Abstract:
PURPOSE: A method for detecting a spoofing attack system through network packet monitoring is provided to detect a spoofing attack attempted in a local network, which does not have a firewall system or a packet filtering function, by detecting spoofing packets, floating in the local network, and catching the hardware address of a system that transmits spoofing packets. CONSTITUTION: An Etherwatch(301) has a hardware address investigation function for a gateway(302) and all the systems of a network. Hardware address investigation is achieved through pink packet transmission and ARP(Address Resolution Protocol) table inspection. The hardware address investigation for the gateway(302) is carried out when the Etherwatch(301) is executed and a routing table is modified. The Etherwatch(301), referring to the routing table, extracts the IP address of a system, selected as a gateway for an external network, and makes a request for a ping(301c) on the gateway(302). If a ping response(302b) is received, the Etherwatch(301) extracts the hardware address of the gateway through the ARP table of the system. The hardware address investigation for all the systems of a local network is carried out when regular intervals and spoofing packets are detected.
Abstract:
PURPOSE: A method for administrating a Web-based ATM-PON(Asynchronous Transfer Mode-Passive Optical Network) system by a TCP/IP(Transmission Control Protocol/Internet Protocol) is provided to configure an administration device in charge of administration of the ATM-PON system in a structure of client/server, so as to enable Web-based clients to administrate the ATM-PON system in any place by performing TCP/IP communication through a network. CONSTITUTION: A plurality of clients(10) deliver administration request messages to an operator manager(16) of a server(11). The operator manager(16) processes only a client authentication message among the request messages, and delivers remnant messages to an IPC(Inter Processor Communication) message processor(15). The IPC message processor(15) classifies the delivered request messages by functions to deliver the classified messages to corresponding function managers. Each function manager delivers processed results of the request messages and notification messages to the IPC message processor(15). The IPC message processor(15) delivers the processed results and the notification messages to the operator manager(16). And the operator manager(16) stores the delivered messages in a RAM(Random Access Memory)-resident database(18) and delivers the messages to the clients(10).
Abstract:
PURPOSE: A method for assigning labels using BGP(Border Gateway Protocol) table information in an MPLS(Multi Protocol Label Switch) network is provided to transmit information on a BGP table to an LDP(Label Distribution Protocol) block, and to assign labels to next hop information, thereby remarkably reducing label consumption. CONSTITUTION: A routing module operates each routing protocol, and obtains route information from a neighboring network(701). The routing module generates each routing table for each routing protocol including a BGP(702). The routing module scans each routing table, and selects an optimal path for each receiver(703). The routing module generates a routing information base including next hop information(704), and transmits the routing information base and information on a BGP table to an MPLS signaling module(705). The signaling module generates a label information base(706), and transmits information on the label information base to a forwarding table of a label switch(707).
Abstract:
PURPOSE: A satellite Internet access device and a method of supplying satellite Internet service are provided to perform a user authenticating function as communicating with a satellite multimedia server under an environment where a satellite Internet service is supplied by using a remote Internet access device, thereby supplying various high speed satellite Internet multimedia services. CONSTITUTION: A user terminal(101) mounts a satellite receiver, a modem, and an ISDN TA(Terminal Adapter) thereon. A remote Internet access device(105) is connected to the user terminal(101) via a PSTN(103) including an ISDN. A subscriber/billing management system(115) performs a satellite Internet subscriber and billing management function. An authentication server(117) authenticates subscribers. An MPEG-2 encoder(113) converts Internet service data into an MPEG-2 transmission stream. A communication satellite repeater(111) transceives data with a user receiver through an artificial satellite(121).
Abstract:
1. 청구범위에 기재된 발명이 속한 기술분야 본 발명은 전화망 가입자를 위한 원격 인터넷 접속장치 및 그 방법에 관한 것임. 2. 발명이 해결하려고 하는 기술적 과제 본 발명은, 기존의 대용량 통신처리 시스템보다 구성이 간단하고 빠른 접속으로 전화망 가입자가 인터넷을 이용할 수 있도록 하기 위한 전화망 가입자를 위한 원격 인터넷 접속장치 및 그 방법과 상기 방법을 실현시키기 위한 프로그램을 기록한 컴퓨터로 읽을 수 있는 기록매체를 제공하고자 함. 3. 발명의 해결방법의 요지 본 발명은, 각 기능부간 패킷을 전송하기 위한 전달 매체 수단; 상기 전달매체 수단에 연결되고 운용 프로그램의 제어를 받아, 시스템의 구성, 초기화 및 운용 관리를 포함하는 요구되는 기능들을 제어하기 위한 인터넷 서비스 처리수단; 상기 인터넷 서비스 처리수단의 제어를 받아 프레임의 다중화와 역다중화 및 모뎀 접속기능을 제공하기 위한 전화망 정합수단; 및 상기 인터넷 서비스 처리수단의 제어를 받아 공통선 접속기능을 제공하기 위한 공통선 신호방식 정합수단을 포함함. 4. 발명의 중요한 용도 본 발명은 전화망 가입자가 모뎀을 이용하여 인터넷에 접속하도록 지원하는 서비스 등에 이용됨.
