CN104486340B - 防御数据流攻击的方法及系统 - Google Patents
防御数据流攻击的方法及系统 Download PDFInfo
- Publication number
- CN104486340B CN104486340B CN201410785010.0A CN201410785010A CN104486340B CN 104486340 B CN104486340 B CN 104486340B CN 201410785010 A CN201410785010 A CN 201410785010A CN 104486340 B CN104486340 B CN 104486340B
- Authority
- CN
- China
- Prior art keywords
- header
- udp message
- network access
- message bag
- access equipment
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
- 238000000034 method Methods 0.000 title claims abstract description 21
- 230000007123 defense Effects 0.000 claims abstract description 24
- 238000012544 monitoring process Methods 0.000 claims abstract description 20
- 238000003780 insertion Methods 0.000 description 5
- 230000037431 insertion Effects 0.000 description 5
- 238000012545 processing Methods 0.000 description 4
- 238000005516 engineering process Methods 0.000 description 3
- 238000012986 modification Methods 0.000 description 3
- 230000004048 modification Effects 0.000 description 3
- 230000008260 defense mechanism Effects 0.000 description 2
- 238000001514 detection method Methods 0.000 description 2
- 230000000694 effects Effects 0.000 description 2
- 230000002159 abnormal effect Effects 0.000 description 1
- 230000004075 alteration Effects 0.000 description 1
- 230000008859 change Effects 0.000 description 1
- 238000004891 communication Methods 0.000 description 1
- 230000029058 respiratory gaseous exchange Effects 0.000 description 1
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1408—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
- H04L63/1416—Event detection, e.g. attack signature detection
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1441—Countermeasures against malicious traffic
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
Description
Claims (6)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410785010.0A CN104486340B (zh) | 2014-12-16 | 2014-12-16 | 防御数据流攻击的方法及系统 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410785010.0A CN104486340B (zh) | 2014-12-16 | 2014-12-16 | 防御数据流攻击的方法及系统 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN104486340A CN104486340A (zh) | 2015-04-01 |
CN104486340B true CN104486340B (zh) | 2018-02-06 |
Family
ID=52760844
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201410785010.0A Active CN104486340B (zh) | 2014-12-16 | 2014-12-16 | 防御数据流攻击的方法及系统 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN104486340B (zh) |
Families Citing this family (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108616488B (zh) | 2016-12-09 | 2021-06-29 | 腾讯科技(深圳)有限公司 | 一种攻击的防御方法及防御设备 |
Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101202742A (zh) * | 2006-12-13 | 2008-06-18 | 中兴通讯股份有限公司 | 一种防止拒绝服务攻击的方法和系统 |
CN101286996A (zh) * | 2008-05-30 | 2008-10-15 | 北京星网锐捷网络技术有限公司 | 一种风暴攻击抵抗方法与装置 |
CN101378394A (zh) * | 2008-09-26 | 2009-03-04 | 成都市华为赛门铁克科技有限公司 | 分布式拒绝服务检测防御方法及网络设备 |
Family Cites Families (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US8982887B2 (en) * | 2007-05-18 | 2015-03-17 | International Business Machines Corporation | System, method and program for making routing decisions |
KR101136529B1 (ko) * | 2010-11-09 | 2012-04-17 | 플러스기술주식회사 | 세션기반의 트래픽 분석 시스템 |
-
2014
- 2014-12-16 CN CN201410785010.0A patent/CN104486340B/zh active Active
Patent Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101202742A (zh) * | 2006-12-13 | 2008-06-18 | 中兴通讯股份有限公司 | 一种防止拒绝服务攻击的方法和系统 |
CN101286996A (zh) * | 2008-05-30 | 2008-10-15 | 北京星网锐捷网络技术有限公司 | 一种风暴攻击抵抗方法与装置 |
CN101378394A (zh) * | 2008-09-26 | 2009-03-04 | 成都市华为赛门铁克科技有限公司 | 分布式拒绝服务检测防御方法及网络设备 |
