System and method for creating BGP route-based network traffic profiles to detect spoofed traffic

An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: GHOSH ABHRAJIT, VAIDYANATHAN RAVICHANDER, YAMADA AKIRA, SAWAYA YUKIKO, KUBOTA AYUMU
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator GHOSH ABHRAJIT
VAIDYANATHAN RAVICHANDER
YAMADA AKIRA
SAWAYA YUKIKO
KUBOTA AYUMU
description An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS.
format Patent
fullrecord <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_US8938804B2</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>US8938804B2</sourcerecordid><originalsourceid>FETCH-epo_espacenet_US8938804B23</originalsourceid><addsrcrecordid>eNqNzDsOwjAQRVE3FAjYw2wgEiIUpg3iUyIF6miwnyEiyVj2IMTuSZEFUN3m6M4N19-s6IkHTz30KZ6CJHIJrO3woOp0oSRvRXHnDE8D9CPpRZo4hNZRTBLaDplUyEPhlHIUCSOdyNLMAncZq6kLQ8fDdX8uEKVBjuwwTptbbXeltetttSn_ID9jcz1D</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><source>esp@cenet</source><creator>GHOSH ABHRAJIT ; VAIDYANATHAN RAVICHANDER ; YAMADA AKIRA ; SAWAYA YUKIKO ; KUBOTA AYUMU</creator><creatorcontrib>GHOSH ABHRAJIT ; VAIDYANATHAN RAVICHANDER ; YAMADA AKIRA ; SAWAYA YUKIKO ; KUBOTA AYUMU</creatorcontrib><description>An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS.</description><language>eng</language><subject>ELECTRIC COMMUNICATION TECHNIQUE ; ELECTRICITY ; TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><creationdate>2015</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20150120&amp;DB=EPODOC&amp;CC=US&amp;NR=8938804B2$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,780,885,25562,76317</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20150120&amp;DB=EPODOC&amp;CC=US&amp;NR=8938804B2$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>GHOSH ABHRAJIT</creatorcontrib><creatorcontrib>VAIDYANATHAN RAVICHANDER</creatorcontrib><creatorcontrib>YAMADA AKIRA</creatorcontrib><creatorcontrib>SAWAYA YUKIKO</creatorcontrib><creatorcontrib>KUBOTA AYUMU</creatorcontrib><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><description>An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS.</description><subject>ELECTRIC COMMUNICATION TECHNIQUE</subject><subject>ELECTRICITY</subject><subject>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2015</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNqNzDsOwjAQRVE3FAjYw2wgEiIUpg3iUyIF6miwnyEiyVj2IMTuSZEFUN3m6M4N19-s6IkHTz30KZ6CJHIJrO3woOp0oSRvRXHnDE8D9CPpRZo4hNZRTBLaDplUyEPhlHIUCSOdyNLMAncZq6kLQ8fDdX8uEKVBjuwwTptbbXeltetttSn_ID9jcz1D</recordid><startdate>20150120</startdate><enddate>20150120</enddate><creator>GHOSH ABHRAJIT</creator><creator>VAIDYANATHAN RAVICHANDER</creator><creator>YAMADA AKIRA</creator><creator>SAWAYA YUKIKO</creator><creator>KUBOTA AYUMU</creator><scope>EVB</scope></search><sort><creationdate>20150120</creationdate><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><author>GHOSH ABHRAJIT ; VAIDYANATHAN RAVICHANDER ; YAMADA AKIRA ; SAWAYA YUKIKO ; KUBOTA AYUMU</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_US8938804B23</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>eng</language><creationdate>2015</creationdate><topic>ELECTRIC COMMUNICATION TECHNIQUE</topic><topic>ELECTRICITY</topic><topic>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</topic><toplevel>online_resources</toplevel><creatorcontrib>GHOSH ABHRAJIT</creatorcontrib><creatorcontrib>VAIDYANATHAN RAVICHANDER</creatorcontrib><creatorcontrib>YAMADA AKIRA</creatorcontrib><creatorcontrib>SAWAYA YUKIKO</creatorcontrib><creatorcontrib>KUBOTA AYUMU</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>GHOSH ABHRAJIT</au><au>VAIDYANATHAN RAVICHANDER</au><au>YAMADA AKIRA</au><au>SAWAYA YUKIKO</au><au>KUBOTA AYUMU</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>System and method for creating BGP route-based network traffic profiles to detect spoofed traffic</title><date>2015-01-20</date><risdate>2015</risdate><abstract>An inventive system and method for creating source profiles to detect spoofed traffic comprises obtaining a routing path for data to traverse nodes using traffic profiles, each routing path comprising at least a target AS, initializing one or more AS sets with last hop ASes, enhancing the AS sets by connecting the AS sets to routers, for each enhanced AS set, filtering observed traffic flows, and using the filtered flows to associate enhanced AS sets with network monitoring points to create the source profiles. In one aspect, filtering flows comprise TCP session filtering and/or destination bogon filtering. In one aspect, the routers are border gateway protocol routers. In one aspect, the last hop ASes are one hop away from the target AS.</abstract><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language eng
recordid cdi_epo_espacenet_US8938804B2
source esp@cenet
subjects ELECTRIC COMMUNICATION TECHNIQUE
ELECTRICITY
TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION
title System and method for creating BGP route-based network traffic profiles to detect spoofed traffic
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-14T08%3A00%3A52IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=GHOSH%20ABHRAJIT&rft.date=2015-01-20&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3EUS8938804B2%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true