Invention Grant
- Patent Title: DNS snooping to create IP address-based trust database used to select deep packet inspection and storage of IP packets
-
Application No.: US14746155Application Date: 2015-06-22
-
Publication No.: US09628442B2Publication Date: 2017-04-18
- Inventor: Peter Zhu , Ashok Thirunarayanan
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Edell, Shapiro & Finnan, LLC
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/08 ; H04L29/12 ; G06F17/30

Abstract:
At a network device through which client devices communicate with a network, a database is created that maps Internet Protocol (IP) addresses each to a respective trust metric for a domain name associated with the IP address. An IP packet sent from a client device to the network and that indicates a destination IP address for a network-accessible resource associated with a domain name is intercepted. Using the destination IP address in the intercepted IP packet, the domain name trust metric mapped to the destination IP address is retrieved from the database. IP packets received from the destination IP address are processed based on the retrieved domain name trust metric and a predetermined trust metric criterion.
Public/Granted literature
Information query