Unlock instant, AI-driven research and patent intelligence for your innovation.

Network attack protection method, device and system

A network attack and network service technology, applied in the field of devices and systems, and attack protection methods, can solve problems such as increasing equipment complexity and increasing defense equipment performance overhead, and achieve the effect of avoiding network attacks

Active Publication Date: 2018-12-28
SHENZHEN TENCENT COMP SYST CO LTD
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Significantly increase the performance overhead of the defense device, and also need to maintain the key information of the communication parties on the defense device, which increases the complexity of the device

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network attack protection method, device and system
  • Network attack protection method, device and system
  • Network attack protection method, device and system

Examples

Experimental program
Comparison scheme
Effect test

no. 1 example

[0022] figure 1 It is a schematic diagram of the network attack protection system provided in the first embodiment. Such as figure 1 As shown, the system 100 includes a client 10 , a protection server 20 and a web server 30 . The client 10 and the protection server 20 can be connected through the Internet, and the protection server 20 and the network server 30 can be connected through the intranet of the enterprise.

[0023] Specific examples of the client 10 include: personal computers, smart phones, tablet computers, media players and any other electronic devices with Internet capabilities. The client 10 uses various network services provided by the network server 30 through the application programs (such as game client programs, instant messaging client programs, etc.) running in it.

[0024] refer to figure 2 , which is figure 1 The interaction diagram of the network attack protection system running. Such as figure 2 As shown, the client 10 first prepares the data...

no. 2 example

[0030] image 3 It is a flow chart of the network attack protection method provided in the second embodiment, which can be used for such as figure 1 In the protection server 20 shown. Such as image 3 As shown, the method includes the following steps:

[0031] Step S210, receiving data submitted by the client.

[0032] Such as figure 2As shown, the client 10 first prepares the data to be sent. Specifically, the above-mentioned application programs will generate data that needs to be sent to the network server 30 during operation, such as recorded audio / video data, or user operation data in the game client program. Then, the client 10 can obtain the first verification value. After obtaining the first verification value, the client 10 can attach it to the data to be sent. Further, the client 10 sends data to the protection server 20 , and sends the data packet to the protection server 20 . Correspondingly, the protection server 20 receives the data submitted by the clie...

no. 3 example

[0041] Figure 4 It is a flow chart of the network attack protection method provided in the third embodiment, and the method can be performed by figure 1 The system shown executes. Such as Figure 4 As shown, the method includes the following steps:

[0042] Step S310, the client appends the first verification value to the data to be sent, and sends the data to be sent to the protection server.

[0043] Such as figure 2 As shown, the client 10 first prepares the data to be sent. Specifically, the above-mentioned application programs will generate data that needs to be sent to the network server 30 during operation, such as recorded audio / video data, or user operation data in the game client program. Then, the client 10 can obtain the first verification value. After obtaining the first verification value, the client 10 can attach it to the data to be sent. Further, the client 10 sends data to the protection server 20 , and sends the data packet to the protection server ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to a network attack protection method, device and system. In one embodiment, the above method includes: receiving the data submitted by the client; extracting the first verification value from the data; calculating the second verification value according to a predetermined algorithm; and if the first verification value and the second verification value A mutual match forwards the data to the corresponding web server. The above-mentioned network attack protection method, device and system can effectively realize network attack protection on a private protocol.

Description

technical field [0001] The invention relates to Internet security technology, in particular to an attack protection method, device and system. Background technique [0002] As for the method of authenticating the authenticity of the data packet, the current industry mostly uses the interactivity of the protocol to embed a challenge-response message in the communication process to challenge the initiator of the communication process. According to the result of the other party's response after the challenge, it is judged whether it is a malicious request. [0003] Taking the current protection algorithm against Distributed Denial of Service (DDoS) attacks in the industry as an example, the specific implementation process is as follows: the client initiates a request to the server; after the defense device parses the client's request, it initiates a Challenge; the normal client can respond to the challenge, but the attacker cannot correctly respond to the challenge; the defens...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
CPCH04L63/12H04L12/6418H04L63/123H04L63/0245H04L63/1441H04L63/1458
Inventor 陈曦刘剑
Owner SHENZHEN TENCENT COMP SYST CO LTD