Method for suppressing malicious NA messages in DAD process suitable for SEND protocol
The invention relates to a method for suppressing malicious NA messages in a DAD process suitable for an SEND protocol, including a controller, a switch, and a host and comprising the steps as follows: an MSDAD-Request message, an MSDAD-Reply response message, and an MSDAD-Feedback message are added...
Gespeichert in:
Hauptverfasser: | , , |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The invention relates to a method for suppressing malicious NA messages in a DAD process suitable for an SEND protocol, including a controller, a switch, and a host and comprising the steps as follows: an MSDAD-Request message, an MSDAD-Reply response message, and an MSDAD-Feedback message are added; the controller adds a feedback module containing a listener table, a lookup table, and a feedbacktable; the controller sends a flow table to the switch, monitors the NS and NA messages of the DAD process, and receives the MSDAD-Request message and the MSDAD-Reply response message; the host performs address authenticity calculation, and sends a feedback message to the switch; and the switch sends a message to the controller. The invention utilizes the computing power of the host to feed back the attack behavior of the malicious node to the controller, and the controller may suppress the source of the malicious attack according to the feedback result, thereby avoiding the verification of meaningless CGA parameters |
---|