DETECTION APPARATUS FOR ATTACK OF MALFORMED SIP MESSAGE AND METHOD THEREOF
PURPOSE: An apparatus performing the detection of the sip variation control message is provided to minimize a wrong detection rate of SIP variation control message messaging attack. CONSTITUTION: A positive rule-based check block(210) checks a total message length, a maximum length by header and an...
Saved in:
Main Authors | , , , , |
---|---|
Format | Patent |
Language | English Korean |
Published |
01.07.2010
|
Subjects | |
Online Access | Get full text |
Cover
Loading…
Summary: | PURPOSE: An apparatus performing the detection of the sip variation control message is provided to minimize a wrong detection rate of SIP variation control message messaging attack. CONSTITUTION: A positive rule-based check block(210) checks a total message length, a maximum length by header and an available string in order to permit normal SIP control message accepting a SIP(Session Initiation Protocol) protocol standard. A negative rule-based check block(220) verifies the input value of the message based on the SIP attack signature defined by a security manager, in order to detect the attack only known an SIP mutative control message attack signature. |
---|---|
Bibliography: | Application Number: KR20080132239 |