ATE433249T1 - Verfahren und vorrichtung zur untersuchung von adressenbindeprotokollen zwischen schichten - Google Patents

Verfahren und vorrichtung zur untersuchung von adressenbindeprotokollen zwischen schichten

Info

Publication number
ATE433249T1
ATE433249T1 AT03772143T AT03772143T ATE433249T1 AT E433249 T1 ATE433249 T1 AT E433249T1 AT 03772143 T AT03772143 T AT 03772143T AT 03772143 T AT03772143 T AT 03772143T AT E433249 T1 ATE433249 T1 AT E433249T1
Authority
AT
Austria
Prior art keywords
packet
layers
address binding
binding protocols
inter
Prior art date
Application number
AT03772143T
Other languages
English (en)
Inventor
Marco E Foschiano
Justin Q Chen
Ambarish C Kenghe
Original Assignee
Cisco Tech Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Cisco Tech Inc filed Critical Cisco Tech Inc
Application granted granted Critical
Publication of ATE433249T1 publication Critical patent/ATE433249T1/de

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • H04L63/1466Active attacks involving interception, injection, modification, spoofing of data unit addresses, e.g. hijacking, packet injection or TCP sequence number attacks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/09Mapping addresses
    • H04L61/10Mapping addresses of different types

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Small-Scale Networks (AREA)
  • Basic Packing Technique (AREA)
AT03772143T 2002-07-31 2003-07-31 Verfahren und vorrichtung zur untersuchung von adressenbindeprotokollen zwischen schichten ATE433249T1 (de)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US10/210,190 US7346057B2 (en) 2002-07-31 2002-07-31 Method and apparatus for inter-layer binding inspection to prevent spoofing
PCT/US2003/023946 WO2004012418A1 (en) 2002-07-31 2003-07-31 Method and apparatus for inspecting inter-layer address binding protocols

Publications (1)

Publication Number Publication Date
ATE433249T1 true ATE433249T1 (de) 2009-06-15

Family

ID=31187235

Family Applications (1)

Application Number Title Priority Date Filing Date
AT03772143T ATE433249T1 (de) 2002-07-31 2003-07-31 Verfahren und vorrichtung zur untersuchung von adressenbindeprotokollen zwischen schichten

Country Status (8)

Country Link
US (2) US7346057B2 (de)
EP (1) EP1540921B1 (de)
CN (1) CN1672387A (de)
AT (1) ATE433249T1 (de)
AU (2) AU2003257075A1 (de)
CA (1) CA2494052C (de)
DE (1) DE60327863D1 (de)
WO (1) WO2004012418A1 (de)

Families Citing this family (23)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB2397204B (en) * 2002-09-06 2005-03-30 O2Micro Inc VPN and firewall integrated system
US20100138909A1 (en) * 2002-09-06 2010-06-03 O2Micro, Inc. Vpn and firewall integrated system
FI114840B (fi) * 2002-09-12 2004-12-31 Nokia Corp Yhteysvastuun vaihtaminen
JP4174392B2 (ja) * 2003-08-28 2008-10-29 日本電気株式会社 ネットワークへの不正接続防止システム、及びネットワークへの不正接続防止装置
WO2005043827A1 (ja) * 2003-10-30 2005-05-12 Tokyo Electron Limited 端末装置、端末装置の制御方法、ネットワークシステム及びその制御方法、プログラム並びに記録媒体
US7551559B1 (en) 2004-10-22 2009-06-23 Cisco Technology, Inc. System and method for performing security actions for inter-layer binding protocol traffic
US7533258B2 (en) * 2005-01-07 2009-05-12 Cisco Technology, Inc. Using a network-service credential for access control
US7500269B2 (en) 2005-01-07 2009-03-03 Cisco Technology, Inc. Remote access to local content using transcryption of digital rights management schemes
KR100528171B1 (ko) * 2005-04-06 2005-11-15 스콥정보통신 주식회사 네트워크 상에서 특정 아이피 주소 또는 특정 장비를보호/차단하기 위한 아이피 관리 방법 및 장치
US8804729B1 (en) * 2006-02-16 2014-08-12 Marvell Israel (M.I.S.L.) Ltd. IPv4, IPv6, and ARP spoofing protection method
US7730181B2 (en) * 2006-04-25 2010-06-01 Cisco Technology, Inc. System and method for providing security backup services to a home network
US7653063B2 (en) * 2007-01-05 2010-01-26 Cisco Technology, Inc. Source address binding check
CN101345743B (zh) * 2007-07-09 2011-12-28 福建星网锐捷网络有限公司 防止利用地址解析协议进行网络攻击的方法及其系统
US8134922B2 (en) * 2008-09-12 2012-03-13 Cisco Technology, Inc. Reducing flooding in a bridged network
WO2010041788A1 (en) * 2008-10-10 2010-04-15 Plustech Inc. A method for neutralizing the arp spoofing attack by using counterfeit mac addresses
US8578488B2 (en) * 2008-10-10 2013-11-05 Plustech Inc. Method for neutralizing the ARP spoofing attack by using counterfeit MAC addresses
JP5876788B2 (ja) * 2012-08-21 2016-03-02 株式会社Pfu 通信遮断装置、通信遮断方法、及びプログラム
CN104079424B (zh) * 2013-03-29 2017-07-11 国际商业机器公司 用于非对称链路聚合的装置和方法
CN103561001A (zh) * 2013-10-21 2014-02-05 华为技术有限公司 一种安全防护方法及路由设备
TWI599204B (zh) * 2016-01-28 2017-09-11 神雲科技股份有限公司 伺服器的封包過濾方法及基板管理控制器
US10862910B2 (en) * 2018-03-08 2020-12-08 Cisco Technology, Inc. Predicting and mitigating layer-2 anomalies and instabilities
US12506770B2 (en) 2023-08-07 2025-12-23 Bank Of America Corporation Monitoring and preventing spoofing, tampering, and denial of service attacks on cloud containers
US12563065B2 (en) 2023-08-07 2026-02-24 Bank Of America Corporation Monitoring and preventing spoofing, tampering, and denial of service attacks on cloud containers

