FIELD: information technology.
SUBSTANCE: invention relates to a method of controlling data streams of a distributed information system during DDoS attacks. Method comprises setting switching table, detecting security events in received data stream, from which network addresses and port numbers are selected, for analyzing and making decision on data transmission permissibility associated with this event, wherein the verification data table is additionally set, when detecting security events in the received data stream, comparing it with the allowed flows in accordance with the switching table, in case of their mismatching, generating and analyzing the verification data, for which after selecting network addresses and port numbers from said stream in accordance with the verification data table, selecting checking data for allocated addresses and port numbers and transmitting them to the corresponding network node of the distributed information system, receiving response data for checking for legitimacy of data streams, their values are compared with the verification data pre-set in the table and if they coincide, it is sent to the destination, and if the mismatch occurs, an illegitimate data stream is blocked.
EFFECT: technical result is improved security of distributed information systems.
1 cl, 3 dwg
Title | Year | Author | Number |
---|---|---|---|
VOLUME DDOS ATTACKS PROTECTION SYSTEM AND METHOD | 2022 |
|
RU2791869C1 |
METHOD AND APPARATUS FOR CONTROLLING DISTRIBUTED INFORMATION SYSTEM DATA STREAMS | 2013 |
|
RU2547628C2 |
METHOD OF PROTECTING SERVICE SERVER FROM DDOS ATTACKS | 2021 |
|
RU2768536C1 |
METHOD AND APPARATUS FOR CONTROLLING DATA STREAMS OF A DISTRIBUTED INFORMATION SYSTEM USING IDENTIFIERS | 2019 |
|
RU2710284C1 |
METHOD FOR PROTECTING COMPUTING NETWORKS FROM COMPUTER ATTACKS DIRECTED ON VARIOUS NODES AND INFORMATION RESOURCES | 2021 |
|
RU2782704C1 |
METHOD AND SYSTEM FOR PREVENTING MALICIOUS AUTOMATED ATTACKS | 2021 |
|
RU2768567C1 |
METHOD AND SYSTEM FOR PREVENTING MALICIOUS AUTOMATED ATTACKS | 2020 |
|
RU2740027C1 |
DDoS-ATTACKS DETECTION SYSTEM AND METHOD | 2017 |
|
RU2676021C1 |
SYSTEM AND METHOD OF REDUCING FALSE RESPONSES WHEN DETECTING NETWORK ATTACK | 2011 |
|
RU2480937C2 |
SYSTEM AND METHOD OF SETTING SECURITY SYSTEMS UNDER DDOS ATTACKS | 2017 |
|
RU2659735C1 |
Authors
Dates
2019-04-09—Published
2018-05-14—Filed