- 专利标题: Method and apparatus for protecting a web server against vandals attacks without restricting legitimate access
-
申请号: US09826046申请日: 2001-04-04
-
公开(公告)号: US07007169B2公开(公告)日: 2006-02-28
- 发明人: Charles Steven Lingafelt , John Joseph McKenna , Robert Barry Sisk
- 申请人: Charles Steven Lingafelt , John Joseph McKenna , Robert Barry Sisk
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 代理机构: Greenblum & Bernstein
- 代理商 John R. Pivnichny; David R. Irvin
- 主分类号: H04L9/00
- IPC分类号: H04L9/00 ; G06F11/30
摘要:
An intrusion detection security system (IDSS) guards a server against vandals' attacks such as denial of service, distributed denial of service, and common gateway interface attacks. An incoming source address is compared with the contents of a database of privileged addresses. If the incoming address is present in the database, the IDSS instructs protective equipment such as a firewall or router to allow the incoming message to pass to the web server despite any ongoing attack, thus allowing messages from customers or suppliers, for example, through. Otherwise, the IDSS checks a database of blocked addresses. When the incoming address is absent, the IDSS writes the address to the database of blocked addresses and instructs the protective equipment to block subsequent messages from the incoming address.
公开/授权文献
信息查询