白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

System and method for detecting surreptitious packet rerouting

專利號
US11178107B2
公開日期
2021-11-16
申請人
Michael Schloss
發(fā)明人
Michael Schloss
IPC分類
H04L29/06; H04L29/12; H04L12/823; H04L12/26
技術(shù)領(lǐng)域
ip,packet,network,packets,database,trip,router,may,arp,server
地域: MD MD Silver Spring

摘要

Systems and methods of detecting network traffic tampering by monitoring the network traffic for network packets that arrive outside of an allowable error band and rejecting those packets for which transit times are outside the control limits due to possible tampering are provided.

說明書

One or more databases that store detailed or summary packet transmission and round trip time measurements and statistics may be incorporated into embodiments disclosed herein. Such databases may store packet transmission time information associated with a pair of IP addresses (e.g. a transmission time between source IP address and destination IP address), along with statistical information of the normal variance of the transmission time to account for the standard “jitter” in these transmission times. Statistical and/or fixed value upper and lower limits, collectively the thresholds for the pair of addresses, may also be stored to indicate when packets have taken too short or too long a time in transit. For example, a limit of one standard deviation about the mean transmission time may be used as a statistical threshold. As another example, a lower limit of 1 ms, 2 ms, 3 ms, or any other suitable time period and an upper limit of 8 ms, 9 ms, 10 ms, or any other suitable time period may be defined as fixed thresholds. In some embodiments, fixed limits may be used based upon known or expected packet routings. For example, it may be known, based on prior network behavior measured and/or stored in a system as disclosed herein, generally will be responded to in under 1 second, while redirected packet traffic may take at minimum 1.5 seconds for a response because the traffic has been routed overseas. In this example, a fixed upper limit of 1.25 seconds may be used. Lower limits may be used to detect redirection to another server that is closer to the end user device than expected. Other information may be stored in the database, such as defined actions to be taken in the event of a suspected redirection.

權(quán)利要求

1
微信群二維碼
意見反饋