APPARATUS AND METHOD FOR DETECTING TINY FRAGMENT ATTACKS
    2.
    发明公开
    APPARATUS AND METHOD FOR DETECTING TINY FRAGMENT ATTACKS 审中-公开
    用于检测细小碎片攻击的装置和方法

    公开(公告)号:EP3200426A1

    公开(公告)日:2017-08-02

    申请号:EP17161433.2

    申请日:2004-02-27

    IPC分类号: H04L29/06

    摘要: Disclosed is a method and apparatus for checking link layer protocol frames such as Ethernet frames. The method can be implemented on a processor executing software instructions stored in memory. In one embodiment of the invention, the method includes receiving an Ethernet frame, and counting data bytes of the Ethernet frame to generate a total number of counted bytes. The total number of counted bytes can be used to calculate a data length of a datagram of the Ethernet frame. Once calculated, the datagram data length can be compared to a predetermined value. If the datagram length does not fall within an acceptable range of the predetermined value, the Ethernet frame may be dropped so that the Ethernet frame does not reach its final destination.

    摘要翻译: 公开了用于检查诸如以太网帧的链路层协议帧的方法和装置。 该方法可以在执行存储在存储器中的软件指令的处理器上实现。 在本发明的一个实施例中,该方法包括接收以太网帧,并对以太网帧的数据字节进行计数以生成总计数字节数。 计数的字节总数可用于计算以太网帧数据报的数据长度。 一旦计算出来,数据报数据长度可以与预定值进行比较。 如果数据报长度不在预定值的可接受范围内,则可以丢弃以太网帧,以使以太网帧不能到达其最终目的地。

    APPARATUS AND METHOD FOR DETECTING TINY FRAGMENT ATTACKS
    3.
    发明公开
    APPARATUS AND METHOD FOR DETECTING TINY FRAGMENT ATTACKS 有权
    DEVICE AND METHOD FOR揭幕的微小碎片攻击

    公开(公告)号:EP1599990A1

    公开(公告)日:2005-11-30

    申请号:EP04715726.8

    申请日:2004-02-27

    IPC分类号: H04L29/06

    摘要: Disclosed is a method and apparatus for checking link layer protocol frames such as Ethernet frames. The method can be implemented on a processor executing software instructions stored in memory. In one embodiment of the invention, the method includes receiving an Ethernet frame, and counting data bytes of the Ethernet frame to generate a total number of counted bytes. The total number of counted bytes can be used to calculate a data length of a datagram of the Ethernet frame. Once calculated, the datagram data length can be compared to a predetermined value. If the datagram length does not fall within an acceptable range of the predetermined value, the Ethernet frame may be dropped so that the Ethernet frame does not reach its final destination.