System And Methods Of Defense Against DDoS Attacks Via Autonomous Agents For Applications On A Multi-Substrate Multi-Ingress Shared Infrastructure With Multiple Cloud Architectures
개요
발명자
Simone MAINARDI; Jeff MCMULLIN; Prabhat SINGH
IPC 분류
CPC 분류
A computing services environment may include application gateways receiving application-layer request messages from various sources. The computing services environment may also include an autonomous agent platform configured to instantiate and execute an autonomous agent to evaluate network traffic associated with a portion of the computing services environment. The computing services environment may also include an orchestration engine configured to determine one or more mitigation policies corresponding with one or more of the application gateways based on identification of the application-layer distributed denial of service attack by the autonomous agent. The computing services environment may also include application-layer web application firewalls corresponding to the plurality of application gateways and implementing the one or more mitigation policies to prevent a subset of subsequent application-layer request messages from the subset of the sources from reaching one or more components of the computing services environment.
원문 (중국어)
A computing services environment may include application gateways receiving application-layer request messages from various sources. The computing services environment may also include an autonomous agent platform configured to instantiate and execute an autonomous agent to evaluate network traffic associated with a portion of the computing services environment. The computing services environment may also include an orchestration engine configured to determine one or more mitigation policies corresponding with one or more of the application gateways based on identification of the application-layer distributed denial of service attack by the autonomous agent. The computing services environment may also include application-layer web application firewalls corresponding to the plurality of application gateways and implementing the one or more mitigation policies to prevent a subset of subsequent application-layer request messages from the subset of the sources from reaching one or more components of the computing services environment.