Invention Grant
- Patent Title: Method for blocking denial of service and address spoofing attacks on a private network
- Patent Title (中): 阻止拒绝服务和对专网进行欺骗攻击的方法
-
Application No.: US10808629Application Date: 2004-03-24
-
Publication No.: US07836296B2Publication Date: 2010-11-16
- Inventor: Dennis Cox , Kip McClanahan
- Applicant: Dennis Cox , Kip McClanahan
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Baker Botts L.L.P.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A method is provided for blocking attacks on a private network (12). The method is implemented by a routing device (10) interconnecting the private network (12) to a public network (14). The method includes analyzing an incoming data packet from the public network (14). The incoming data packet is then matched against known patterns where the known patterns are associated with known forms of attack on the private network (12). A source of the data packet is then identified as malicious or non-malicious based upon the matching. In one embodiment, one of the known forms of attack is a denial of service attack and an associated known pattern is unacknowledged data packets. In another embodiment, one of the known forms of attack is an address spoofing attack and an associated known pattern is a data packet having a source address matching an internal address of the private network (12).
Public/Granted literature
- US20040181694A1 Method for blocking denial of service and address spoofing attacks on a private network Public/Granted day:2004-09-16
Information query