Information security – Access control or authentication – Network
Reexamination Certificate
2003-05-19
2008-12-09
Chai, Longbit (Department: 2131)
Information security
Access control or authentication
Network
C726S023000, C726S024000, C726S025000, C726S026000, C726S027000, C713S151000, C713S152000, C713S153000, C713S154000, C713S168000, C713S169000, C713S170000, C713S171000, C380S229000, C380S230000, C380S231000, C380S232000, C380S233000
Reexamination Certificate
active
07464398
ABSTRACT:
Systems and methods of mitigating attacks, such as Denial of Service (DoS) attacks, in a communications network are presented. Source addresses of packets received at network devices are monitored in relation to known reliable addresses stored in a decision engine. If the source address, as stored in a source table, is known as being legitimate the packets are placed in a high priority queue for transmission at the highest rate. Packets with an unknown address are placed in a lower priority queue, the source address stored in a different source table, and the packet is serviced at a lower rate. Packets that become known to be legitimate are moved from the unknown table to the table from which high priority queues are serviced. In this way, an attacker that employs spoofing techniques is prevented from overtaxing network resources.
REFERENCES:
patent: 6167445 (2000-12-01), Gai et al.
patent: 2001/0052024 (2001-12-01), Devarakonda et al.
patent: 2003/0110393 (2003-06-01), Brock et al.
patent: 2003/0236999 (2003-12-01), Brustoloni
Williamson,Throttling Viruses: Restricting Propagation to defeat malicious mobile code, Jun. 17, 2003 (7 sheets).
T. Peng et al,Protection from Distributed Denial of Service Attack Using History-based Filtering, May 14, 2003 (6 sheets).
Floyd, S. et al,Random Early Detection Gateways for Congestion Avoidance, IEEE/ACM Transactions on Networking, V.1 No. 4, Aug. 1993, p. 397-413.
D'Souza Scott David
Kierstead Paul
Robert Jean-Marc
Alcatel Lucent
Chai Longbit
LandOfFree
Queuing methods for mitigation of packet spoofing does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Queuing methods for mitigation of packet spoofing, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Queuing methods for mitigation of packet spoofing will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-4034598