发明名称 CONTROL DEVICE, COMMUNICATION SYSTEM, AND COMMUNICATION CONTROL METHOD
摘要 PROBLEM TO BE SOLVED: To discard an attack packet without a boundary router discarding a proper response packet at a time of performing reflection-type DoS countermeasures.SOLUTION: A communication system is provided with a control device 10 to control a boundary router 20. The control device 10 instructs a boundary router 20 which is a transmission source of attack notice to transfer a DNS query to the control device 10. Then, the control device 10 instructs each boundary router 20 other than the boundary router 20 to discard the DNS query. After that, when the control device 10 receives the DNS query (proper DNS query) from the boundary router 20 of the transmission source of attack notice, the control device 10 instructs each boundary router 20 other than the boundary router 20 to stop discarding the DNS query, and then the control device 10 transfers the received DNS query to a destination DNS server. After that, a boundary router 20 having received a response to the DNS query transfers the response to its destination.
申请公布号 JP2015029207(A) 申请公布日期 2015.02.12
申请号 JP20130157928 申请日期 2013.07.30
申请人 NIPPON TELEGR & TELEPH CORP <NTT> 发明人 SHUTO YUICHI;NAMITO KUNIO
分类号 H04L12/66;H04L12/70;H04L12/749 主分类号 H04L12/66
代理机构 代理人
主权项
地址