Invention Grant
US09043912B2 Method for thwarting application layer hypertext transport protocol flood attacks focused on consecutively similar application-specific data packets
有权
阻止应用层超文本传输协议泛洪攻击的方法主要针对连续类似的应用程序特定数据包
- Patent Title: Method for thwarting application layer hypertext transport protocol flood attacks focused on consecutively similar application-specific data packets
- Patent Title (中): 阻止应用层超文本传输协议泛洪攻击的方法主要针对连续类似的应用程序特定数据包
-
Application No.: US14217320Application Date: 2014-03-17
-
Publication No.: US09043912B2Publication Date: 2015-05-26
- Inventor: Mehdi Mahvi
- Applicant: Mehdi Mahvi
- Agency: San Diego IP Law Group LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The present invention provides a methodology to thwart attacks that utilize consecutive hypertext transport protocol packets with similar structures, arriving from a plurality of computer systems on a network, such as the Internet, destined for a single or more computer systems on a secondary network, at such a rate with sufficient complexity to produce an effect on the target computer system or systems such that legitimate clients are denied access to requested services, thus creating a “denial of service” situation. The methodology focuses on the dynamic and proactive reassessment of data packet payload content to maintain a running value of similarity or dissimilarity, thus permitting intermediary apparatuses that are performing this computation to create distinction between legitimate clients and illegitimate clients.
Public/Granted literature
Information query