Detection and protection method and system for application layer DDOS attack based on IP credibility

A DDOS and protection system technology, applied in the field of CDN network security, can solve the problems of not considering the characteristics of the request, the inability to model, and the limitations of the technical solution, so as to improve the experience, ensure the quality of access, and improve the accuracy.
CN112491869APending Publication Date: 2021-03-12SHANGHAI QINIU INFORMATION TECH

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
SHANGHAI QINIU INFORMATION TECH
Publication Date
2021-03-12

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The embodiment of the invention provides an application layer DDOS attack detection and protection method and system based on IP credibility and electronic equipment, and the method comprises the steps: obtaining the IP credibility through combining an IP access log and a DDOS attack event record, carrying out the shunting of an access request according to the IP credibility, redirecting a high-risk access request to a corresponding high-protection server. Therefore, requests of different security threat levels are shunted and isolated, and detection and protection of application layer DDoS attacks are further realized. By utilizing the method disclosed by the invention, the abnormal traffic can be effectively distinguished, the accuracy of preventing and detecting the DDoS attack is improved, and meanwhile, when the service is attacked, the access quality of a normal user can be effectively ensured and the user experience is improved, so that the method disclosed by the invention hasobvious beneficial effects.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The present application relates to the field of CDN network security, in particular to a method and system for detecting and protecting application layer DDOS attacks based on IP reputation. Background technique

[0002] With the rapid development of mobile Internet, cloud computing, 5G, AI, Internet of Things and other technologies and industries, the digital transformation of society and enterprises has entered a critical stage. More and more enterprises have accelerated their service migration to the public cloud. While technology upgrades, attacks against sensitive cloud workloads and data have also followed. In particular, games, live broadcasts, finance, and government websites are faced with a large number of black products crowding out network bandwidth through malicious traffic, and services cannot operate normally. In recent years, with the continuous development and improvement of hardware devices and underlying detection technologies for D...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More