DETECTION APPARATUS FOR ATTACK OF MALFORMED SIP MESSAGE AND METHOD THEREOF

PURPOSE: An apparatus performing the detection of the sip variation control message is provided to minimize a wrong detection rate of SIP variation control message messaging attack. CONSTITUTION: A positive rule-based check block(210) checks a total message length, a maximum length by header and an...

Full description

Saved in:
Bibliographic Details
Main Authors KIM, JEONG WOOK, JEONG, HYUN CHEOL, KO, KYOUNG HEE, KIM, HWAN KUK, LEE, CHANG YONG
Format Patent
LanguageEnglish
Korean
Published 01.07.2010
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:PURPOSE: An apparatus performing the detection of the sip variation control message is provided to minimize a wrong detection rate of SIP variation control message messaging attack. CONSTITUTION: A positive rule-based check block(210) checks a total message length, a maximum length by header and an available string in order to permit normal SIP control message accepting a SIP(Session Initiation Protocol) protocol standard. A negative rule-based check block(220) verifies the input value of the message based on the SIP attack signature defined by a security manager, in order to detect the attack only known an SIP mutative control message attack signature.
Bibliography:Application Number: KR20080132239