Invention Grant
- Patent Title: Cryptographic security audit using network service zone locking
-
Application No.: US16857607Application Date: 2020-04-24
-
Publication No.: US11888900B2Publication Date: 2024-01-30
- Inventor: Matthew Scott Robertson , David McGrew , Timothy David Keanini , Sunil Amin , Ellie Marie Daw
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: CISCO TECHNOLOGY, INC.
- Current Assignee: CISCO TECHNOLOGY, INC.
- Current Assignee Address: US CA San Jose
- Agency: BEHMKE INNOVATION GROUP LLC
- Agent James M. Behmke; James J. Wong
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/40 ; H04L9/08 ; H04L9/32 ; H04L9/06

Abstract:
In one embodiment, a service receives captured traffic flow data regarding a traffic flow sent via a network between a first device assigned to a first network zone and a second device assigned to a second network zone. The service identifies, from the captured traffic flow data, one or more cryptographic parameters of the traffic flow. The service determines whether the one or more cryptographic parameters of the traffic flow satisfy an inter-zone policy associated with the first and second network zones. The service causes performance of a mitigation action in the network when the one or more cryptographic parameters of the traffic flow do not satisfy the inter-zone policy associated with the first and second network zones.
Public/Granted literature
- US20200252435A1 CRYPTOGRAPHIC SECURITY AUDIT USING NETWORK SERVICE ZONE LOCKING Public/Granted day:2020-08-06
Information query