首页> 外国专利> DETECTION AND MITIGATION DDOS ATTACKS PERFORMED OVER QUIC COMMUNICATION PROTOCOL

DETECTION AND MITIGATION DDOS ATTACKS PERFORMED OVER QUIC COMMUNICATION PROTOCOL

机译:通过判断通信协议进行检测和缓解DDOS攻击

摘要

A method and system for protecting against quick UDP Internet connection (QUIC) based denial-of-service (DDoS) attacks. The system comprises extracting traffic features from at least traffic directed to a protected entity, wherein the traffic features demonstrate behavior of QUIC user datagram protocol (UDP) traffic directed to the protected entity, wherein the extract traffic features include at least one rate-base feature and at least one rate-invariant feature, and wherein the at least traffic includes QUIC packets; computing at least one baseline for each of the at least one rate-base feature and the at least one rate-invariant feature; and analyzing real-time samples of traffic directed to the protected entity to detect a deviation from each of the at least one computed baseline, wherein the deviation is indicative of a detected QUIC DDoS attack; and causing execution of at least one mitigation action when an indication of the detected QUIC DDoS attack is determined.
机译:一种保护基于快速UDP Internet连接(Quic)的拒绝服务(DDOS)攻击的方法和系统。该系统包括从指向受保护实体的至少流量提取流量特征,其中流量特征演示了针对受保护实体的Quic用户数据报协议(UDP)业务的行为,其中提取业务特征包括至少一个速率基本特征和至少一个速率不变的功能,并且其中至少流量包括Quic数据包;计算至少一个速率基本特征和至少一个速率不变特征的每个基线;并分析指向受保护实体的实时流量样本,以检测与至少一个计算基线中的每一个的偏差,其中偏差指示检测到的Quic DDOS攻击;当确定检测到的Quic DDOS攻击的指示时,导致至少一个缓解动作的执行。

著录项

  • 公开/公告号WO2021061250A1

    专利类型

  • 公开/公告日2021-04-01

    原文格式PDF

  • 申请/专利权人 RADWARE LTD.;

    申请/专利号WO2020US40161

  • 申请日2020-06-29

  • 分类号G06F21/55;H04L29/06;

  • 国家 US

  • 入库时间 2022-08-24 18:03:23

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号