会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 86. 发明授权
    • Method of blocking network attacks using packet information and apparatus thereof
    • 使用分组信息来阻止网络攻击的方法及其装置
    • US07710971B2
    • 2010-05-04
    • US11592136
    • 2006-11-03
    • Jae Deok LimYoung Ho KimSeung Ho RyuBo Heung ChungKi Young Kim
    • Jae Deok LimYoung Ho KimSeung Ho RyuBo Heung ChungKi Young Kim
    • H04L12/56
    • H04L63/1416H04L63/101H04L69/16H04L69/161
    • A method of blocking network attacks using information included in a packet, and an apparatus thereof are provided. The method includes: receiving a packet containing information on the packet including at least information on a source from which the packet is sent, and information on a destination to which the packet is sent; and extracting the information on the packet included in the packet, comparing the information with a predetermined access control condition, and blocking or passing the packet. By doing so, a packet being transferred with a routing header capable of bypassing a security device as in an Internet Protocol version 6 (IPv6) network can be appropriately blocked or passed. Accordingly, security problems caused by the routing header can be overcome, and as a result, usage of the routing header can be promoted. Also, since a routing header can be used for transmitting a packet along a desired path, the routing header can be widely used without security problems, and can ease network security concerns relating to IPv6 networks that are expected to come into increasingly wide use.
    • 提供了使用包中包含的信息来阻止网络攻击的方法及其装置。 该方法包括:接收包含至少包括发送分组的源的信息的分组的分组以及发送分组的目的地的信息; 并提取关于分组中包含的分组的信息,将该信息与预定的访问控制条件进行比较,以及阻塞或传递分组。 通过这样做,可以适当地阻止或传递具有能够绕过互联网协议版本6(IPv6)网络的安全设备的路由报头传送的分组。 因此,可以克服由路由报头引起的安全问题,结果可以促进路由报头的使用。 另外,由于可以使用路由报头来沿着期望的路径发送分组,所以可以广泛地使用路由报头,而没有安全问题,并且可以减轻与预期将越来越广泛使用的IPv6网络有关的网络安全问题。