Method for quantifying reponsiveness of flow aggregates to packet drops in a communication network

MK Khandani, MA Shayman - US Patent 7,391,740, 2008 - Google Patents
In a communication network, the responsiveness of the trans mission rate of data packets to
packet drops is quantified for an aggregate of flows as opposed to on a per-flow basis. In an …

Detection of nonconforming network traffic flow aggregates for mitigating distributed denial of service attacks

MK Khandani, MA Shayman - US Patent 7,992,208, 2011 - Google Patents
An estimate of a portion of network traffic that is noncon forming to a communication
transmission control protocol is used to signal that a distributed denial of service attack may …

Identifying a distributed denial of service (DDoS) attack within a network and defending against such an attack

JG Rooney, CJ Giblin, M Waldvogel… - US Patent …, 2011 - Google Patents
The invention provides methods, apparatus and systems for detecting distributed denial of
service (DDoS) attacks within the Internet by sampling packets at a point or points in Internet …

Identifying a Distributed Denial of Service (DDoS) Attack within a network and defending against such an attack

J Rooney, C Giblin, M Waldvogel… - US Patent App. 11 …, 2006 - Google Patents
The invention provides methods, apparatus and Systems for detecting distributed denial of
service (DDoS) attacks within the Internet by Sampling packets at a point or points in Internet …

Technique of detecting denial of service attacks

PA Jakubik, PM Livecchi, LH Overby Jr - US Patent 7,996,544, 2011 - Google Patents
The invention detects a denial of service attack at a node by monitoring the number of
discarded packets in relationship to the number of inbound packets. When an attack is …

Random early detection policer using randomization of packet drops

V Jacobson, K Nichols, C Appanna - US Patent 7,149,187, 2006 - Google Patents
Abstract A Random Early Detection (RED) policer in accordance with the invention does not
tail-drop arriving packets as being non-conforming. For instance, because the RED policer …

Early traffic regulation techniques to protect against network flooding

B Ye - US Patent 7,295,516, 2007 - Google Patents
Methods and apparatus for providing an Anti-Flooding Flow-Control (AFFC) mechanism
suitable for use in defending against flooding network Denial-of-Service (N-DoS) attacks is …

Dynamic inter packet gap generation system and method

PP Padiyar, K Karighattam, H Vasudeva - US Patent 8,160,089, 2012 - Google Patents
The present invention facilitates network throughput by dynamically generating IPG values,
which are employed when recovering from network collisions. Testing a number of IPG …

Behavior-based traffic differentiation (BTD) for defending against distributed denial of service (DDoS) attacks

N Ansari, Z Gao - US Patent 8,091,132, 2012 - Google Patents
Embodiments are directed toward a method for Behavior based Tra? ic Differentiation (BTD)
that initially receives incoming packets and performs tra? ic classi? cation to deter mine the …

Metering packet flows for limiting effects of denial of service attacks

J Sterne, A Grah, S Nahum, P Kostic… - US Patent 7,436,770, 2008 - Google Patents
In a Denial-of-Service (DoS) attack, a victim network or server is flooded with a large Volume
of traffic, consuming critical system resources (bandwidth, CPU capacity, etc). The Internet …