Method based on active network returning technology against refuse service attack

A technology of denial of service attack and backtracking technology, applied in the field of denial of service attack based on active network backtracking technology, defense against denial of service attack, can solve problems such as time-consuming and energy-consuming, information loss, high cost, etc., to reduce mutual influence , Improve network performance and ensure high efficiency

Inactive Publication Date: 2004-12-08
SHANGHAI JIAO TONG UNIV
View PDF0 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

For example, in the debugging method, it will take a lot of time and energy for the attacked host to contact the network administrator, and this method only works when the attack occurs; the controlled attack method itself is a denial of service attack, and requires Knowing exactly the topology of the network, at the same time, has little

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method based on active network returning technology against refuse service attack
  • Method based on active network returning technology against refuse service attack
  • Method based on active network returning technology against refuse service attack

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0022] In order to better understand the technical solution of the present invention, further description will be made below in conjunction with the accompanying drawings and embodiments.

[0023] Such as figure 1 As shown, an attack server A is configured in the test network to send a large number of attack packets, the intermediate router Ri is an active node configured with the ACTB system, server D is configured with the ACTB system, and E is a common server, and F is used as a code server. Requests from intermediate nodes provide code loading.

[0024] Such as figure 2 , as shown in 3, when the packet arrives at the node, first execute the node pre-judgment algorithm, if it passes, then forward the packet, otherwise check whether the node has established a defense system, if not, then forward the packet; if there is already a defense system to extract the destination node in the packet address, if the address does not belong to the filter list of the defense system, th...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

A method for preventing the denial of service attack based on backtracking technology with active network belongs to the information security technology field. By using dynamic allocation mechanism based on active network and combining backtracking technology, the invention builds the active backtracking system at each node in the attacked server, first makes the pre- judgement to the node, then judges the attacking algorithm, judges the target node in the packet header and other information, then makes defense backtracking, traces and eliminates the source of attack, finally eliminates the denial of service attack.

Description

technical field [0001] The invention relates to a method for defending against denial of service attacks, in particular to a method for defending against denial of service attacks based on active network backtracking technology. It belongs to the field of information security technology. Background technique [0002] Denial of service attack (DoS) sends a large number of service requests to the attacked host or other network devices in a very short period of time, causing the connection list of the target host to overflow, so that the target host cannot normally respond to other legitimate service requests. At present, there are many methods of defense denial of service attacks based on backtracking in the world, including entry debugging, controlled attacks, and IP marking adopted by the border, etc. (Stefan Savage, David Wetherall, Anna Karlin and Tom Anderson: Practical Network Support for IP Traceback. SIGCOMM2000Sweden: ACM, 2000.295~300), (Network Model Supporting IP ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L9/00
Inventor 王明政田一华黄瑾张峻薛质
Owner SHANGHAI JIAO TONG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products