Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Internal network IP address protection method based on ARP responce

A technology of IP address and intranet, applied in the direction of data exchange network, digital transmission system, electrical components, etc., can solve the problems of high price, inability to formulate security policies in advance, failure to comply with the audit system, etc., and achieve good blocking effect Effect

Active Publication Date: 2009-04-01
SHANGHAI BAOSIGHT SOFTWARE CO LTD
View PDF0 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] Through the professional network management software to trace the phenomenon of IP address theft and block the network, there are also some shortcomings: first, the principle of this type of software blocking is to continuously send spoofing packets or even broadcast packets to illegal network nodes, It has a certain impact on the efficiency of network use; second, this post-processing method does not meet the requirements of the current information security management norms, and cannot pre-establish a systematic security strategy, and there is no audit system that meets the audit norms; third , this kind of professional network management software is often expensive, and the cost of purchasing this software just to solve this problem is too high
[0009] Many new gateway switches provide the function of IP and switch port binding, but for the early model switch products, this function cannot be realized
Therefore, to achieve this management purpose, it is necessary to update the network equipment; and switch management is usually managed for a single device, especially for an environment with different brands of products, it is impossible to establish an overall security management center for unified management and auditing of policies maintenance of information

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Internal network IP address protection method based on ARP responce
  • Internal network IP address protection method based on ARP responce

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0028] Such as figure 1 As shown, a method for protecting an intranet IP address based on an ARP response,

[0029] Assuming the following simulation parameter table 1:

[0030] the host Mac address (the physical address of the network card) Remark host 1 11:11:11:11:11:11 Legal use of IP192.168.0.1 host 2 22:22:22:22:22:22 Illegal use of IP192.168.0.1 monitoring host 33:33:33:33:33:33 Host where the control program resides

[0031] Table I

[0032] Include the following steps:

[0033] 1) The monitoring host starts the network monitoring program and loads the IP address management strategy;

[0034] 2) When a host comes online, the host broadcasts a broadcast packet, which includes the hardware address of the host and the IP address it is ready to use, and starts timing, such as starting a timer, waiting for a response; the format of the broadcast packet As shown in Table 2 below:

[0035] the host source address si...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention provides an internal network IP address protection method based on ARP response, comprising the steps as follows: 1) a monitoring host computer starts a network monitoring program and loads an IP address management strategy; 2) when an online host computer appears on line, the online host computer sends a broadcast packet, meanwhile, timing is started and response is waited for; 3) after the monitoring host computer monitors the broadcast packet, the monitoring host computer judges whether the online host computer legally uses the IP address or not according to the IP address management strategy; if so, the monitoring is continued; if not, the step 4) is turned to; 4) the monitoring host computer sends a simulation response packet to the online host computer; 5) if the online host computer receives the response packet under a condition of no waiting overtime, the IP address fails to be started; if the online host computer waits overtime and receives no response packet, the online host computer starts the IP address successfully. The method can complete the interdiction only by one response packet under normal condition, the interdicted computer can not gain corresponding IP, the interdiction effect is extremely good, and additional network flow is not caused.

Description

technical field [0001] The invention belongs to the technical field of IP address resource management, and in particular relates to a method for protecting an intranet IP address. Background technique [0002] In the intranet management work of a unit, how to efficiently solve the problem of IP (Internet Protocol) address conflicts is often a very common but troublesome problem, especially for a large number of personal computers using Microsoft's Windows operating system. Irregularity of IP resources leads to misuse and misappropriation of IP resources, and in severe cases, it will affect the operation of the overall LAN and the operation of important servers. The unit usually formulates corresponding management systems to regulate the use of IP address resources, and allocates corresponding management and maintenance personnel. However, due to the lack of effective technical means, this kind of management work is often difficult to achieve the expected results, and the mai...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L12/24H04L12/26H04L29/06H04L29/12
Inventor 李刚
Owner SHANGHAI BAOSIGHT SOFTWARE CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products