Patent · US Expired

System and method for preventing a spoofed denial of service attack in a networked computing environment

US6772334B1 · kind B1 · utility

159Cited by
9References
20Claims
0Family size

Assignee

Inventor

Key dates

Filing dateAug 31, 2000
Grant dateAug 3, 2004
Priority date
Expiry dateFeb 4, 2023

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L69/163
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A system and a method for preventing a spoofed denial of service attack in a networked computing environment is described. A hierarchical protocol stack is defined. The hierarchical protocol stack includes a plurality of communicatively interfaced protocol layers with at least one session-oriented protocol layer. A packet requesting a session with the session-oriented protocol layer is received from the networked computing environment. The request packet includes headers containing a source address of uncertain trustworthiness. The request packet is acknowledged by performing the following operations. First, a checksum is calculated from information included in the request packet headers. A request acknowledgement packet is generated. The request acknowledgement packet includes headers containing the checksum as a pseudo sequence number and the source address in the request packet headers as a destination address. Finally, the request acknowledgement packet is sent into the networked computing environment. An acknowledgement packet is received from the networked computing environment. The acknowledgement packet includes headers containing an acknowledgement number. The acknowledgem…

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.