发明名称 SYSTEM AND METHODS FOR PROTECTING NETWORK SITES FROM DENIAL OF SERVICE ATTACKS
摘要 A system and method for routing a packet within a computer network between a source and target for a source having a permission to transmit packets to the target, which includes a plurality of first nodes associated with the target. A plurality of routers are provided which are configured to route packets to the target only from one of the plurality of first nodes. A plurality of second nodes are configured to store routing information for routing packets from the respective second node to the one of the first nodes for those packets having a representation of the target's network address. A plurality of third nodes are configured to accept a packet, to determine whether the source has permission to transmit the packet to the target, and if such permission is determined to exist, to route the packet to one of the plurality of second nodes by applying a hash function to the target's network address associated with the packet. The system prevents Denial of Service attacks by routing via consistent hashing and filtering.
申请公布号 WO03069828(A2) 申请公布日期 2003.08.21
申请号 WO2003US04535 申请日期 2003.02.14
申请人 THE TRUSTEES OF COLUMBIA UNIVERSITY IN THE CITY OFNEW YORK;KEROMYTIS, ANGELOS, D.;MISRA, VISHAL;RUBENSTEIN, DANIEL 发明人 KEROMYTIS, ANGELOS, D.;MISRA, VISHAL;RUBENSTEIN, DANIEL
分类号 H04L12/741;H04L29/06 主分类号 H04L12/741
代理机构 代理人
主权项
地址