Patent · US Active

Methods and apparatus for denial of service resistant policing of packets

US9154460B1 · kind B1 · utility

1Cited by
5References
15Claims
0Family size

Assignee

Inventors

Key dates

Filing dateFeb 12, 2014
Grant dateOct 6, 2015
Priority date
Expiry dateFeb 12, 2034

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1458
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Methods and apparatus for supporting secure packet communications, e.g., sRTP/sRTCP, which are resistant to denial of service attacks are described. A received packet is identified to correspond to a particular stream being received, the stream having a current expected set of packet sequence numbers, e.g., a current window including a next expected packet sequence number and at least one packet sequence number in the expected packet window on each side of the expected packet sequence number. Unencrypted information from the received packet, e.g., a received packet sequence number, is used to determine at least one of: to drop the received packet, or to assign the packet to one of a plurality of policing levels. If the packet passes policing at its assigned policing level, the packet may undergo authentication and decryption to determine if it is a valid packet.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.