×

Systems and methods for detecting and preventing flooding attacks in a network environment

  • US 9,065,847 B2
  • Filed: 05/20/2014
  • Issued: 06/23/2015
  • Est. Priority Date: 07/06/2005
  • Status: Active Grant
First Claim
Patent Images

1. A method for processing network traffic content performed on a network switching device, comprising:

  • receiving, via a network interface of the network switching device, a packet associated with a new network traffic session;

    identifying, on the network switching device, one or more Internet Protocol (IP) addresses associated with the new network traffic session;

    determining, on the network switching device, a number of concurrent sessions associated with at least one of the one or more IP address associated with the new network traffic session; and

    when the determined number of concurrent sessions is greater than a concurrent IP address session threshold, performing flooding attack mitigation processing at least in part on the network switching device, wherein the concurrent IP address session threshold is learned based on processing of stored packet history log data that determines the concurrent IP address session threshold.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×