Invention Grant
- Patent Title: System and method for distributed denial of service identification and prevention
- Patent Title (中): 分布式拒绝服务识别和预防的系统和方法
-
Application No.: US12239521Application Date: 2008-09-26
-
Publication No.: US08504504B2Publication Date: 2013-08-06
- Inventor: Lei Liu
- Applicant: Lei Liu
- Applicant Address: US CA Redwood City
- Assignee: Oracle America, Inc.
- Current Assignee: Oracle America, Inc.
- Current Assignee Address: US CA Redwood City
- Agency: Meyertons, Hood, Kivlin, Kowert & Goetzel, P.C.
- Agent Robert C. Kowert
- Main IPC: G06F17/00
- IPC: G06F17/00 ; G06N5/02

Abstract:
Systems and methods for discovery and classification of denial of service attacks in a distributed computing system may employ local agents on nodes thereof to detect resource-related events. An information later agent may determine if events indicate attacks, perform clustering analysis to determine if they represent known or unknown attack patterns, classify the attacks, and initiate appropriate responses to prevent and/or mitigate the attack, including sending warnings and/or modifying resource pool(s). The information layer agent may consult a knowledge base comprising information associated with known attack patterns, including state-action mappings. An attack tree model and an overlay network (over which detection and/or response messages may be sent) may be constructed for the distributed system. They may be dynamically modified in response to changes in system configuration, state, and/or workload. Reinforcement learning may be applied to the tuning of attack detection and classification techniques and to the identification of appropriate responses.
Public/Granted literature
- US20100082513A1 System and Method for Distributed Denial of Service Identification and Prevention Public/Granted day:2010-04-01
Information query