- 专利标题: Infrastructure distributed denial of service protection
-
申请号: US16749883申请日: 2020-01-22
-
公开(公告)号: US11533334B2公开(公告)日: 2022-12-20
- 发明人: Dvir Shapira , Ehud Cohen , Tomer Bronshtein , Eyal Leshem , Alon Ludmer
- 申请人: Imperva, Inc.
- 申请人地址: US CA Redwood Shores
- 专利权人: Imperva, Inc.
- 当前专利权人: Imperva, Inc.
- 当前专利权人地址: US CA Redwood Shores
- 代理机构: Womble Bond Dickinson (US) LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/40 ; H04L45/12
摘要:
A method of providing infrastructure protection for a network that includes IP addresses as low as a single IP address. An end user sends traffic to an IP address of a projected server publicly available as an anycast address, and sends traffic to the protected network. The traffic is routed via one of several scrubbing centers using the public IP address as anycast address, and the scrubbing center provides infrastructure protection by scanning and filtering the incoming traffic for illegitimate data. After filtering, the legitimate traffic is encapsulated, e.g., via including virtual GRE tunnel information that includes a secret IP address known only to the scrubbing center and the protected server that receives the network traffic. The protected server decapsulates the network packet and responds back to the end user via the scrubbing network.
公开/授权文献
- US20200162508A1 INFRASTRUCTURE DISTRIBUTED DENIAL OF SERVICE PROTECTION 公开/授权日:2020-05-21
信息查询