Invention Grant
- Patent Title: Address checking to protect against denial of service attack
-
Application No.: US15649203Application Date: 2017-07-13
-
Publication No.: US10469529B2Publication Date: 2019-11-05
- Inventor: Hongya Qu , Timothy Petty
- Applicant: Nicira, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: Nicira, Inc.
- Current Assignee: Nicira, Inc.
- Current Assignee Address: US CA Palo Alto
- Agency: Patterson + Sheridan, LLP
- Main IPC: G06F12/14
- IPC: G06F12/14 ; H04L29/06 ; H04L12/46 ; H04L29/12 ; H04L12/721 ; H04L12/741 ; H04L12/931 ; H04L29/08 ; H04L12/715 ; H04L12/823

Abstract:
Certain embodiments described herein are generally directed to checking packets at a hardware tunnel endpoint. In some embodiments, an encapsulated packet is received at a hardware tunnel endpoint. It is determined if an inner source media access control (MAC) address is associated with an outer source internet protocol (IP) address of the encapsulated packet based on a mapping of MAC addresses of virtual computing instances to IP addresses of tunnel endpoints stored at the hardware tunnel endpoint. If it is determined the inner source MAC address is not associated with the outer source IP address, the packet is dropped.
Public/Granted literature
- US20190020679A1 ADDRESS CHECKING TO PROTECT AGAINST DENIAL OF SERVICE ATTACK Public/Granted day:2019-01-17
Information query