Family Cites Families (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5757924A (en) * 1995-09-18 1998-05-26 Digital Secured Networks Techolognies, Inc. Network security device which performs MAC address translation without affecting the IP address
US6108786A (en) * 1997-04-25 2000-08-22 Intel Corporation Monitor network bindings for computer security
US6738814B1 (en) * 1998-03-18 2004-05-18 Cisco Technology, Inc. Method for blocking denial of service and address spoofing attacks on a private network
US6804778B1 (en) 1999-04-15 2004-10-12 Gilian Technologies, Ltd. Data quality assurance
AU6090400A (en) 1999-07-15 2001-02-05 Sun Microsystems, Inc. Secure network switch
US6363489B1 (en) * 1999-11-29 2002-03-26 Forescout Technologies Inc. Method for automatic intrusion detection and deflection in a network
US6775657B1 (en) * 1999-12-22 2004-08-10 Cisco Technology, Inc. Multilayered intrusion detection system and method
US7380272B2 (en) * 2000-05-17 2008-05-27 Deep Nines Incorporated System and method for detecting and eliminating IP spoofing in a data transmission network
US6944673B2 (en) 2000-09-08 2005-09-13 The Regents Of The University Of Michigan Method and system for profiling network flows at a measurement point within a computer network
CN1129272C (zh) 2000-12-15 2003-11-26 华为技术有限公司 以太网接入网中的虚拟局域网接入方法
US6745333B1 (en) * 2002-01-31 2004-06-01 3Com Corporation Method for detecting unauthorized network access by having a NIC monitor for packets purporting to be from itself
US7017186B2 (en) * 2002-07-30 2006-03-21 Steelcloud, Inc. Intrusion detection system using self-organizing clusters

Also Published As

Publication number Publication date
US7346057B2 (en) 2008-03-18
DE60327863D1 (de) 2009-07-16
AU2009200102A1 (en) 2009-02-05
EP1540921A1 (de) 2005-06-15
CA2494052C (en) 2011-02-15
US20040022253A1 (en) 2004-02-05
EP1540921B1 (de) 2009-06-03
US7830898B2 (en) 2010-11-09
US20080151887A1 (en) 2008-06-26
WO2004012418A1 (en) 2004-02-05
CA2494052A1 (en) 2004-02-05
AU2003257075A1 (en) 2004-02-16
CN1672387A (zh) 2005-09-21

Similar Documents

Publication Publication Date Title
ATE433249T1 (de) Verfahren und vorrichtung zur untersuchung von adressenbindeprotokollen zwischen schichten
ATE410875T1 (de) Verfahren zur zuordnung einer ip-adresse zu einem gerät
DE60235870D1 (de) Verfahren und vorrichtung zur automatischen bestimmung eines geeigneten übertragungsverfahrens in einem netzwerk
ATE368335T1 (de) Verfahren und vorrichtung zur messung von dienstgüte (qos)
AU2001283171A1 (en) Method and apparatus for monitoring and processing voice over internet protocol packets
WO2003084137A3 (en) Methods for identifying network traffic flows
ATE498970T1 (de) Netzwerkkonfigurationsauswertung
FI20010365L (fi) Menetelmä sijainnin määrityksessä, sijainninmääritysjärjestelmä ja elektroniikkalaite
ATE523023T1 (de) Verfahren, kommunikationssystem und vorrichtung für arp paketverarbeitung
DE60236293D1 (de) Verfahren und vorrichtung für gleichrangigen diensten
ATE446642T1 (de) Verfahren und vorrichtung zur verhinderung des fälschens von netzwerkadressen
WO2003073724A3 (en) System and method for detecting and eliminating ip spoofing in a data transmission network
ATE369691T1 (de) Intelligente integrierte netzwerksicherheitseinrichtung
DE60326664D1 (de) Vorrichtung zur Durchführung von Netzwerkverarbeitungsfunktionen
ATE546920T1 (de) Verfahren und policy-server zum bereitstellen von dienstgüte
ATE465580T1 (de) Verfahren und vorrichtung zur überwachung der bandbreitenbenutzung eines heimnetzwerks
ATE553569T1 (de) Netzwerkeinrichtungsverwaltungs verfahren; netzwerkeinrichtungsverwaltungsprogramm und netzwerksteuervorrichtung
AU2002309882A1 (en) System, apparatus and method for dynamically mapping virtual signaling system 7 circuit identification codes for use between voip gateways on ip-based networks
DE60109060D1 (de) Interkommunikationsvorprozessor
DE60302021D1 (de) Gerät, System und Verfahren zur Mehrwege-Kommunikation ermöglicht durch Adressen-Meldung
AU2002324485A1 (en) System, method, and apparatus for measuring application performance management
ATE394848T1 (de) Verfahren und netzwerkelemente zur inhaltsduplizierung in paketnetzwerken
AU2002358031A1 (en) METHOD FOR CONNECTING A HAVi CLUSTER AND AN IP CLUSTER USING A BRIDGE DEVICE, AND ASSOCIATED BRIDGE DEVICE
DE60332800D1 (de) Verfahren und Gerät zur Verbindung eines Gerätes mit einem drahtlosen Netzwerk
DE602006017203D1 (de) Hostidentitätsprotokollverfahren und gerät

Legal Events

Date Code Title Description
RER Ceased as to paragraph 5 lit. 3 law introducing patent treaties