The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 30, 2014

Filed:

Nov. 14, 2011
Applicants:

Ravichander Vaidyanathan, Belle Mead, NJ (US);

Abhrajit Ghosh, Edison, NJ (US);

Aditya Naidu, Edison, NJ (US);

Akira Yamada, Tokyo, JP;

Ayumu Kubota, Saitama, JP;

Yukiko Sawaya, Fujimi, JP;

Yutaka Miyake, Saitama, JP;

Inventors:

Ravichander Vaidyanathan, Belle Mead, NJ (US);

Abhrajit Ghosh, Edison, NJ (US);

Aditya Naidu, Edison, NJ (US);

Akira Yamada, Tokyo, JP;

Ayumu Kubota, Saitama, JP;

Yukiko Sawaya, Fujimi, JP;

Yutaka Miyake, Saitama, JP;

Assignees:

Telcordia Technologies, Inc., Piscataway, NJ (US);

KDDI Corporation, Tokyo, JP;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 11/00 (2006.01); G06F 12/14 (2006.01); G06F 12/16 (2006.01); G08B 23/00 (2006.01); G06F 15/173 (2006.01);
U.S. Cl.
CPC ...
Abstract

A method, an apparatus and a program for detecting spoofed Internet Protocol (IP) traffic directed to a network having a plurality of autonomous systems (AS) is provided. The method comprises receiving an incoming packet through an AS, the incoming packet containing a source IP address and a destination IP address, acquiring a corresponding source and destination IP address prefixes, converting the corresponding source and destination IP address prefixes into a source AS number and a destination AS number, determining if the incoming packet arrived from an unexpected source based upon the corresponding destination IP address prefix and the converted source and destination AS number using an unexpected pair tuple table generated from network routing information and generating an alert indicating that the incoming packet is not allowed to enter the network.


Find Patent Forward Citations

Loading…