发明名称 COMPUTER SYSTEM, DEVICE AND METHOD FOR PREVENTING IDS DECEPTION AND STORAGE MEDIUM WITH ITS PROGRAM STORED THEREIN
摘要 PROBLEM TO BE SOLVED: To provide an IDS(intruder detection system) deception preventing mechanism capable of surely preventing deficiency that an IDS is deceived to miss an attack even when a data area is overlapped and a packet wherein data carried by the overlapped part is different is sent for the purpose of deceiving the IDS. SOLUTION: A fragmented IP packet comparison mechanism 104 retrieves whether or not a fragmented IP packet carrying data overlapping an IP packet extracted by a fragmented IP packet extraction mechanism 103 is registered in a past packet database 107, compares the pieces of data carried by the both packets to check whether or not both the pieces of data coincide, transmits a packet discard instruction signal (DT1) to a packet transfer control mechanism 105 if both the pieces of data are different, and instructs the packet transfer control mechanism 105 to suppress the transfering of a packet received by an external network interface 101.
申请公布号 JP2002300219(A) 申请公布日期 2002.10.11
申请号 JP20010102046 申请日期 2001.03.30
申请人 TOSHIBA CORP 发明人 TATEOKA MASAMICHI
分类号 G06F21/20;G06F13/00;G06F15/00;H04L12/22;H04L12/66;(IPC1-7):H04L12/66 主分类号 G06F21/20
代理机构 代理人
主权项
地址