Abstract:
PURPOSE: A method for managing No.7 signal link by TMN in ATM by reflecting signal link producing and canceling results to a network management agent in a local exchange is provided to reflect signal link producing and canceling results to a network management agent in order to secure a mutual link and operation between No.7 signal network management services. CONSTITUTION: A TMN(Telecommunication Management Network) has a GUI(graphic User Interface) function. A graphic user match terminal(34) communicates with a manager(31) by F-interface as TMN standard protocol stack. The manager(31) is a function module for performing the whole function management about the network management and communicates with an agent(32) by CMIP(Common Management Protocol). An agent process(303) produces, cancels, changes and searches a management object of the agent(32) and controls the network management resource within an ATM exchange(33).
Abstract:
PURPOSE: A method of requiring data re-transmission is provided to improve re-transmission efficiency by searching all data with transfer error caused in a window size and requiring re-transmission of the search data at once. CONSTITUTION: After receiving data protocol data unit(PDU) with an order number(401), a maximumly allowed reception state coefficient is compared with the order number of the received data PDU(402). If the order number is over the maximumly allowed reception state coefficient, the received data PDU is discarded and then the reception state coefficient value is adjusted(403). If the order number is below the maximumly allowed reception state coefficient, whether the order number is identical to the reception state coefficient is checked(404). If so, the received data PDU is transferred to an upper application(405). If not, whether the order number is more than the reception state coefficient is checked(406). If the order number is less than the reception state coefficient, the received data PDU is discarded and then the reception state coefficient value is adjusted(407). If the order number is more than a reception standby order number, the received data PDU is stored in a reception buffer(408). After searching erroneous data PDU, data PDU for requiring re-transmission is generated(409) and transmitted(410).
Abstract:
PURPOSE: A method for a call process when interworking information provider based on TCP/IP connected to an asynchronous terminal user and a frame relay network with a frame relay network interface unit is provided to supply a fast data communication service to a user. CONSTITUTION: A method for a call process when interworking information provider based on TCP/IP connected to an asynchronous terminal user and a frame relay network with a frame relay network interface unit comprises the following steps. Errors of a received call connection request message are detected. The setup of the call corresponding to information provider host designation address is determined if the errors are not founded. An address of information provider is extracted from the information provider host designation address and a telnet connection request item is determined if the call is set up. A TCP connection request message is transmitted to the frame relay network interface unit according to a TCP/IP protocol.
Abstract:
1. 청구 범위에 기재된 발명이 속한 기술분야 본 발명은 택시(TAXI)와 이더넷간의 다중채널 데이터 전송방법에 관한 것임. 2. 발명이 해결하려고 하는 기술적 과제 본 발명은, 서브시스템에서 지역관리 장치로 데이터를 전송하고, 또한 지역관리 장치에서 서브시스템으로 데이터를 전송하기 위해 주 제어보드와 택시(TAXI) 정합보드를 구비하여 택시(TAXI)와 이더넷(Ethernet) 인터페이스를 통해 서로 다른 물리적 인터페이스를 갖는 시스템간에 상호 통신을 위해 다중채널을 이용하는 다중채널 데이터 전송방법을 제공하고자 함. 3. 발명의 해결방법의 요지 본 발명은, 통신처리 시스템과 지역관리 장치간의 통신을 위해 단순한 물리적 신호 변환 뿐만 아니라 호 처리기능, 데이터 전달 프로토콜 기능을 수행하며, 수십 개의 서브시스템과 통신을 하기 위해 동시에 다중채널 서비스를 처리할 수 있도록 다중 타스크 방식으로 호 처리를 한다. 4. 발명의 중요한 용도 본 발명은 대용량 통신 시스템에 이용됨.