Invention Grant
- Patent Title: System and method for integrated header, state, rate and content anomaly prevention for session initiation protocol
-
Application No.: US15604299Application Date: 2017-05-24
-
Publication No.: US10009365B2Publication Date: 2018-06-26
- Inventor: Hemant Kumar Jain , Venkata Yallapragada , Bhavin Shah , Radhika Palepu
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Hamilton, DeSanctis & Cha LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
Methods and systems for an integrated solution to the rate based denial of service attacks targeting the Session Initiation Protocol are provided. According to one embodiment, header, state, rate and content anomalies are prevented and network policy enforcement is provided for session initiation protocol (SIP). A hardware-based apparatus helps identify SIP rate-thresholds through continuous and adaptive learning. The apparatus can determine SIP header and SIP state anomalies and drop packets containing those anomalies. SIP requests and responses are inspected for known malicious contents using a Content Inspection Engine. The apparatus integrates advantageous solutions to prevent anomalous packets and enables a policy based packet filter for SIP.
Public/Granted literature
Information query