Unlock instant, AI-driven research and patent intelligence for your innovation.

Method and system for preventing ARP attacks in local area network

A LAN and ARP table technology, applied in transmission systems, electrical components, etc., can solve the problems of inconvenient LAN network expansion and poor usability of network expansion within the LAN

Active Publication Date: 2020-10-09
SUZHOU LANGCHAO INTELLIGENT TECH CO LTD
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] This application provides a method and system for preventing ARP attacks in a local area network, so as to solve the problem that the method for preventing ARP attacks in the prior art is not convenient to realize network expansion in the local area network, resulting in poor usability of network expansion in the local area network

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for preventing ARP attacks in local area network
  • Method and system for preventing ARP attacks in local area network

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0060] see figure 1 , figure 1 It is a schematic flowchart of a method for preventing an ARP attack in a local area network provided by an embodiment of the present application. Depend on figure 1 As can be seen, the method for preventing ARP attacks in the local area network in this embodiment mainly includes the following processes:

[0061] S1: Establish an ARP server.

[0062] The APR server in this embodiment is used for storing and dynamically maintaining the ARP table.

[0063] Specifically, step S1 includes:

[0064] S11: Build a network isolation environment.

[0065] Specifically, a network isolation environment can be established by connecting a physical isolation gateway to the ARP server. By building a network isolation environment and implementing an ARP server based on network isolation, it can not only identify and filter malicious ARP packets, but also increase the security of the host and realize defense against other attack methods, such as defense aga...

Embodiment 2

[0090] exist figure 1 On the basis of the illustrated embodiment see figure 2 , figure 2 It is a schematic structural diagram of a system for preventing ARP attacks in a local area network provided by an embodiment of the present application.

[0091] Depend on figure 2 It can be seen that the system for preventing ARP attacks in the local area network in this embodiment mainly includes: an ARP server, a first update module and a second update module. Wherein, the ARP server is used to store and dynamically maintain the ARP table; the first update module is used to update the ARP table of the network equipment in the local area network according to the ARP table in the ARP server, and the network equipment includes: host and gateway equipment; the second update The module is used to update the ARP table of the network device by sending an ARP request to the ARP server when a new network device is added in the local area network.

[0092] Further, the ARP server includes...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method and system for preventing ARP attacks in a local area network. The method comprises the following steps: firstly, establishing an ARP server, then updating an ARP table of network equipment according to the ARP table in the ARP server, and when new network equipment is added in a local area network, updating the ARP table of the network equipment by sending an ARPrequest to the ARP server. The system comprises an ARP server, a first updating module and a second updating module. According to the invention, network expansion can be realized on the premise of safely avoiding ARP attacks, and the usability of network expansion in a local area network is greatly improved.

Description

technical field [0001] The present application relates to the technical field of local area network security, in particular to a method and system for preventing ARP attacks in a local area network. Background technique [0002] The ARP (Address Resolution Protocol, Address Resolution Protocol) protocol is a network layer located in the TCP / IP protocol stack, responsible for resolving an IP address into a corresponding MAC address. In LAN communication, the host broadcasts the ARP request containing the target IP address information to all hosts in the network, and receives the return message to determine the physical address of the target IP address. After receiving the message, each host will maintain a local ARP cache table. Hosts in the LAN can send ARP reply messages independently, and other hosts will not check the authenticity of the reply messages when they receive the reply messages, and directly record them into the local ARP cache. However, the ARP cache table c...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06H04L29/12
CPCH04L63/02H04L63/0236H04L63/0876H04L63/1441H04L61/103
Inventor 马玉斌
Owner SUZHOU LANGCHAO INTELLIGENT TECH CO LTD