Invention Grant
- Patent Title: Thwarting drone-waged denial of service attacks on a network
- Patent Title (中): 在网络上进行无人机的拒绝服务攻击
-
Application No.: US12357372Application Date: 2009-01-21
-
Publication No.: US09578055B1Publication Date: 2017-02-21
- Inventor: Bhushan P. Khanal
- Applicant: Bhushan P. Khanal
- Applicant Address: US WA Seattle
- Assignee: F5 Networks, Inc.
- Current Assignee: F5 Networks, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Lowe Graham Jones PLLC
- Agent John W. Branch
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
Embodiments are directed towards detecting and thwarting incoming network requests by either throttling and/or redirecting the attack requests towards a honeypot. As network requests are received, TCP segments are examined to identify a presence of attack signatures before returning an ACK. Such attack signatures may identified based on an absence of referrer headers, an invalid cookie, known improper sender addresses, known valid sender addresses, examination of OSI layer 4 and/or above content of a packet, or the like. If an attack is identified, throttling may be employed by responding to the attack requests by dropping and/or rejecting packets within the request, acknowledging the client device's packets at a byte level, modifying a round trip time (RTT) calculation by responding at a defined slowed rate, and/or redirecting client requests to a honeypot.
Information query