METHOD FOR CONTROL OF DISTRIBUTED INFORMATION SYSTEM DATA STREAMS IN DDoS ATTACKS Russian patent published in 2019 - IPC G06F21/00 

Abstract RU 2684575 C1

FIELD: information technology.

SUBSTANCE: invention relates to a method of controlling data streams of a distributed information system during DDoS attacks. Method comprises setting switching table, detecting security events in received data stream, from which network addresses and port numbers are selected, for analyzing and making decision on data transmission permissibility associated with this event, wherein the verification data table is additionally set, when detecting security events in the received data stream, comparing it with the allowed flows in accordance with the switching table, in case of their mismatching, generating and analyzing the verification data, for which after selecting network addresses and port numbers from said stream in accordance with the verification data table, selecting checking data for allocated addresses and port numbers and transmitting them to the corresponding network node of the distributed information system, receiving response data for checking for legitimacy of data streams, their values are compared with the verification data pre-set in the table and if they coincide, it is sent to the destination, and if the mismatch occurs, an illegitimate data stream is blocked.

EFFECT: technical result is improved security of distributed information systems.

1 cl, 3 dwg

Similar patents RU2684575C1

Title Year Author Number
VOLUME DDOS ATTACKS PROTECTION SYSTEM AND METHOD 2022
  • Vakhrameev Leonid Aleksandrovich
  • Chernetsov Maksim Viktorovich
RU2791869C1
METHOD AND APPARATUS FOR CONTROLLING DISTRIBUTED INFORMATION SYSTEM DATA STREAMS 2013
  • Bukharin Vladimir Vladimirovich
  • Dvorjadkin Vladimir Vladimirovich
  • Pikalov Evgenij Dmitrievich
  • Romanjuk Oleg Viktorovich
  • Kulenich Andrej Il'Ich
RU2547628C2
METHOD OF PROTECTING SERVICE SERVER FROM DDOS ATTACKS 2021
  • Bukharin Vladimir Vladimirovich
  • Kurnosov Valerij Igorevich
RU2768536C1
METHOD AND APPARATUS FOR CONTROLLING DATA STREAMS OF A DISTRIBUTED INFORMATION SYSTEM USING IDENTIFIERS 2019
  • Bukharin Vladimir Vladimirovich
  • Kazachkin Anton Vladimirovich
  • Karajchev Sergej Yurevich
  • Shalaginov Vladimir Aleksandrovich
  • Pikalov Evgenij Dmitrievich
  • Stupakov Igor Georgievich
RU2710284C1
METHOD FOR PROTECTING COMPUTING NETWORKS FROM COMPUTER ATTACKS DIRECTED ON VARIOUS NODES AND INFORMATION RESOURCES 2021
  • Karaichev Sergei Iurevich
  • Bukharin Vladimir Vladimirovich
  • Nikitin Aleksandr Sergeevich
  • Pikalov Evgenii Dmitrievich
  • Vasechkin Evgenii Aleksandrovich
  • Stus Aleksandr Aleksandrovich
RU2782704C1
METHOD AND SYSTEM FOR PREVENTING MALICIOUS AUTOMATED ATTACKS 2021
  • Zolotarev Vitalii Gennad'Evich
  • Barabanov Anton Alekseevich
  • Leksunin Oleg Aleksandrovich
RU2768567C1
METHOD AND SYSTEM FOR PREVENTING MALICIOUS AUTOMATED ATTACKS 2020
  • Zolotarev Vitalii Gennad'Evich
  • Barabanov Anton Alekseevich
  • Leksunin Oleg Aleksandrovich
RU2740027C1
DDoS-ATTACKS DETECTION SYSTEM AND METHOD 2017
  • Khalimonenko Aleksandr Aleksandrovich
  • Tikhomirov Anton Vladimirovich
  • Konoplev Sergej Valerevich
RU2676021C1
SYSTEM AND METHOD OF REDUCING FALSE RESPONSES WHEN DETECTING NETWORK ATTACK 2011
  • Gudov Nikolaj Vladimirovich
  • Levashov Dmitrij Anatol'Evich
RU2480937C2
SYSTEM AND METHOD OF SETTING SECURITY SYSTEMS UNDER DDOS ATTACKS 2017
  • Khalimonenko Aleksandr Aleksandrovich
  • Tikhomirov Anton Vladimirovich
  • Konoplev Sergej Valerevich
RU2659735C1

RU 2 684 575 C1

Authors

Bukharin Vladimir Vladimirovich

Karajchev Sergej Yurevich

Kazachkin Anton Vladimirovich

Shalaginov Vladimir Aleksandrovich

Bogdanov Sergej Petrovich

Dates

2019-04-09Published

2018-05-14Filed