发明名称 APPARATUS, METHOD AND PROGRAM FOR DETECTING ABNORMAL TRAFFIC
摘要 <p><P>PROBLEM TO BE SOLVED: To accurately and surely detect a DoS attack on an SIP server or on an SIP client. <P>SOLUTION: An abnormal traffic detecting apparatus 20 acquires status information of SIP transaction processing from the header of an SIP packet, monitors the SIP packet to be processed by the SIP transaction processing and detects an abnormal packet from monitored SIP packets and acquired status information. More specifically, when an unintended SIP packet is received in a state of specific transaction processing, or when the number of times of resending an SIP packet exceeds a predetermined threshold in a state of the same transaction processing, the abnormal traffic detecting apparatus 20 detects the SIP packet as an abnormal packet. <P>COPYRIGHT: (C)2008,JPO&INPIT</p>
申请公布号 JP2007267151(A) 申请公布日期 2007.10.11
申请号 JP20060090850 申请日期 2006.03.29
申请人 NIPPON TELEGR & TELEPH CORP <NTT> 发明人 ERIC CHEN
分类号 H04M3/00;H04L12/66;H04L12/70 主分类号 H04M3/00
代理机构 代理人
主权项
地址