发明名称 METHOD AND APPARATUS FOR TRUST-BASED, FINE-GRAINED RATE LIMITING OF NETWORK REQUESTS
摘要 A method and apparatus for fine-grained, trust-based rate limiting of network requests distinguishes trusted network traffic from untrusted network traffic at the granularity of an individual user/machine combination, so that network traffic policing measures are readily implemented against untrusted and potentially hostile traffic without compromising service to trusted users. A server establishes a user/client pair as trusted by issuing a trust token to the client when successfully authenticating to the server for the first time. Subsequently, the client provides the trust token at login. At the server, rate policies apportion bandwidth according to type of traffic: network requests that include a valid trust token are granted highest priority. Rate policies further specify bandwidth restrictions imposed for untrusted network traffic. This scheme enables the server to throttle untrusted password-guessing requests from crackers without penalizing most friendly logins and only slightly penalizing the relatively few untrusted friendly logins.
申请公布号 WO2005050403(A2) 申请公布日期 2005.06.02
申请号 WO2004US38751 申请日期 2004.11.17
申请人 AMERICA ONLINE, INC. 发明人 TOOMEY, CHRISTOPHER, NEWELL
分类号 G06F;G06F21/00;H04K1/00;H04L9/32;H04L29/06 主分类号 G06F
代理机构 代理人
主权项
地址