首页> 外国专利> Reverse firewall packet transmission control system

Reverse firewall packet transmission control system

机译:反向防火墙报文传输控制系统

摘要

The invention is designed to eliminate or minimize the liability associated with “packet flooding” attacks originating from within a local area network connected to an external network such as one controlled by a university or governmental organization. In these attacks, an attacker uses up all available bandwidth to a victim with useless data. The invention performs its function by identifying and classifying data packets arriving at a “Reverse Firewall” for transmission to the external network using various techniques. For example, data packets that are sent in response to data packets received from the external network will receive a different classification and thus allocation of resources than data packets not sent in response to previously received packets. The invention also serves to maximize use of data packet handling resources within the local area network by identifying those data packets that are requests for service, measuring the amount of service required by those packets, storing and recalling past service measurements and thus determining an appropriate allocation of resources.
机译:本发明被设计为消除或最小化与源于连接到诸如由大学或政府组织控制的外部网络的外部网络的局域网内的“分组洪泛”攻击有关的责任。在这些攻击中,攻击者用尽了所有可用带宽,为受害者提供了无用的数据。本发明通过识别和分类到达“反向防火墙”以使用各种技术传输到外部网络的数据分组来执行其功能。例如,响应于从外部网络接收到的数据包而发送的数据包将收到与未响应于先前接收到的数据包而未发送的数据包不同的分类和资源分配。本发明还用于通过识别作为服务请求的那些数据分组,测量那些分组所需的服务量,存储和调用过去的服务度量并因此确定适当的分配来最大化局域网内数据分组处理资源的使用。资源。

著录项

  • 公开/公告号US7047564B2

    专利类型

  • 公开/公告日2006-05-16

    原文格式PDF

  • 申请/专利权人 DONALD M. COHEN;

    申请/专利号US20010001349

  • 发明设计人 DONALD M. COHEN;

    申请日2001-10-31

  • 分类号G06F11/30;G06F15/16;

  • 国家 US

  • 入库时间 2022-08-21 21:43:10

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号