发明名称 DDoS attack detection and defense apparatus and method using packet data
摘要 A Distributed Denial of Service (DDoS) attack detection and defense apparatus and method are provided. The Distributed Denial of Service (DDoS) attack detection and defense apparatus includes: a flow information collection unit to collect, from one or more input packets with an IP address of an attack target system as a destination IP address, flow information including source IP addresses of the input packets and packet counts of one or more flows that are classified for each of the source IP addresses and each of different protocol types; an inspection unit to calculate packets per second (PPS) values of the flows based on the packet counts; and a response unit to determine a DDoS attack response method for each of the flows based on the PPS value and the protocol type of a corresponding flow and to process the corresponding flow using the determined DDoS attack response method.
申请公布号 US8634717(B2) 申请公布日期 2014.01.21
申请号 US201113314741 申请日期 2011.12.08
申请人 KANG KYOUNG-SOON;KIM HAK-SUH;AHN BYUNG-JUN;ELECTRONICS AND TELECOMMUNICATIIONS RESEARCH INSTITUTE 发明人 KANG KYOUNG-SOON;KIM HAK-SUH;AHN BYUNG-JUN
分类号 H04B10/00 主分类号 H04B10/00
代理机构 代理人
主权项
地址