- 专利标题: Network application security policy enforcement
-
申请号: US15883534申请日: 2018-01-30
-
公开(公告)号: US10154067B2公开(公告)日: 2018-12-11
- 发明人: Peter Smith , Harry Sverdlove
- 申请人: Edgewise Networks, Inc.
- 申请人地址: US MA Burlington
- 专利权人: Edgewise Networks, Inc.
- 当前专利权人: Edgewise Networks, Inc.
- 当前专利权人地址: US MA Burlington
- 代理机构: Blueshift IP, LLC
- 代理商 Robert Plotkin
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F21/60
摘要:
A system validates the establishment and/or continuation of a connection between two applications over a network using a three-stage process: (1) a local security agent on the same source system as the source application validates the connection against a set of policies stored locally on the source system; (2) a local security agent on the same destination system as the destination application validates the connection against a set of policies stored locally on the destination system; and (3) a reconciliation engine, after receiving connection and application state information from both the source and destination local security agents, validates the connection against a master set of policies. The connection is allowed or blocked depending on the outcome of the three-stage validation. This system protects against policy violations that are not detected by traditional systems without requiring alterations to the source and destination applications or the network traffic between them.
公开/授权文献
- US20180234460A1 Network Application Security Policy Enforcement 公开/授权日:2018-08-16
信息查询