首页> 外国专利> METHODS, SYSTEMS, AND COMPUTER READABLE MEDIA FOR PROVIDING APPLICATION LAYER FIREWALL AND INTEGRATED DEEP PACKET INSPECTION FUNCTIONS FOR PROVIDING EARLY INTRUSION DETECTION AND INTRUSION PREVENTION AT AN EDGE NETWORKING DEVICE

METHODS, SYSTEMS, AND COMPUTER READABLE MEDIA FOR PROVIDING APPLICATION LAYER FIREWALL AND INTEGRATED DEEP PACKET INSPECTION FUNCTIONS FOR PROVIDING EARLY INTRUSION DETECTION AND INTRUSION PREVENTION AT AN EDGE NETWORKING DEVICE

机译:提供应用层防火墙和集成深度数据包检查功能的方法,系统和计算机可读介质,以在边缘网络设备上提供早期入侵检测和入侵预防

摘要

Methods, systems, and computer readable media for an application layer firewall function including an integrated deep packet inspection function for providing early intrusion detection and intrusion prevention at an edge networking device are disclosed. According to one method, steps are performed at a session controller configured to operate at the border of a first network and a second network. The steps include receiving, at an intrusion protection system (IPS) module of the session controller interfacing with modules associated with layers 2 and above of a protocol stack of the session controller, information gathered by modules located at lower layers and associated with an intrusion attempt, vulnerability, or other security policy violation. In response to receiving the information, the IPS module provides at least one of a security policy and a rule to a module located at the most appropriate layer for securing the intrusion attempt, vulnerability, or other security policy violation.
机译:公开了用于应用层防火墙功能的方法,系统和计算机可读介质,所述应用层防火墙功能包括用于在边缘联网设备处提供早期入侵检测和入侵防御的集成深度包检查功能。根据一种方法,在配置成在第一网络和第二网络的边界处操作的会话控制器处执行步骤。这些步骤包括在会话控制器的入侵保护系统(IPS)模块处,该模块与与会话控制器的协议栈的第2层及更高层相关联的模块进行接口连接,接收由位于较低层的模块收集并与入侵尝试相关联的信息。 ,漏洞或其他违反安全策略的行为。响应于接收到该信息,IPS模块向位于最适当层的模块提供安全策略和规则中的至少一个,以保护入侵尝试,漏洞或其他安全策略违规。

著录项

  • 公开/公告号US2011231924A1

    专利类型

  • 公开/公告日2011-09-22

    原文格式PDF

  • 申请/专利权人 RAKENDU DEVDHAR;ASHISH SARDESAI;

    申请/专利号US20100775454

  • 发明设计人 ASHISH SARDESAI;RAKENDU DEVDHAR;

    申请日2010-05-06

  • 分类号G06F17/00;

  • 国家 US

  • 入库时间 2022-08-21 18:14:12

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号