×

Systems and methods for detecting and preventing flooding attacks in a network environment

  • US 9,049,220 B2
  • Filed: 10/30/2013
  • Issued: 06/02/2015
  • Est. Priority Date: 07/06/2005
  • Status: Active Grant
First Claim
Patent Images

1. A method for processing network traffic data comprising:

  • receiving a packet to initiate a new session from an Internet Protocol (IP) address;

    determining a concurrent session counter N for active concurrent sessions associated with the IP address;

    comparing the concurrent session counter N for active concurrent sessions associated with the IP address with a prescribed concurrent session threshold T;

    allowing the packet to pass when the concurrent session counter N for active concurrent sessions associated with the IP address is less than the prescribed concurrent session threshold T (N<

    T); and

    classifying the packet as possibly associated with a flooding attack when the concurrent session counter N for active concurrent sessions associated with the IP address is greater than or equal to the prescribed concurrent session threshold T (N>

    =T).

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×