CN106572103A - 一种基于sdn网络架构的隐藏端口检测方法 - Google Patents
一种基于sdn网络架构的隐藏端口检测方法 Download PDFInfo
- Publication number
- CN106572103A CN106572103A CN201610966432.7A CN201610966432A CN106572103A CN 106572103 A CN106572103 A CN 106572103A CN 201610966432 A CN201610966432 A CN 201610966432A CN 106572103 A CN106572103 A CN 106572103A
- Authority
- CN
- China
- Prior art keywords
- packet
- sdn
- message
- information
- connection
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 238000001514 detection method Methods 0.000 title claims abstract description 18
- 238000000034 method Methods 0.000 claims abstract description 24
- 238000004891 communication Methods 0.000 claims abstract description 23
- 238000001914 filtration Methods 0.000 claims abstract description 13
- 238000013507 mapping Methods 0.000 claims abstract description 8
- 238000012545 processing Methods 0.000 claims description 12
- 230000002159 abnormal effect Effects 0.000 claims description 8
- 230000004044 response Effects 0.000 claims description 8
- 230000005540 biological transmission Effects 0.000 claims description 5
- 238000012795 verification Methods 0.000 claims description 2
- 238000002372 labelling Methods 0.000 claims 1
- 239000003795 chemical substances by application Substances 0.000 description 11
- 238000010586 diagram Methods 0.000 description 4
- 238000005516 engineering process Methods 0.000 description 3
- GOLXNESZZPUPJE-UHFFFAOYSA-N spiromesifen Chemical compound CC1=CC(C)=CC(C)=C1C(C(O1)=O)=C(OC(=O)CC(C)(C)C)C11CCCC1 GOLXNESZZPUPJE-UHFFFAOYSA-N 0.000 description 2
- 238000013461 design Methods 0.000 description 1
- 230000000694 effects Effects 0.000 description 1
- 239000012467 final product Substances 0.000 description 1
- 238000009472 formulation Methods 0.000 description 1
- 238000005194 fractionation Methods 0.000 description 1
- 239000000203 mixture Substances 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 238000012544 monitoring process Methods 0.000 description 1
- 230000002035 prolonged effect Effects 0.000 description 1
- 238000011897 real-time detection Methods 0.000 description 1
- 229920006395 saturated elastomer Polymers 0.000 description 1
- 238000012216 screening Methods 0.000 description 1
- 230000009897 systematic effect Effects 0.000 description 1
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1408—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
- H04L63/1425—Traffic logging, e.g. anomaly detection
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L49/00—Packet switching elements
- H04L49/35—Switches specially adapted for specific applications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0227—Filtering policies
- H04L63/0236—Filtering by address, protocol, port number or service, e.g. IP-address or URL
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0227—Filtering policies
- H04L63/0245—Filtering by information in the payload
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0281—Proxies
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1408—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
- H04L63/1416—Event detection, e.g. attack signature detection
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1441—Countermeasures against malicious traffic
- H04L63/145—Countermeasures against malicious traffic the attack involving the propagation of malware through the network, e.g. viruses, trojans or worms
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Health & Medical Sciences (AREA)
- General Health & Medical Sciences (AREA)
- Virology (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
Description
Claims (5)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201610966432.7A CN106572103B (zh) | 2016-10-28 | 2016-10-28 | 一种基于sdn网络架构的隐藏端口检测方法 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201610966432.7A CN106572103B (zh) | 2016-10-28 | 2016-10-28 | 一种基于sdn网络架构的隐藏端口检测方法 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN106572103A true CN106572103A (zh) | 2017-04-19 |
CN106572103B CN106572103B (zh) | 2019-12-13 |
Family
ID=58536318
