摘要 |
PROBLEM TO BE SOLVED: To provide a technique for protecting against denial-of-service attacks in a way that reduces the burden on a server in dealing with Dos or DDoS attacks made against processes of layer-5 or more. SOLUTION: A server (SIP server 4) under a DoS or DDoS attack detects the DoS or DDoS attack itself, maps detection information onto information about layer-4 and less, and reports the detection of the attack including the mapped information about layer-4 and less to an OpS6 that corresponds to the server. On receiving this report, based on the mapped information about layer-4 and less the OpS6 sets filtering for edge routers 1, 2 located on the edge of a network 3. COPYRIGHT: (C)2006,JPO&NCIPI
|