发明名称 NETWORK ATTACK DETECTION METHOD, NETWORK ATTACK SOURCE IDENTIFICATION METHOD, NETWORK APPARATUS, NETWORK ATTACK DETECTING PROGRAM, AND NETWORK ATTACK SOURCE IDENTIFICATION PROGRAM
摘要 PROBLEM TO BE SOLVED: To provide a technology of detecting the occurrence of a network attack and identifying an attack source carrying out the network attack without stopping transfer of packets and independently of simple comparison between past traffic and present traffic . SOLUTION: A network attack detection method includes the steps of: performing control of a delay time from the reception of a packet to the transmission of the packet depending on a transmission destination when the packet returned from the transmission destination to a transmission source is received and transmitted; and judging whether or not an attack is applied to the transmission destination by making evaluation of variations in a packet amount transmitted to the transmission destination while relating the evaluation to the above control, and a network attack source identification method includes the steps of: performing control of a delay time from the reception of a packet to the transmission of the packet depending on the transmission source when the packet returned from the transmission destination to the transmission source is received and transmitted; and identifying the transmission source for applying an attack to the transmission destination by making evaluation of variations in a packet amount transmitted to the transmission destination for each transmission source while relating the evaluation to the above control. COPYRIGHT: (C)2005,JPO&NCIPI
申请公布号 JP2005229234(A) 申请公布日期 2005.08.25
申请号 JP20040034508 申请日期 2004.02.12
申请人 NIPPON TELEGR & TELEPH CORP <NTT> 发明人 SOEJIMA YUJI;FUJI HITOSHI;ERIC CHEN
分类号 H04L12/26;(IPC1-7):H04L12/26 主分类号 H04L12/26
代理机构 代理人
主权项
地址