Syn Flood protection method, device, cleaning equipment and medium
A technology for cleaning equipment and messages, which is applied in the direction of error prevention, error prevention/detection using return channels, digital transmission systems, etc., and can solve problems such as business interruption, affecting user experience, and high pressure on cleaning equipment protection performance.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0049] image 3 A schematic diagram of the protection process of a SYN Flood attack provided by the embodiment of the present invention, the process includes the following steps:
[0050] S101: Receive a SYN message sent by a terminal, and determine whether information about the terminal is recorded in a trust list or a restriction list saved by itself.
[0051] The SYN Flood attack protection method provided by the embodiment of the present invention is applied to a cleaning device. The cleaning device stores a trust list and a restriction list, and terminal information is recorded in the trust list and the restriction list. The cleaning device can be a product that resists SYN Flood attacks, such as: NSFOCUS Anti-DDoS System (NSFOCUS ADS) of NSFOCUS Technology, or a gateway with protection functions. In addition, the The terminal can be a device such as a tablet computer or a PC.
[0052] The cleaning device can receive the SYN message sent by the terminal based on the TCP...
Embodiment 2
[0066] On the basis of the foregoing embodiments, in the embodiments of the present invention, the sending sequence number and the confirmation sequence number in the ACK detection message satisfying a specific condition are random values.
[0067] The serial number of the message transmitted between the terminal and the server is related. For example, the serial number of the SYN message sent by the terminal to the server is the initial serial number. After receiving the SYN message, the server sends the serial number of the SYN+ACK message to the terminal. Add 1 to the initial sequence number automatically. In order to ensure that the ACK detection message sent by the cleaning device to the terminal does not affect the message transmitted between the terminal and the server, the ACK detection message constructed by the cleaning device meets specific conditions, that is, the sending sequence number and confirmation sequence number settings in the ACK detection message It is a r...
Embodiment 3
[0069] Since the protection method provided in this case is aimed at SYN Flood attacks, before the protection, it can be judged whether there is a SYN Flood attack. If it is judged that there is no SYN Flood attack, no protection is required. Protect against SYN Flood attacks. In order to save the protection resources of the cleaning equipment, on the basis of the above-mentioned embodiments, in the embodiments of the present invention, before the judging whether the information of the terminal is recorded in the trust list or restriction list saved by itself, the method further includes :
[0070] Acquiring the current traffic of the server, judging whether the current traffic is greater than a preset traffic threshold, if so, determining that there is a SYN Flood attack, and performing subsequent steps.
[0071] After the cleaning device receives the SYN message sent by the terminal, before judging whether the terminal information is recorded in the trust list or restrictio...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com