Synchronize (SYN) message transmitting method and device and network equipment

A technology for synchronizing messages and sending devices, which is applied in the field of communication, and can solve problems such as VPN gateway discarding, not saving the TCP header option MSS of SYN messages, etc.

Active Publication Date: 2012-04-25
BEIJING XINWANG RUIJIE NETWORK TECH CO LTD
View PDF4 Cites 10 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0018] The existing SYNCOOKIE scheme does not save the MSS value of the TCP header option of the SYN message, which causes the leng

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Synchronize (SYN) message transmitting method and device and network equipment
  • Synchronize (SYN) message transmitting method and device and network equipment
  • Synchronize (SYN) message transmitting method and device and network equipment

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0034] figure 1 It is a flowchart of an embodiment of the synchronous message sending method of the present invention, such as figure 1 As shown, the synchronization message sending method may include:

[0035] Step 101, after receiving the first synchronization message sent by the client, the synchronization message sending device sends a synchronization confirmation message to the above-mentioned client, and the serial number of the synchronization confirmation message carries the MSS of the first synchronization message.

[0036] In step 102, the device for sending a synchronization message receives the first confirmation message sent by the client for the synchronization confirmation message.

[0037] Step 103, if it is determined that the above-mentioned first confirmation message is a legitimate message, then the synchronization message sending device generates a second synchronization message according to the above-mentioned first confirmation message, and sets the abo...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a synchronize message transmitting method, a synchronize message transmitting device and network equipment. The synchronize message transmitting method comprises the following steps of: transmitting a synchronize confirmation message to a client after the synchronize message transmitting device receives a first synchronize message transmitted by the client; receiving a first confirmation message transmitted by the client aiming at the synchronize confirmation message; generating a second synchronize message if the first confirmation message is determined to be a legal message, and setting a value of a maximum segment size (MSS) option of the second synchronize message according to a confirmation number of the first confirmation message; and transmitting the second synchronize message with the set value to a server. Therefore, the MSS of the message transmitted by the server to the client is set to be a value of the MSS option of the second synchronize message through the server, and the problem that SYNCOOKIE cannot save the value of the MSS option of the SYN message, so that length of the message transmitted by the server to the client exceeds a maximum transmission unit (MTU) allowed by a virtual private network (VPN) channel so as to be discarded by a VPN gateway is solved.

Description

technical field [0001] The invention relates to firewall technology, in particular to a synchronous message sending method, device and network equipment, and belongs to the technical field of communication. Background technique [0002] Synchronize flood (Synchronize Flood; hereinafter referred to as: SYN Flood) attack is currently the most popular denial of service attack (Denial of Service; hereinafter referred to as: DoS) and distributed denial of service attack (Distributed Denial of Service; hereinafter referred to as: DDoS) One of them is an attack method that utilizes a transmission control protocol (Transmission Control Protocol; hereinafter referred to as: TCP) protocol defect to send a large number of forged TCP connection requests, thereby exhausting the resources of the attacked party. [0003] In the prior art, the process of establishing a TCP connection is specifically: [0004] In the first step, the requesting end (client) sends a TCP message containing a S...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L12/56H04L7/00H04L12/46H04L45/74
Inventor 黄凯明
Owner BEIJING XINWANG RUIJIE NETWORK TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products