发明名称 Method and apparatus for cryptographic protection from denial of service attacks
摘要 A method and apparatus for protecting, from denial of service attacks, a device that provides particular services that consume substantial computational resources. A data packet is received that includes data for the particular services and a cryptographic tag. It is determined whether the data packet is legitimate based on the cryptographic tag without using the data for the particular services. If it is determined that the data packet is not legitimate, then the data is diverted from input to the particular services that process the data. These techniques use the cryptographic tag to provide strong data origin authentication without the heavy computational costs associated with providing full data integrity authentication in typical cryptographic services. Further, denial of service protection is conveniently implemented as a cryptographic service.
申请公布号 US7139679(B1) 申请公布日期 2006.11.21
申请号 US20020185159 申请日期 2002.06.27
申请人 CISCO TECHNOLOGY, INC. 发明人 MCGREW DAVID
分类号 G06F15/00 主分类号 G06F15/00
代理机构 代理人
主权项
地址