Invention Grant
US08281397B2 Method and apparatus for detecting spoofed network traffic 有权
用于检测欺骗性网络流量的方法和装置

Method and apparatus for detecting spoofed network traffic
Abstract:
A method and apparatus for detecting spoofed IP network traffic is presented. A mapping table is created to indicate correlations between IP address prefixes and AS numbers, based on routing information collected from a plurality of data sources. At each interface of a target network, IP address prefixes from a training traffic flow are acquired and further converted into AS numbers based on the mapping table. An EAS (Expected Autonomous System) table is populated by the AS numbers collected for each interface. The EAS table is used to determine if an operation traffic flow is allowed to enter the network.
Public/Granted literature
Information query
Patent Agency Ranking
0/0