METHOD FOR MITIGATING NIC-KTLS-DENIAL-OF-SERVICE ATTACKS

DE602023022099T2Active Publication Date: 2026-09-02NETFLIX INC
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
DE602023022099
Authority / Receiving Office
DE · DE
Patent Type
Patents
Current Assignee / Owner
Priority Date
2022-08-01
Filing Date
2023-07-20
Publication Date
2026-09-02
Estimated Expiration
2043-07-20

AI Technical Summary

Technical Problem

NIC kTLS is susceptible to denial-of-service (DoS) attacks due to the need to re-read and re-encrypt entire plaintext TLS records when TCP packets are lost, leading to reduced bus bandwidth and increased processing resources, while software kTLS consumes substantial processing resources and memory bandwidth.

Method used

A method where a kernel offloads TLS data encryption to a NIC initially, but switches to software mode if a maximum re-transmission threshold is exceeded, reducing processing and memory bandwidth consumption and mitigating DoS attacks.

Benefits of technology

Efficient TLS record generation with reduced resource consumption and minimized risk of DoS attacks, maintaining network performance even under lossy connections.

✦ Generated by Eureka AI based on patent content.
Patent Text Reader
Need to check novelty before this filing date? Find Prior Art
No text content released.