Patents
Literature
Patsnap Copilot is an intelligent assistant for R&D personnel, combined with Patent DNA, to facilitate innovative research.
Patsnap Copilot

57 results about "SYN flood" patented technology

A SYN flood is a form of denial-of-service attack in which an attacker sends a succession of SYN requests to a target's system in an attempt to consume enough server resources to make the system unresponsive to legitimate traffic.

Bloom Filter and open-source kernel-based method for defensing SYN Flood attack

The invention discloses a Bloom Filter and open-source kernel-based method for defensing an SYN Flood attack, which comprises the following steps of: 1, judging whether being subjected to the SYN-Flood attack; 2, establishing a Bloom Filter structure; 3, updating a credible IP address and TTL data of a kernel layer, and starting to filter a data packet of the kernel layer; 4, filtering a TCP SYN data packet according to the credible IP address and the TTL record by using the kernel layer; and 5, stopping filtering the data packet of the kernel layer. The method has the advantages that: 1, by improving an original structure of a Bloom Filter that a single bit array corresponds to a plurality of hash functions, a structure that a hash function corresponds to a bit array is adopted, so that the false alarm rate is effectively reduced, and the efficiency of storing and searching the data packet on the premise of ensuring the accuracy rate is improved; therefore, the method can effectively defense the SYN Flood attack; and 2, the problems that the kernel layer has high efficiency but is not suitable for processing complicated programs and a user layer is not compact with a kernel protocol stack are solved by the cooperative processing of combining the kernel layer and the user layer of an open-source operating system, so that the efficiency of processing the data packet is improved.
Owner:XIANGTAN UNIV

SYN Flood protection method and apparatus, cleaning device and medium

The invention discloses an SYN Flood (synchronize Flood) protection method and apparatus, a cleaning device and a medium. The SYN Flood protection method includes the steps: receiving an SYN message sent from a terminal, and determining whether the information of the terminal is recorded in a trust list or a restriction list; if not, abandoning the SYN message, and sending an ACK (acknowledgement) detection message to the terminal; and determining whether an RST (RESET) message is received, if so, adding the information to the trust list, and if not, adding the information of the terminal to the restriction list. In the SYN Flood protection method and apparatus, the trust list and the restriction list are saved in a cleaning device; if the terminal is not recorded in any one list, the ACK detection message is sent to the terminal, and the ACK detection message does not destroy the TCP (Transmission Control Protocol) protocol connection between the terminal and a server; according to whether the terminal sends the RST message, the SYN Flood protection method and apparatus can determine to add the terminal to which list; and the SYN message is abandoned, the resource is not occupied, so that the processing efficiency of the cleaning device can be improved.
Owner:NSFOCUS INFORMATION TECHNOLOGY CO LTD +1

Transmission control protocol option processing method and apparatus

The present invention discloses a transmission control protocol option processing method and apparatus. The method includes the following steps that: a handshake message sent by a client is received, wherein the handshake message carries TCP (transmission control protocol ) option request information; the traffic type of traffic flowing into a traffic management device is determined according to the handshake message, wherein the traffic type can be a proxy traffic type or a non-proxy traffic type; if the traffic type is the proxy traffic type, a handshake message supporting a TCP option is sent back to the client; and if the traffic type is the non-proxy traffic type, a handshake message supporting the TCP option is sent back to the client, and a target server is negotiated with to decide whether to support the TCP option, if the target server does not support the TCP option, a negotiation result is fed back to the client. With the transmission control protocol option processing method and apparatus of the invention adopted, the traffic management device can reasonably process the TCP option in an SYN Flood attack prevention process, and therefore, the efficiency and quality of network transmission can be improved, and user experience can be enhanced.
Owner:SANGFOR TECH INC
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products