发明名称 Apparatus, method and computer program product to reduce TCP flooding attacks while conserving wireless network bandwidth
摘要 A method for operating a firewall includes: in response to the firewall receiving a TCP SYN request packet that is sent towards a first node from a second node, said TCP SYN request packet comprising a sequence value ("seq"), sending to the second node a SYN|ACK packet, said SYN|ACK packet comprising a seq and an ack_sequence value ("ack_seq"), where ack_seq of the SYN|ACK packet is not equal to the TCP SYN request packet's seq+1; and in response to the firewall receiving a TCP RST packet from the second node, verifying that the seq in the TCP RST packet matches the ack_seq of the SYN|ACK packet and, if it does, designating the connection with the second node as an authorized connection.
申请公布号 US2006230129(A1) 申请公布日期 2006.10.12
申请号 US20060347335 申请日期 2006.02.03
申请人 NOKIA CORPORATION 发明人 SWAMI YOGESH P.;LE FRANCK
分类号 G06F15/173 主分类号 G06F15/173
代理机构 代理人
主权项
地址