Preventing network reset denial of service attacks using...

H - Electricity – 04 – L

Patent

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

H04L 9/00 (2006.01)

Patent

CA 2565409

Approaches for preventing TCP RST attacks intended to cause denial of service in packet-switched networks are disclosed. In one approach, upon receiving a TCP RST packet, an endpoint node determines whether the TCP segment contains valid authentication information. The TCP RST segment is accepted and the TCP connection is closed only when the authentication information is valid. Authentication information may comprise a reset type values, and either initial sequence numbers of both endpoints, or a copy of a TCP header and options values previously sent by the endpoint node that is performing the authentication. Thus, attacks are thwarted because an attacker cannot know or reasonably guess the required authentication information.

L'invention concerne des procédés pour prévenir des attaques TCP RST visant l'interruption de service dans des réseaux à commutation par paquets. Dans un mode de réalisation, après réception d'un paquet TCP RST, un noeud d'extrémité détermine si le segment TCP contient une information d'authentification valable. Le segment TCP RST est accepté et la connexion TCP est bouclée seulement si l'information d'authentification est valable. L'information d'authentification peut contenir une valeur de type réinitialisation et, soit des numéros de séquences initiales des deux extrémités, soit une copie d'un en-tête TCP et des valeurs d'options préalablement envoyées par le noeud d'extrémité exécutant l'authentification. Les attaques sont ainsi prévenues, l'attaquant ne pouvant pas connaître ou raisonnablement deviner l'information d'authentification nécessaire.

LandOfFree

Say what you really think

Search LandOfFree.com for Canadian inventors and patents. Rate them and share your experience with other people.

Rating

Preventing network reset denial of service attacks using... does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Preventing network reset denial of service attacks using..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Preventing network reset denial of service attacks using... will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFCA-PAI-O-1503965

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.