Methods, systems and computer program products for obscuring traffic in a distributed system
First Claim
Patent Images
1. A method for obscuring real traffic in a distributed network, comprising:
- generating obscuring traffic associated with ones of a plurality of components coupled to the distributed network;
transmitting the generated obscuring traffic to the ones of the plurality of components so as to obscure the real traffic from intruders of the distributed network; and
maintaining knowledge of the obscuring traffic so as to allow differentiation between the generated obscuring traffic and the real traffic in the distributed network,wherein maintaining knowledge comprises transmitting update messages to the ones of the plurality of components so as to allow the components to distinguish between the generated obscuring traffic and the real traffic;
wherein generating the obscuring traffic comprises generating a list of messages to be included in dummy packets;
wherein transmitting the generated obscuring traffic comprises transmitting dummy packets including messages from the list; and
wherein the update messages includes a message identifier referring to a message in the list of messages, a source identifier, a destination identifier and a transmit time for the associated dummy packet.
2 Assignments
0 Petitions
Accused Products
Abstract
Methods for obscuring real traffic in a distributed network are provided. In particular, obscuring traffic associated with ones of a plurality of components is generated on the distributed network. The generated obscuring traffic is transmitted to the ones of the plurality of components so as to obscure the real traffic from intruders of the distributed network. Related systems and computer program products are also provided.
239 Citations
26 Claims
-
1. A method for obscuring real traffic in a distributed network, comprising:
-
generating obscuring traffic associated with ones of a plurality of components coupled to the distributed network; transmitting the generated obscuring traffic to the ones of the plurality of components so as to obscure the real traffic from intruders of the distributed network; and maintaining knowledge of the obscuring traffic so as to allow differentiation between the generated obscuring traffic and the real traffic in the distributed network, wherein maintaining knowledge comprises transmitting update messages to the ones of the plurality of components so as to allow the components to distinguish between the generated obscuring traffic and the real traffic; wherein generating the obscuring traffic comprises generating a list of messages to be included in dummy packets; wherein transmitting the generated obscuring traffic comprises transmitting dummy packets including messages from the list; and wherein the update messages includes a message identifier referring to a message in the list of messages, a source identifier, a destination identifier and a transmit time for the associated dummy packet. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8)
-
-
9. A system for obscuring real traffic in a distributed network, comprising:
-
a data processor; a deceiver circuit associated with the data processor and configured to generate obscuring traffic associated with ones of a plurality of components coupled to the distributed network; and a transmission circuit associated with the data processor and configured to transmit the generated obscuring traffic to the ones of the plurality of components so as to obscure the real traffic from intruders of the distributed network, wherein the deceiver circuit is further configured to maintain knowledge of the obscuring traffic so as to allow differentiation between the generated obscuring traffic and the real traffic in the distributed network and to maintain knowledge of the obscuring traffic by transmitting update messages to the ones of the plurality of components so as to allow the components to distinguish between the generated obscuring traffic and the real traffic, wherein the deceiver circuit is further configured to generate a list of messages to be included in dummy packets; wherein the transmission circuit is further configured to transmit dummy packets including messages from the list; and wherein the update messages includes a message identifier referring to a message in the list of messages, a source identifier, a destination identifier and a transmit time for the associated dummy packet. - View Dependent Claims (10, 11, 12, 13, 14, 15, 16)
-
-
17. A system for obscuring real traffic in a distributed network, comprising:
-
a data processor configured to; generate obscuring traffic associated with ones of a plurality of components coupled to the distributed network; transmit the generated obscuring traffic to the ones of the plurality of components so as to obscure the real traffic from intruders of the distributed network; and maintain knowledge of the obscuring traffic so as to allow differentiation between the generated obscuring traffic and the real traffic in the distributed network, wherein the data processor is further configured to transmit update messages to the ones of the plurality of components so as to allow the components to distinguish between the generated obscuring traffic and the real traffic; generate a list of messages to be included in dummy packets; and transmit dummy packets including messages from the list; and wherein the update messages includes a message identifier referring to a message in the list of messages, a source identifier, a destination identifier and a transmit time for the associated dummy packet. - View Dependent Claims (18)
-
-
19. An article of manufacture for obscuring real traffic in a distributed network, the article of manufacture comprising:
-
a computer readable medium having computer readable program code embodied therein, the computer readable program code comprising; computer readable program code configured to generate obscuring traffic associated with ones of a plurality of components coupled to the distributed network; computer readable program code configured to transmit the generated obscuring traffic to the ones of the plurality of components so as to obscure the real traffic from intruders of the distributed network; computer readable program code configured to maintain knowledge of the obscuring traffic so as to allow differentiation between the generated obscuring traffic and the real traffic in the distributed network; computer readable program code configured to transmit update messages to the ones of the plurality of components so as to allow the components to distinguish between the generated obscuring traffic and the real traffic; computer readable program code configured to generate a list of messages to be included in dummy packets; and computer readable program code configured to transmit dummy packets including messages from the list, wherein the update messages include a message identifier referring to a message in the list of messages, a source identifier, a destination identifier. - View Dependent Claims (20, 21, 22, 23, 24, 25, 26)
-
Specification