Software defined network capable of detecting DDoS attacks and switch included in the same

US10637886B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10637886-B2
Application numberUS-201715692271-A
CountryUS
Kind codeB2
Filing dateAug 31, 2017
Priority dateOct 17, 2016
Publication dateApr 28, 2020
Grant dateApr 28, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Software defined network capable of detecting a DDoS attack and a switch included in the same are disclosed. The software defined network comprises a controller arranged on a control plane of the software defined network, and a plurality of switches arranged on a data plane of the software defined network. Here, each of the switches collects packets received through corresponding external network and detects a DDoS attack by using the collected packets.

First claim

Opening claim text (preview).

The invention claimed is: 1. A server for performing a software defined network (SDN) installed on the server and connected to at least one external network, the server comprising: a controller arranged on a control plane of the SDN; and a plurality of switches arranged on a data plane of the SDN, wherein each of the plurality of switches collects packets received through corresponding external network using a flow table, when an entropy of the packets collected by a first switch of the plurality of switches is smaller than a predetermined threshold value, the first switch determines that a DDoS attack is detected and transmits a warning message to the controller, and the controller analyzes every packet having an ID of the first switch transmitted the warning message in order to track the corresponding external network having an attacker, and the entropy is defined by the following equation: H = - ∑ 1 n ⁢ p i ⁢ log ⁢ ⁢ p i Where p i = x i n W = { ( x 1 , y 1 ) , ( x 2 , y 2 ) , … ⁢ } where, H, n, p i , x and y indicates respectively entropy, number of packets in a window W, probability of IP address of each of the packets in the window W, IP address of destination of the packets and time at which the packets are generated.

Assignees

Inventors

Classifications

  • Peripheral units, e.g. input or output ports · CPC title

  • Denial of Service · CPC title

  • Event detection, e.g. attack signature detection · CPC title

  • Traffic logging, e.g. anomaly detection · CPC title

  • Virtual switches · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10637886B2 cover?
Software defined network capable of detecting a DDoS attack and a switch included in the same are disclosed. The software defined network comprises a controller arranged on a control plane of the software defined network, and a plurality of switches arranged on a data plane of the software defined network. Here, each of the switches collects packets received through corresponding external netwo…
Who is the assignee on this patent?
Foundation Soongsil Univ Industry Cooperation
What technology area does this patent fall under?
Primary CPC classification H04L63/1458. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Apr 28 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).