METHOD OF PROCESSING NETWORK TRAFFIC DATAGRAMS FOR PROTECTING INFORMATION COMPUTER SYSTEMS (VERSIONS) Russian patent published in 2013 - IPC G06F21/22 

Abstract RU 2472217 C1

FIELD: information technology.

SUBSTANCE: after allocating addresses of the sender SA and recipient SB, a transmission route mj of a network datagram Pi over an external network between secure computer networks is formed in form of a series of trusted nodes S1, S2, Svj, which is recorded in the "Option" field of the network datagram. A network datagram with the address of the recipient Sb and the address of the nearest trusted node SVj is formed in accordance with the transmission route mj of the network datagram Ps. The network datagram is encrypted using a cryptographic key K and the operations are repeated, starting with formation of a network datagram and its encryption to formation of a network datagram with the address of the recipient S1 and the address of the sender Sa. The formed secure network datagram D, which is received at a trusted node at the address of the recipient S1, is transmitted over the communication channel of the external network. The network datagram is decrypted using the cryptographic key K and values of the "Option" field are recorded into the memory of a gateway computer. A new value of the "Option" field is generated based on the address of the passed trusted node, which is recorded into the "Option" field. Values given in the "Option" field are compared with values of the transmission route of the secure network datagram defined at the recipient node and if the transmission route does not match, the network datagram is blocked.

EFFECT: more reliable detection of forgery of computer addresses of the sender and recipient of network datagrams.

3 cl, 7 dwg

Similar patents RU2472217C1

Title Year Author Number
METHOD OF PROCESSING NETWORK TRAFFIC DATAGRAMS FOR HIDING CORRESPONDING PAIRS OF SUBSCRIBERS OF INFORMATION-TELECOMMUNICATION SYSTEMS 2014
  • Zakalkin Pavel Vladimirovich
  • Starodubtsev Yurij Ivanovich
  • Sukhorukova Elena Valerevna
  • Yablokov Dmitrij Yurevich
  • Starodubtsev Gennadij Yurevich
RU2586840C1
METHOD FOR PROCESSING NETWORK TRAFFIC DATAGRAMS TO HIDE CORRESPONDING PAIRS OF SUBSCRIBERS OF INFORMATION AND TELECOMMUNICATION SYSTEMS 2020
  • Starodubtsev Iurii Ivanovich
  • Permiakov Aleksandr Sergeevich
  • Lepeshkin Oleg Mikhailovich
  • Vershennik Elena Valerevna
  • Kletskov Dmitrii Aleksandrovich
  • Ostroumov Oleg Aleksandrovich
  • Kazantsev Vladimir Vladimirovich
RU2763261C1
METHOD OF ROUTING TRAFFIC, HAVING PRIORITY CLASS IN COMMUNICATION NETWORK, INCLUDING TWO AND MORE OPERATORS 2016
  • Anisimov Vasilij Vyacheslavovich
  • Begaev Aleksej Nikolaevich
  • Popova Anzhelika Vyacheslavovna
  • Starodubtsev Yurij Ivanovich
  • Sukhorukova Elena Valerevna
  • Fedorov Vadim Gennadievich
RU2631144C1
METHOD FOR PROCESSING NETWORK TRAFFIC DATAGRAMS FOR DELIMITING ACCESS TO INFORMATIONAL AND COMPUTING RESOURCES OF COMPUTER NETWORKS 2006
  • Khadi Roman Akhmedovich
  • Lezhnev Aleksandr Vasil'Evich
  • Mamaj Vladimir Ivanovich
  • Selin Roman Nikolaevich
RU2314562C1
METHOD TO PROTECT INFORMATION COMPUTER NETWORKS AGAINST COMPUTER ATTACKS 2012
  • Balenko Ol'Ga Aleksandrovna
  • Bukharin Vladimir Vladimirovich
  • Kir'Janov Aleksandr Vladimirovich
  • Lipatnikov Valerij Alekseevich
  • Sanin Igor' Jur'Evich
  • Starodubtsev Jurij Ivanovich
RU2483348C1
METHOD OF PROTECTING INFORMATION COMPUTER NETWORKS FROM COMPUTER ATTACKS 2011
  • Andrianov Vladimir Igorevich
  • Bukharin Vladimir Vladimirovich
  • Kir'Janov Aleksandr Vladimirovich
  • Lipatnikov Valerij Alekseevich
  • Sanin Igor' Jur'Evich
  • Sakharov Dmitrij Vladimirovich
  • Starodubtsev Jurij Ivanovich
RU2472211C1
METHOD OF DETECTION OF COMPUTER ATTACKS IN INFORMATION AND TELECOMMUNICATION NETWORK 2013
  • Dement'Ev Vladislav Evgen'Evich
  • Vasjukov Dmitrij Jur'Evich
  • Kotsynjak Mikhail Antonovich
  • Kotsynjak Mikhail Mikhajlovich
  • Lauta Aleksandr Sergeevich
  • Lauta Oleg Sergeevich
RU2531878C1
METHOD OF PROTECTING COMPUTER NETWORKS FROM UNAUTHORISED SCANNING AND BLOCKING OF NETWORK SERVICES (VERSIONS) 2011
  • Avramenko Vladimir Semenovich
  • Kij Andrej Vjacheslavovich
  • Kozlenko Andrej Vladimirovich
  • Kopchak Jan Milanovich
RU2469390C1
METHOD OF PROTECTING COMPUTER NETWORK 2010
  • Grechishnikov Evgenij Vladimirovich
  • Milaja Irina Vladimirovna
  • Sanin Igor' Jur'Evich
  • Starodubtsev Jurij Ivanovich
RU2422892C1
METHOD FOR PROTECTING INFORMATION-COMPUTER NETWORKS AGAINST CYBER ATTACKS 2016
  • Bukharin Vladimir Vladimirovich
  • Karajchev Sergej Yurevich
  • Sysoev Pavel Anatolevich
  • Kazachkin Anton Vladimirovich
  • Maksakov Sergej Anatolevich
RU2622788C1

RU 2 472 217 C1

Authors

Andrianov Vladimir Igorevich

Balenko Ol'Ga Aleksandrovna

Bukharin Vladimir Vladimirovich

Dvorjadkin Vladimir Vladimirovich

Kir'Janov Aleksandr Vladimirovich

Starodubtsev Jurij Ivanovich

Truskov Stanislav Sergeevich

Dates

2013-01-10Published

2012-02-03Filed