发明名称 Detection method for abnormal traffic and packet relay apparatus
摘要 The present invention provides a technology including, for example, a packet relay processing section to carry out packet relay, a packet sampling section to carry out packet sampling, a flow statistics counting section to take statistics of each flow, and a flow statistics generating section to generate a NetFlow export datagram, wherein the flow statistics counting section collectively counts the number of the packets or bytes received per unit time when the number does not exceed a threshold value and individually counts the number for each flow when the number exceeds the threshold value, and thereby a flow of abnormal traffic which is suspected to be DoS attack is efficiently detected with small amounts of resources (mainly memories).
申请公布号 US7729271(B2) 申请公布日期 2010.06.01
申请号 US20060365500 申请日期 2006.03.02
申请人 ALAXALA NETWORKS CORPORATION 发明人 TSUCHIYA KAZUAKI;SATO HIROSHI
分类号 H04J1/16;H04L12/28 主分类号 H04J1/16
代理机构 代理人
主权项
地址