Access control and virus defense method and system based on dns protocol

An access control and virus technology, applied in the field of network security, can solve problems such as high superimposed costs, professional influence, abnormal access to secondary domain names, etc., to increase flexibility and comprehensiveness, expand matching strength, and enrich the system feature library Effect
CN108737452BActive Publication Date: 2021-03-12孙晨

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
孙晨
Publication Date
2021-03-12

Smart Images

  • Figure 1
    Figure 1
Patent Text Reader

Abstract

The present invention provides a method and system for access control and virus attack defense, which analyzes the matching DNS request, discards it if it is abnormal, and continues to operate if it passes; it analyzes the passed DNS request to determine whether there are viruses and illegal attacks , through analysis, block viruses and attacks and locate their IP addresses, return a special IP address, record its domain name, and add it to the malicious domain name resolution library; if the DNS request is suspicious, deliver it to the honeypot system, the honeypot system Through the interaction protocol that has been customized in advance, the honeypot system returns a honeypot IP address, and the honeypot system traces back. If the terminal attacks the honeypot IP address, it is judged that the terminal has been infected with a virus or a Trojan horse, and the system Treat accordingly. The present invention can comprehensively solve the security problem based on the DNS protocol.
Need to check novelty before this filing date? Find Prior Art

Description

Technical field

[0001] The present invention relates to network security, and more particularly to a DNS-based access control and a virus defense system. Background technique

[0002] DNS is an abbreviation for domainnamesystems, which is used to naming organizations and network services to domain hierarchies. The domain name is made of a string or abbreviation by a circle. Each domain name corresponds to a unique IP address, and between the domain name and IP address, DNS is a server for domain name resolution. DNS named Find Computers and services through the User-friendly names for the TCP / IP network of Internet. DNS is a core service of the Internet, which is a distributed database that can map domain names and IP addresses. From January 12, 2010, from 07:00 to 12, Baidu had encountered a top-level domain name baidu.com and the second-level domain access to an abnormality. All resolved to other addresses for a longer period of time, resulting in multiple users in the world ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More