发明名称 Preventing network denial of service attacks by early discard of out-of-order segments
摘要 A method of preventing network denial of service attacks by early discard of out-of-order segments comprises creating a reassembly queue for a connection between a first network node and a second network node, wherein the connection has been established based on a transport-layer network protocol, the reassembly queue having a size based on a buffer size of an input interface with which the connection is associated. As out-of-order data segments arrive on the connection, and before other processing of the segments, whether the reassembly queue is full is determined, and the out-of-order segments are discarded if the reassembly queue is full. The size of the reassembly queue is automatically changed in response to one or more changes in any of network conditions and device resources.
申请公布号 US2007180533(A1) 申请公布日期 2007.08.02
申请号 US20060345999 申请日期 2006.02.01
申请人 RAMAIAH ANANTHA;SOMASUNDARAM MAHADEV;SIVAKUMAR SENTHIL 发明人 RAMAIAH ANANTHA;SOMASUNDARAM MAHADEV;SIVAKUMAR SENTHIL
分类号 H04N7/16 主分类号 H04N7/16
代理机构 代理人
主权项
地址