System and method of traffic filtration at DDoS-attack detection

A filter and network traffic technology, applied in the field of network security, can solve the problem of not completely solving the problem of traffic filtering

Active Publication Date: 2018-11-13
AO KASPERSKY LAB
View PDF6 Cites 8 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] Although methods known from the prior art aim to solve the problem in the art of protecting computer equipment from DDoS attacks, these methods do not fully solve the problem of traffic filtering

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • System and method of traffic filtration at DDoS-attack detection
  • System and method of traffic filtration at DDoS-attack detection
  • System and method of traffic filtration at DDoS-attack detection

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0023] Exemplary aspects are described herein in the context of systems, methods, and computer program products for filtering network traffic in detecting DDoS network attacks. Those of ordinary skill in the art will appreciate that the following description is illustrative only and is not intended to be limiting in any way. Other aspects will readily suggest themselves to those skilled in the art with the benefit of the invention. Reference will now be made in detail to implementations of the exemplary aspects as illustrated in the accompanying drawings. Wherever possible, the same reference numbers will be used throughout the drawings and the following description to refer to the same or like items.

[0024] The system of traffic filtering when detecting DDoS attack among the present invention can be realized by real equipment, system, component and component group, and these equipment, system, component and component group utilize hardware (such as integrated microcircuit ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The present disclosure discloses a system and method of traffic filtration at DDoS-attack detection. The present disclosure relates to a system and method for filtering network traffic to protect a server from a distributed denial-of-service (DDoS) attack, and computer readable storage medium having instructions for filtering network traffic to protect a server from a distributed denial-of-service(DDoS) attack. The described technique includes intercepting data from a network node to the computing device responsive to detecting a computing device is subject to a DDoS attack. The technique further includes determining one or more data transmission parameters based on the intercepted data, assigning a danger rating to the network node, and changing the danger rating of the network node based on application of a filter and on the data transmission parameters. The described technique limits a transmittal of data from the network node to the computing device if the resultant danger ratingof the network node exceeds a threshold value.

Description

technical field [0001] The present invention relates to the field of network security, and more particularly to systems and methods for traffic filtering when detecting DDoS attacks. Background technique [0002] The problem of protecting computer equipment, especially those comprising server software or any other software for which uninterrupted and stable operation is of high importance, is a pressing matter. A web host, bank server, or any other server to which access is gained over the Internet is a potential target for a Distributed Denial of Service (DDoS) attack. Such attacks are often carried out with the help of botnets (multiple computer devices remotely controlled by hackers) and cause significant delays and sometimes result in server processing requests (such as Hypertext Transfer Protocol (HTTP) request) for an overall failure. [0003] Various methods exist to protect servers from DDoS attacks. In most cases, these methods involve analyzing the traffic reach...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/0227H04L63/1425H04L63/1458H04L63/306G06F21/55G06F21/577H04L63/1408H04L63/1433
Inventor 尼古拉·V·古多夫亚历山大·A·卡哈力曼恩科丹尼斯·E·科列什科夫
Owner AO KASPERSKY LAB
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products