Also Published As
Publication number | Publication date |
---|---|
CN104486340A (zh) | 2015-04-01 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
WO2016150253A1 (zh) | 基于sdn的ddos攻击防护方法、装置及系统 | |
CN104580168B (zh) | 一种攻击数据包的处理方法、装置及系统 | |
Liu et al. | Netfence: preventing internet denial of service from inside out | |
Cao et al. | When to use and when not to use BBR: An empirical analysis and evaluation study | |
US8667585B2 (en) | Transmission control protocol flooding attack prevention method and apparatus | |
Zhang et al. | Modeling and solving TCP incast problem in data center networks | |
EP3324586B1 (en) | Method and device for processing flow table | |
CN109005175B (zh) | 网络防护方法、装置、服务器及存储介质 | |
US20190149573A1 (en) | System of defending against http ddos attack based on sdn and method thereof | |
Foroushani et al. | TDFA: traceback-based defense against DDoS flooding attacks | |
Ahuja et al. | DDoS attack detection & prevention in SDN using OpenFlow statistics | |
Oura et al. | Fairness comparisons among modern TCP implementations | |
Dillon et al. | Openflow (d) dos mitigation | |
Bogdanoski et al. | Wireless network behavior under icmp ping flooddos attack and mitigation techniques | |
EP2648383B1 (en) | Method and device for data transmission | |
CN104486340B (zh) | 防御数据流攻击的方法及系统 | |
WO2019096104A1 (zh) | 攻击防范 | |
JP2010193083A (ja) | 通信システムおよび通信方法 | |
JP2013070325A (ja) | 通信システム、通信装置、サーバ、通信方法 | |
Khanna et al. | Adaptive selective verification | |
Kharat et al. | Modified QUIC protocol for improved network performance and comparison with QUIC and TCP | |
CN109936557A (zh) | 一种基于ForCES架构中利用sFlow防御DDoS攻击的方法及系统 | |
Bedi et al. | Mitigating congestion-based denial of service attacks with active queue management | |
Kieu et al. | Using CPR metric to detect and filter low-rate DDoS flows | |
Letourneau et al. | Assessing the threats targeting low latency traffic: the case of L4S |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
EXSB | Decision made by sipo to initiate substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
TR01 | Transfer of patent right | ||
TR01 | Transfer of patent right |
Effective date of registration: 20201030 Address after: 318015 no.2-3167, zone a, Nonggang City, no.2388, Donghuan Avenue, Hongjia street, Jiaojiang District, Taizhou City, Zhejiang Province Patentee after: Taizhou Jiji Intellectual Property Operation Co.,Ltd. Address before: 201616 Shanghai city Songjiang District Sixian Road No. 3666 Patentee before: Phicomm (Shanghai) Co.,Ltd. |
|
TR01 | Transfer of patent right | ||
TR01 | Transfer of patent right |
Effective date of registration: 20211220 Address after: 518000 701-03, unit 1, building B, Kexing Science Park, Keyuan Road, Central District, Yuehai Street Science Park, Nanshan District, Shenzhen City, Guangdong Province Patentee after: Shenzhen xinyun'an Development Technology Co.,Ltd. Address before: 318015 no.2-3167, area a, nonggangcheng, 2388 Donghuan Avenue, Hongjia street, Jiaojiang District, Taizhou City, Zhejiang Province Patentee before: Taizhou Jiji Intellectual Property Operation Co.,Ltd. |
|
PE01 | Entry into force of the registration of the contract for pledge of patent right | ||
PE01 | Entry into force of the registration of the contract for pledge of patent right |
Denomination of invention: Methods and systems for defending against data stream attacks Granted publication date: 20180206 Pledgee: Bank of Jiangsu Limited by Share Ltd. Shenzhen branch Pledgor: Shenzhen xinyun'an Development Technology Co.,Ltd. Registration number: Y2024980024416 |