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201610966432.7A Expired - Fee Related CN106572103B (zh) | 2016-10-28 | 2016-10-28 | 一种基于sdn网络架构的隐藏端口检测方法 |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN106572103B (zh) |
Cited By (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN107911297A (zh) * | 2017-11-21 | 2018-04-13 | 迈普通信技术股份有限公司 | 一种sdn网络带内控制通道建立方法及设备 |
CN108306888A (zh) * | 2018-02-05 | 2018-07-20 | 刘昱 | 一种基于sdn的网络防护方法、装置及存储介质 |
CN110381025A (zh) * | 2019-06-14 | 2019-10-25 | 浙江大学 | 一种软件定义防火墙系统的实现方法 |
US20210075801A1 (en) * | 2017-11-24 | 2021-03-11 | Omron Corporation | Control Device and Control System |
Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102521537A (zh) * | 2011-12-06 | 2012-06-27 | 北京航空航天大学 | 基于虚拟机监控器的隐藏进程检测方法和装置 |
CN104023034A (zh) * | 2014-06-25 | 2014-09-03 | 武汉大学 | 一种基于软件定义网络的安全防御系统及防御方法 |
CN104598379A (zh) * | 2015-01-04 | 2015-05-06 | 中国人民解放军信息工程大学 | 利用处理器pmc特性检测隐藏执行指令的方法 |
-
2016
- 2016-10-28 CN CN201610966432.7A patent/CN106572103B/zh not_active Expired - Fee Related
Patent Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102521537A (zh) * | 2011-12-06 | 2012-06-27 | 北京航空航天大学 | 基于虚拟机监控器的隐藏进程检测方法和装置 |
CN104023034A (zh) * | 2014-06-25 | 2014-09-03 | 武汉大学 | 一种基于软件定义网络的安全防御系统及防御方法 |
CN104598379A (zh) * | 2015-01-04 | 2015-05-06 | 中国人民解放军信息工程大学 | 利用处理器pmc特性检测隐藏执行指令的方法 |
Non-Patent Citations (1)
Title |
---|
李博等: "基于VMM的操作系统隐藏对象关联检测技术", 《软件学报》 * |
Cited By (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN107911297A (zh) * | 2017-11-21 | 2018-04-13 | 迈普通信技术股份有限公司 | 一种sdn网络带内控制通道建立方法及设备 |
CN107911297B (zh) * | 2017-11-21 | 2020-03-24 | 迈普通信技术股份有限公司 | 一种sdn网络带内控制通道建立方法及设备 |
US20210075801A1 (en) * | 2017-11-24 | 2021-03-11 | Omron Corporation | Control Device and Control System |
US11516229B2 (en) * | 2017-11-24 | 2022-11-29 | Omron Corporation | Control device and control system |
CN108306888A (zh) * | 2018-02-05 | 2018-07-20 | 刘昱 | 一种基于sdn的网络防护方法、装置及存储介质 |
CN108306888B (zh) * | 2018-02-05 | 2022-05-27 | 刘昱 | 一种基于sdn的网络防护方法、装置及存储介质 |
CN110381025A (zh) * | 2019-06-14 | 2019-10-25 | 浙江大学 | 一种软件定义防火墙系统的实现方法 |
CN110381025B (zh) * | 2019-06-14 | 2020-08-04 | 浙江大学 | 一种软件定义防火墙系统的实现方法 |
Also Published As
Publication number | Publication date |
---|---|
CN106572103B (zh) | 2019-12-13 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
KR102183897B1 (ko) | 네트워크에 대한 인공지능 기반 이상 징후 검출 방법, 장치 및 시스템 | |
CN111787073B (zh) | 一种统一服务的限流熔断平台及其方法 | |
CN108063765B (zh) | 适于解决网络安全的sdn系统 | |
CN103250392B (zh) | 计算机系统、控制器和网络监视方法 | |
CN110401624A (zh) | 源网荷系统交互报文异常的检测方法及系统 | |
CN104767748B (zh) | Opc服务器安全防护系统 | |
US9660833B2 (en) | Application identification in records of network flows | |
CN103491060B (zh) | 一种防御Web攻击的方法、装置、及系统 | |
CN106572103A (zh) | 一种基于sdn网络架构的隐藏端口检测方法 | |
CN104038466B (zh) | 用于云计算环境的入侵检测系统、方法及设备 | |
CN101296227B (zh) | 基于报文偏移量匹配的IPSec VPN协议深度检测方法 | |
CN101197715B (zh) | 一种移动数据业务状态的安全集中采集方法 | |
CN105743878A (zh) | 使用蜜罐的动态服务处理 | |
CN101296228A (zh) | 基于流量分析的ssl vpn协议检测方法 | |
CN106254338B (zh) | 报文检测方法以及装置 | |
CN108769289A (zh) | 一种网络地址资源可视化管理系统 | |
CN101567884A (zh) | 网络窃密木马检测方法 | |
TW201124876A (en) | System and method for guarding against dispersive blocking attacks | |
CN113242208B (zh) | 基于网络流的网络态势分析系统 | |
CN106506200A (zh) | 一种基于sdn的arp协议辅助模型 | |
CN101741628A (zh) | 基于应用层业务分析的网络流量分析方法 | |
CN106411863A (zh) | 一种实时处理虚拟交换机网络流量的虚拟化平台 | |
WO2014151591A2 (en) | A device, a system and a related method for dynamic traffic mirroring and policy, and the determination of applications running on a network | |
CN107426166A (zh) | 一种信息的获取方法、装置及电子设备 | |
CN109413001A (zh) | 对云计算系统内的交互数据进行安全保护的方法及装置 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
EE01 | Entry into force of recordation of patent licensing contract |
Application publication date: 20170419 Assignee: Guangxi Boyan Technology Co.,Ltd. Assignor: GUILIN University OF ELECTRONIC TECHNOLOGY Contract record no.: X2022450000542 Denomination of invention: A Hidden Port Detection Method Based on SDN Network Architecture Granted publication date: 20191213 License type: Common License Record date: 20221229 |
|
EE01 | Entry into force of recordation of patent licensing contract | ||
CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20191213 |