首页> 外国专利> SESSION INITIATION PROTOCOL (SIP) FIREWALL FOR IP MULTIMEDIA SUBSYSTEM (IMS) CORE TO DEFEND AGAINST SIP REGISTRATION- BASED DOS/ODDS ATTACKS

SESSION INITIATION PROTOCOL (SIP) FIREWALL FOR IP MULTIMEDIA SUBSYSTEM (IMS) CORE TO DEFEND AGAINST SIP REGISTRATION- BASED DOS/ODDS ATTACKS

机译:IP多媒体子系统(IMS)的会话初始化协议(SIP)防火墙,旨在防御基于SIP注册的DOS / ODDS攻击

摘要

A SIP firewall (110) defends an IMS network against against SIP registration -based DoS/DDoS attacks by issuing fake authentication challenges when suspiciously high registration traffic is present. The fake authentication challenges include a predictive nonce that is to be used in the challenge response, thus forcing users to be state-aware and to issue the SIP registration requests from valid IP address in order to successfully respond to the fake authentication challenges. Upon confirming an association between the challenge response and the fake authentication challenges, the firewall (110) opens a registration window to a protected node of the core network (116). In such manner, the firewall (110) opens a registration window to (unauthenticated) legitimate users while stopping DDoS mode of registrations (or at least making them extremely difficult and costly) without impacting or involving the protected node.
机译:当存在可疑的高注册流量时,SIP防火墙(110)通过发出伪造的认证挑战来防御IMS网络免受基于SIP注册的DoS / DDoS攻击。伪身份验证质询包括将在质询响应中使用的预测随机数,从而迫使用户具有状态意识,并从有效IP地址发出SIP注册请求,以便成功响应伪身份质询。在确认挑战响应与伪认证挑战之间的关联之后,防火墙(110)向核心网络(116)的受保护节点打开注册窗口。以这种方式,防火墙(110)向(未认证的)合法用户打开注册窗口,同时在不影响或涉及受保护节点的情况下停止DDoS注册模式(或至少使其极其困难和昂贵)。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号