Abstract:
Disclosed are a logical network separation method and apparatus. The logical network separation method includes generating a first hash key on the basis of address information included in a service request packet, generating hash information on the basis of a transmission property of the service request packet corresponding to the first hash key when the same hash key as the first hash key is not in the hash table, and generating the policy about the reception of the service response packet corresponding to the service request packet on the basis of a destination of the service request packet. Accordingly, it is possible to block a cyber attack such as hacking, a malicious program, etc.
Abstract:
Disclosed are a network apparatus and an operating method thereof. The network apparatus includes: a security authentication module that executes security authentication of a distributed denial of service (DDoS) attack when a predetermined packet requests access to a particular service server to which the security authentication is applied, at the time of inputting the predetermined packet; and a communication module that transmits the predetermined packet security-authenticated by the security authentication module through a transmission route of the particular service server, so as to easily defend the DDoS attack by using a pseudo state of a service procedure.
Abstract:
There are provided a function processing apparatus and function processing method dynamically process network function using commands. A function processing apparatus includes a communication unit for performing communication with at least one user interface and at least one software component, and a controller for, if first command related information is received from the at least one software component, forming a command tree on the basis of the first command related information and transmitting the first command related information to the at least one user interface, and, if second command related information is received from at least one user interface, transmitting the second command related information to a software component corresponding to the second command related information.
Abstract:
A method and an apparatus of integrative network management, which provide connection between private networks and real-time connection according to various policies depending on security or a quality of service (QoS), manages information required to provide the connection, and controls connection by using the managed information in order to defend and cope with various types of cyber attacks and fundamentally invalidate a cyber attack.
Abstract:
A mobility control device, a mobile communication device, and mobility providing method providing a mobility service based on a tunnel in an environment with multiple mobile networks. A method for providing a mobility service in an environment with multiple mobile networks includes; receiving, by a mobility control device, positional information from a mobile communication device; acquiring, by the mobility control device, communication quality information in an area corresponding to the positional information for each of the multiple mobile networks, and transmitting, by the mobility control device, the communication quality information to the mobile communication device.
Abstract:
Disclosed herein are a method and apparatus for processing an application service. The method includes: registering a user using a visual network service and at least one physical entity supporting the visual network service; mapping at least one virtual entity corresponding to the at least one physical entity; in response to the user's entering a visual network service space, displaying the at least one virtual entity on a terminal device of the user; and confirming a user input for the at least one virtual entity and controlling an operation of the at least one physical entity corresponding to the at least one virtual entity.
Abstract:
An operation method of a server in a communication system may comprise receiving device information from each of a plurality of devices; generating service modeling information for each of a plurality of services; generating category modeling information for sub-services of each of the plurality of services based on the device information and the service modeling information; receiving service information; generating device modeling information corresponding to the category modeling information based on the service information; and transmitting the device modeling information to each of the plurality devices corresponding to the device modeling information, wherein the device modeling information includes configuration information for a network service function corresponding to a device corresponding to the device modeling information.
Abstract:
Disclosed are a method and apparatus for modeling a network configuration protocol (NETCONF)-based network device instruction with a yet another next generation (YANG) language. The method of modeling the NETCONF)-based network device instruction with the YANG language includes: searching for at least one instruction from a source file for controlling a NETCONF-based network device; parsing the retrieved instruction into a plurality of tokens; mapping each parsed token with a data type of the YANG language according to a previously defined mapping rule; and generating a YANG model corresponding to the at least one instruction according to mapping results. Accordingly, the YANG model is immediately generated reflecting changes in an instruction of a network system.
Abstract:
An operation method of a VPN security apparatus includes receiving a service request from a client, dynamically allocating a fake address of a VPN apparatus connected to a service server, which provides the service requested by the client, and transmitting the fake address allocated to the VPN apparatus to the client and the VPN apparatus.
Abstract:
A system for balancing a data traffic load of a mobile communication device having multiple interfaces includes: an interface state management unit monitoring whether a failure occurs in a plurality of wireless interfaces included in a mobile communication apparatus; an interface quality management unit calculating load balancing ratios to be set for the plurality of wireless interfaces, respectively based on information on the plurality of wireless interfaces; and an interface control unit distributing data traffics to the plurality of respective wireless interfaces based, on the load balancing ratios.