Application specific packet filter method and device of file transfer protocol

A message filtering, application layer technology, applied in the direction of digital transmission system, error prevention, electrical components, etc., can solve the problem of inability to prevent threats, achieve the effect of preventing attack behavior, safe and reliable transmission, and avoiding attack behavior

Active Publication Date: 2015-03-18
NANJING ZHONGXING XIN SOFTWARE CO LTD
View PDF4 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] The main purpose of the present invention is to provide an FTP application layer message filtering method

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Application specific packet filter method and device of file transfer protocol
  • Application specific packet filter method and device of file transfer protocol
  • Application specific packet filter method and device of file transfer protocol

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0052] It should be understood that the specific embodiments described here are only used to explain the present invention, not to limit the present invention.

[0053] The present invention provides a kind of FTP application layer message filtering method, refer to figure 1 As shown, in an embodiment of the present invention, the method includes the following steps:

[0054] Step S10, when establishing the FTP control channel TCP connection, obtain the first TCPSYN message sent by the client and forward it to the FTP server;

[0055] Step S20, detecting whether the reply message of the FTP server is a TCP message of SYN+ACK, if not, discarding it; if so, forwarding it to the client;

[0056] Step S30, detecting whether the response message of the client is a TCP message of ACK, if not, discarding it; if so, forwarding it to the FTP server;

[0057] Step S40, establishing a data flow table to record and update the FTP status.

[0058] Specifically, please refer to figure ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

Disclosed is an FTP application layer packet filtering method comprising the following steps: when establishing a file transfer protocol (FTP) control channel transmission control protocol (TCP) connection, obtaining a first transmission control protocol synchronous (TCP SYN) packet sent by a client and forwarding same to an FTP server; detecting whether the FTP server response packet is a synchronize-acknowledgment (SYN-ACK) TCP packet and, if not, discarding same; detecting whether the client response packet is an ACK TCP packet and, if not, discarding same; establishing a data flow table in order to record and update FTP status. Additionally provided is an FTP application layer packet filtering device. The above method and device are capable of avoiding and protecting against FTP application layer attacks and ensuring the secure, reliable transmission of FTP operations.

Description

technical field [0001] The present invention relates to an ASPF (Application Specific Packet Filter, application layer message filtering) implementation method for FTP (File Transfer Protocol, file transfer protocol) services, and specifically relates to an FTP-based application layer message filtering method and device. Background technique [0002] FTP is one of the protocols in the TCP / IP (Transmission Control Protocol / Internet Protocol, Transmission Control Protocol / Internet Internet Protocol or Network Communication Protocol) protocol cluster. This protocol is the basis of Internet file transfer. It consists of a series of specification documents , the goal is to improve file sharing, so that storage media can transmit data transparently, reliably and efficiently to users. To put it simply, FTP is to complete the copy between two computers, copying files from a remote computer to your own computer, which is called "download (download)" files. When you copy a file from ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L29/08
CPCH04L29/06H04L1/1657H04L63/0227H04L67/06H04L67/1095H04L63/0815H04L69/16H04L63/0254H04L63/0236H04L63/02H04L63/083H04L63/20
Inventor 高永岗李娟
Owner NANJING ZHONGXING XIN SOFTWARE CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products