Information security – Monitoring or scanning of software or data including attack... – Intrusion detection
Reexamination Certificate
2011-04-05
2011-04-05
Cervetti, David Garcia (Department: 2436)
Information security
Monitoring or scanning of software or data including attack...
Intrusion detection
C713S151000, C713S153000
Reexamination Certificate
active
07921462
ABSTRACT:
The invention provides methods, apparatus and systems for detecting distributed denial of service (DDoS) attacks within the Internet by sampling packets at a point or points in Internet backbone connections to determine a packet metric parameter. The packet metric parameter which might comprise the volume of packets received is analyzed over selected time intervals with respect to specified geographical locations in which the hosts transmitting the packets are located. The expected behavior can be employed to identify traffic distortions revealing a DDoS attack. In a complementary aspect, the invention provides a method of authenticating packets at routers in order to elevate the QoS of authenticated packets. This method can be used to block or filter packets and can be used in conjunction with the DDoS attack detection system to defend against DDoS attacks within the Internet in a distributed manner.
REFERENCES:
patent: 6347090 (2002-02-01), Ooms et al.
patent: 6738361 (2004-05-01), Immonen et al.
patent: 6898641 (2005-05-01), Kobayashi
patent: 7443822 (2008-10-01), Lindskog et al.
patent: 7453851 (2008-11-01), Westphal et al.
patent: 7613179 (2009-11-01), Soukup
patent: 2001/0021189 (2001-09-01), Shiota
patent: 2003/0110288 (2003-06-01), Ramanujan et al.
patent: 2004/0008689 (2004-01-01), Westphal et al.
patent: 2004/0250114 (2004-12-01), Parekh et al.
patent: 2005/0013253 (2005-01-01), Lindskog et al.
patent: 2005/0111447 (2005-05-01), Soukup
Giblin Christopher J.
Hurley Paul T.
Rooney John G.
Waldvogel Marcel
Alexanian Vazken
Buchenhorner Michael J.
Cervetti David Garcia
International Business Machines - Corporation
LandOfFree
Identifying a distributed denial of service (DDOS) attack... does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Identifying a distributed denial of service (DDOS) attack..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Identifying a distributed denial of service (DDOS) attack... will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-2648104