System and method for creating BGP route-based network traffic profiles to detect spoofed traffic
An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by...
Gespeichert in:
Hauptverfasser: | , , , , |
---|---|
Format: | Patent |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
container_end_page | |
---|---|
container_issue | |
container_start_page | |
container_title | |
container_volume | |
creator | GHOSH ABHRAJIT VAIDYANATHAN RAVICHANDER YAMADA AKIRA SAWAYA YUKIKO KUBOTA AYUMU |
description | An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS. |
format | Patent |
fullrecord | <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_US8938804B2</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>US8938804B2</sourcerecordid><originalsourceid>FETCH-epo_espacenet_US8938804B23</originalsourceid><addsrcrecordid>eNqNzDsOwjAQRVE3FAjYw2wgEiIUpg3iUyIF6miwnyEiyVj2IMTuSZEFUN3m6M4N19-s6IkHTz30KZ6CJHIJrO3woOp0oSRvRXHnDE8D9CPpRZo4hNZRTBLaDplUyEPhlHIUCSOdyNLMAncZq6kLQ8fDdX8uEKVBjuwwTptbbXeltetttSn_ID9jcz1D</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><source>esp@cenet</source><creator>GHOSH ABHRAJIT ; VAIDYANATHAN RAVICHANDER ; YAMADA AKIRA ; SAWAYA YUKIKO ; KUBOTA AYUMU</creator><creatorcontrib>GHOSH ABHRAJIT ; VAIDYANATHAN RAVICHANDER ; YAMADA AKIRA ; SAWAYA YUKIKO ; KUBOTA AYUMU</creatorcontrib><description>An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS.</description><language>eng</language><subject>ELECTRIC COMMUNICATION TECHNIQUE ; ELECTRICITY ; TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><creationdate>2015</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&date=20150120&DB=EPODOC&CC=US&NR=8938804B2$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,780,885,25562,76317</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&date=20150120&DB=EPODOC&CC=US&NR=8938804B2$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>GHOSH ABHRAJIT</creatorcontrib><creatorcontrib>VAIDYANATHAN RAVICHANDER</creatorcontrib><creatorcontrib>YAMADA AKIRA</creatorcontrib><creatorcontrib>SAWAYA YUKIKO</creatorcontrib><creatorcontrib>KUBOTA AYUMU</creatorcontrib><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><description>An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS.</description><subject>ELECTRIC COMMUNICATION TECHNIQUE</subject><subject>ELECTRICITY</subject><subject>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2015</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNqNzDsOwjAQRVE3FAjYw2wgEiIUpg3iUyIF6miwnyEiyVj2IMTuSZEFUN3m6M4N19-s6IkHTz30KZ6CJHIJrO3woOp0oSRvRXHnDE8D9CPpRZo4hNZRTBLaDplUyEPhlHIUCSOdyNLMAncZq6kLQ8fDdX8uEKVBjuwwTptbbXeltetttSn_ID9jcz1D</recordid><startdate>20150120</startdate><enddate>20150120</enddate><creator>GHOSH ABHRAJIT</creator><creator>VAIDYANATHAN RAVICHANDER</creator><creator>YAMADA AKIRA</creator><creator>SAWAYA YUKIKO</creator><creator>KUBOTA AYUMU</creator><scope>EVB</scope></search><sort><creationdate>20150120</creationdate><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><author>GHOSH ABHRAJIT ; VAIDYANATHAN RAVICHANDER ; YAMADA AKIRA ; SAWAYA YUKIKO ; KUBOTA AYUMU</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_US8938804B23</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>eng</language><creationdate>2015</creationdate><topic>ELECTRIC COMMUNICATION TECHNIQUE</topic><topic>ELECTRICITY</topic><topic>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</topic><toplevel>online_resources</toplevel><creatorcontrib>GHOSH ABHRAJIT</creatorcontrib><creatorcontrib>VAIDYANATHAN RAVICHANDER</creatorcontrib><creatorcontrib>YAMADA AKIRA</creatorcontrib><creatorcontrib>SAWAYA YUKIKO</creatorcontrib><creatorcontrib>KUBOTA AYUMU</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>GHOSH ABHRAJIT</au><au>VAIDYANATHAN RAVICHANDER</au><au>YAMADA AKIRA</au><au>SAWAYA YUKIKO</au><au>KUBOTA AYUMU</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><date>2015-01-20</date><risdate>2015</risdate><abstract>An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS.</abstract><oa>free_for_read</oa></addata></record> |
fulltext | fulltext_linktorsrc |
identifier | |
ispartof | |
issn | |
language | eng |
recordid | cdi_epo_espacenet_US8938804B2 |
source | esp@cenet |
subjects | ELECTRIC COMMUNICATION TECHNIQUE ELECTRICITY TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION |
title | System and method for creating BGP route-based network traffic profiles to detect spoofed traffic |
url | https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-14T08%3A00%3A52IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=GHOSH%20ABHRAJIT&rft.date=2015-01-20&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3EUS8938804B2%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true |