译:用伪造的源地址检测端口扫描的方法,装置和程序

摘要

Computer-implemented method for the present invention relates port scan protection, devices, and computer programs. Computer-implemented method for solving [means] port scan protection, apparatus, and computer program. In response to detecting a port scan, it generates a reply data packet having a modified transmission control protocol header to form a modified reply data packet. Change response data packet, elicit a response from the recipient of the modified data packet. I is transmitted to the Internet protocol address of the first associated with the port scan, the response data packet. From the header of the response of the change response data packet to identify the Internet Protocol address of the second. Internet protocol address of the second is the Internet protocol address of the actual source of the port scan. It is possible by preventing the network traffic from all the Internet protocol address of the second, also to prevent any attacks on the ports open from the source of the port scan. [Selection Figure Figure 5
机译:用于本发明的计算机实现的方法涉及端口扫描保护,设备和计算机程序。解决[手段]端口扫描保护的计算机实现方法,装置和计算机程序。响应于检测到端口扫描,其生成具有修改的传输控制协议报头的回复数据包以形成修改的回复数据包。更改响应数据包,从修改后的数据包的接收者那里得到响应。 I传输到与端口扫描关联的Internet协议地址的第一个,即响应数据包。从更改响应数据包的响应标头中识别出第二个Internet协议地址。第二个Internet协议地址是端口扫描的实际来源的Internet协议地址。通过阻止来自第二个Internet协议所有地址的网络通信,还可以防止从端口扫描源打开的端口受到任何攻击。 [选择图图5

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号