METHOD FOR MITIGATING NIC-KTLS-DENIAL-OF-SERVICE ATTACKS
DE602023022099T2Active Publication Date: 2026-09-02NETFLIX INC
View PDF 0 Cites 0 Cited by
Patent Information
- Application Number
- DE602023022099
- Authority / Receiving Office
- DE · DE
- Patent Type
- Patents
- Current Assignee / Owner
- Priority Date
- 2022-08-01
- Filing Date
- 2023-07-20
- Publication Date
- 2026-09-02
- Estimated Expiration
- 2043-07-20
AI Technical Summary
Technical Problem
NIC kTLS is susceptible to denial-of-service (DoS) attacks due to the need to re-read and re-encrypt entire plaintext TLS records when TCP packets are lost, leading to reduced bus bandwidth and increased processing resources, while software kTLS consumes substantial processing resources and memory bandwidth.
Method used
A method where a kernel offloads TLS data encryption to a NIC initially, but switches to software mode if a maximum re-transmission threshold is exceeded, reducing processing and memory bandwidth consumption and mitigating DoS attacks.
Benefits of technology
Efficient TLS record generation with reduced resource consumption and minimized risk of DoS attacks, maintaining network performance even under lossy connections.
✦ Generated by Eureka AI based on patent content.
Need to check novelty before this filing date? Find Prior Art
No text content released.