首页> 外国专利> DDOS FLOODINGG ATTACK RESPONSE APPROACH USING DETERMINISTIC PUSHBACK METHOD

DDOS FLOODINGG ATTACK RESPONSE APPROACH USING DETERMINISTIC PUSHBACK METHOD

机译:确定性推论方法的DDOS FLOODINGG攻击响应方法

摘要

A DDoS attack coping method using a deterministic pushback method is provided to check the IP address of an attack source edge router when a DDoS attach occurs, and filter DDoS attack packets in the attack source edge router, thereby filtering the attack packets flowing into a network in an attack source. A DDoS(Distributed Denial of Service) attack coping method using a deterministic pushback method comprises the following steps of: marking its own IP(Internet Protocol) address to all packets outbound to the other network system from the edge router of a specific network system for checking the IP address of a source edge router for a DDoS attack packet in a damaged system(S100); recombining IP addresses by using the detected DDoS attack packets and acquiring the IP address information of an attack source edge router in the damaged system detecting a DDoS attack(S200); allowing the attack source edge router to receive the deterministic pushback message, check message information, and filter the attack packets the if the damaged system transmits a deterministic pushback message to the attack source edge router(S300).
机译:提供一种使用确定性推回方法的DDoS攻击应对方法,用于在DDoS附着时检查攻击源边缘路由器的IP地址,并在攻击源边缘路由器中过滤DDoS攻击报文,从而对流入网络的攻击报文进行过滤。在攻击源中。使用确定性推回方法的DDoS(分布式拒绝服务)攻击应对方法包括以下步骤:将其自身的IP(互联网协议)地址标记为从特定网络系统的边缘路由器发送到另一网络系统的所有数据包,以用于在损坏的系统中检查源边缘路由器的IP地址以查找DDoS攻击数据包(S100);通过检测到的DDoS攻击报文重组IP地址,获取检测到DDoS攻击的受损系统中的攻击源边缘路由器的IP地址信息(S200);如果损坏的系统是否向攻击源边缘路由器发送了确定性后退消息,则允许攻击源边缘路由器接收确定性后退消息,检查消息信息并过滤攻击包(S300)。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号