发明名称 Controlling ARP packet traffic to enhance network security and scalability in TCP/IP networks
摘要 A method of preventing ARP broadcast flooding of subscriber access links where an ARP packet is received at a subscriber network edge device and the source and destination information contained within the ARP packet is compared to address lease information for subscribers of a subscriber network. If the destination information obtained from the ARP packet is not associated with an address lease assigned to one of the subscribers, the network device only broadcasts the ARP packet to network uplinks. The method further includes preventing subscribers of a subscriber network from spoofing ARP responses by responding to an ARP request packet with an ARP response packet containing false information. The ARP response packet information is compared to address lease information for the transmitting subscriber. If the source information obtained from the ARP response packet corresponds to address lease information of the transmitting subscriber the ARP response packet is accordingly forwarded.
申请公布号 US7596693(B1) 申请公布日期 2009.09.29
申请号 US20060591620 申请日期 2006.10.31
申请人 OCCAM NETWORKS 发明人 CAVES EVAN JOHN;ALTARAC HENRI;ILGUN KORAL
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址