SYSTEM AND METHOD TO MITIGATE DISTRIBUTED DENIAL OF SERVICE (DDoS) ATTACKS
US-2024259421-A1 · Aug 1, 2024 · US
US2018115581A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2018115581-A1 |
| Application number | US-201715692194-A |
| Country | US |
| Kind code | A1 |
| Filing date | Aug 31, 2017 |
| Priority date | Oct 25, 2016 |
| Publication date | Apr 26, 2018 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Software defined network (SDN) for preventing an attack on a host tracking service and a controller included in the same are disclosed. The SDN comprises a plurality of switches arranged on a data plane of the SDN, and connected to at least one host, and a controller arranged on a control plane of the SDN, configured to control the switches and perform a host tracking service for recognizing location of at least one host connected to the switches. Here, a switch A of the switches receives a packet from a host A connected to the switch A and transmits an address information message of the host A to the controller based on the packet. The controller determines whether or not the host A is a host for performing an attack on the host tracking service, by using the address information message and previous address information of the host.
Opening claim text (preview).
1 . A software defined network comprising: a plurality of switches arranged on a data plane of the software defined network, and connected to at least one host; and a controller arranged on a control plane of the software defined network, configured to control the switches and perform a host tracking service for recognizing location of at least one host connected to the switches, wherein a switch A of the switches receives a packet from a host A connected to the switch A and transmits an address information message of the host A to the controller based on the packet, and the controller determines whether or not the host A is a host for performing an attack on the host tracking service, by using the address information message and previous address information of the host A stored in the controller. 2 . The software defined network of claim 1 , wherein the received address information message includes at least one of IP address of the host A and port address of the switch A connected to the host A, and the controller stores a host profile, and wherein the host profile includes at least one of IP address of each of the hosts connected to the switches and port address of a switch connected to the host. 3 . The software defined network of claim 2 , wherein the controller transmits a check message to a switch B connected to a host B when the host B having the same IP address as the host A included in the address information message is stored in the host profile, and determines that the host A pretends to be the host B when an ACK message corresponding to the check message is received from the host B through the switch B. 4 . The software defined network of claim 3 , wherein the check message is a message for determining availability of the host B. 5 . A controller arranged on a control plane of a software defined network including the control plane and a data plane and for performing a host tracking service, the controller comprising: a port manager configured to receive an address information message of a host A connected to a switch A from the switch A of plural switches which are arranged on the data plane and connected to at least on host, extract IP address of the host A in the address information message and port address of the host A for the switch A, and search port address of a switch B connected to a host B when the host B having the same IP address as the host A is stored in a host profile, a host probing configured to transmit a check message to the switch B connected to the host B; and a host checker configured to determine that the host A pretends to be the host B, when an ACK message corresponding to the check message is received from the host B through the switch B.
Packet rate · CPC title
Active monitoring, e.g. heartbeat, ping or trace-route · CPC title
by checking connectivity · CPC title
Event detection, e.g. attack signature detection · CPC title
Denial of Service · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.