Unlock instant, AI-driven research and patent intelligence for your innovation.

Method for preventing hostile exhausting of DHCP (dynamic host configuration protocol) server address pool

A server address and server technology, applied in the direction of electrical components, transmission systems, etc., can solve the problems of not being able to access the network normally, exhausting the address pool, resource waste, etc., to prevent malicious consumption of IP address resources, maintain the network, and reduce the impact Effect

Inactive Publication Date: 2015-06-03
SUZHOU CENTEC COMM CO LTD
View PDF3 Cites 3 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

If the release message is not delivered to the server in time due to network failure; or some low-end devices will not actively trigger the release action; or the client originally applied for a long lease period, it has already gone offline; these situations can easily cause the IP address to be idle , especially in scenarios where IP allocation is tight, resulting in waste of resources
[0004] If no security measures are taken, as long as the process of applying for an IP address conforms to the normal interaction process, the client can successfully obtain the IP address; the attacker can impersonate a legitimate client by tampering with the source MAC address (SMAC) of the data packet, and continuously request Obtaining an IP address exhausts the address pool in a short period of time, causing legitimate user devices to no longer request an IP and thus unable to access the network normally

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for preventing hostile exhausting of DHCP (dynamic host configuration protocol) server address pool
  • Method for preventing hostile exhausting of DHCP (dynamic host configuration protocol) server address pool
  • Method for preventing hostile exhausting of DHCP (dynamic host configuration protocol) server address pool

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0022] Below will combine the present invention Attached picture , clearly and completely describe the technical solutions of the embodiments of the present invention.

[0023] The present invention newly defines four kinds of DHCP messages, which are respectively Detect message, Search message, Alive message and Rejest message, and the DHCP server actively sends the Detect message first and then sends the Search message or only sends the Search message to the DHCP client The terminal verifies the local online users, waits for the corresponding Alive message from the DHCP client, and finally rejects the message transmission of these users by sending a Rejest message to the gateway route of the network segment to which the specified user belongs.

[0024] Specifically, the DHCP Detect message is sent by the DHCP server in a broadcast mode in the local network, and the purpose is to detect all online DHCP clients in the local network; because all users who receive the Detect me...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method for preventing hostile exhausting of a DHCP (dynamic host configuration protocol) server address pool. A DHCP server actively sends a Detect message to all on-line DHCP clients in a local network at first, users who do not respond to the Alive messages are screened out, Search messages are sent to the users for secondary on-line verification, if the response is not received, Rejest messages are sent to a gateway router of an affiliated network band of the users, and the network access of the users is refused through the gateway router. For the sending of the Search messages, the work can be realized in a way of getting off from Detect messages, i.e., the server can regularly select some users from an IP address distribution table, and the Search messages are sent for on-line confirmation. The invention provides a mechanism for enabling the server to actively trigger the detection, the IP address pool is effectively used, the on-line operation of legal users can be ensured, meanwhile, certain safety protection can also be provided, and the hostile attack is reduced.

Description

technical field [0001] The invention relates to the technical field of dynamic host configuration protocols, in particular to a method for preventing malicious exhaustion of a DHCP server address pool. Background technique [0002] Each computer connected to the Internet (Internet) needs to know its IP address before sending or receiving data packets; network administrators usually configure the Dynamic Host Configuration Protocol server (DHCP Server) to provide a set of IP addresses (address pool) , whenever a new computer is connected to the network, the server selects an address from the configured address pool and assigns it to the computer, that is, using the DHCP protocol. The protocol adopts the CS mode (client-server). The DHCP server centrally manages network configuration information such as IP addresses, and the DHCP client requests its own configuration information from the DHCP server, thereby realizing automatic configuration of network devices. [0003] The D...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L29/12
CPCH04L63/08H04L63/1458H04L61/5014
Inventor 曹亮
Owner SUZHOU CENTEC COMM CO LTD