白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

System and method for detecting surreptitious packet rerouting

專利號
US11178107B2
公開日期
2021-11-16
申請人
Michael Schloss
發(fā)明人
Michael Schloss
IPC分類
H04L29/06; H04L29/12; H04L12/823; H04L12/26
技術領域
ip,packet,network,packets,database,trip,router,may,arp,server
地域: MD MD Silver Spring

摘要

Systems and methods of detecting network traffic tampering by monitoring the network traffic for network packets that arrive outside of an allowable error band and rejecting those packets for which transit times are outside the control limits due to possible tampering are provided.

說明書

End user devices (e.g. 100a, 100b, 100c, 100d, etc.), IP-based network connection point routers (e.g. 120a, 120b, 120c), and routers in the IP-based network cloud, can be configured for use in accordance with embodiments disclosed herein to identify network traffic flowing between an end user device and an IP-based network server. Using the systems and techniques disclosed herein, some or all of the devices may establish a historical average packet round trip time from the network packets sent by the end user device to the IP-based network server and the corresponding response packets. Sent packets may be matched to packets received, with the match being made using fields in the TCP/IP packets. For example, TCP/IP sequence numbers or other information within the TCP/IP packets themselves may be used to match sent and received packets. Alternatively or in addition, the time difference between when a packet was sent and the corresponding response may be calculated and used to identify corresponding packets.

Alternatively or in addition, packet responses may be matched in an application program and round-trip times computed at the application layer instead of within the IP stack such as is performed by IP protocols such as the network time protocol. However, in some configurations the network time protocol may not be able to detect BGP hijacking because the packet flow to and from the time server does not follow the same routing as traffic to other IP-based network servers.

權利要求

1
微信群二維碼
意見反饋