Network Protection Service
    1.
    发明申请
    Network Protection Service 有权
    网络保护服务

    公开(公告)号:US20130014253A1

    公开(公告)日:2013-01-10

    申请号:US13177504

    申请日:2011-07-06

    IPC分类号: G06F21/20 G06F15/173

    CPC分类号: H04L63/1441 H04L2463/144

    摘要: A network protection method is provided. The network protection method may include receiving a Domain Name System (DNS) request, logging the DNS request, classifying the DNS request based on an analysis of a DNS name associated with the DNS request, taking a security action based on the classification, analyzing network traffic after taking the security action, and providing substantially real-time feedback associated with the network traffic to improve future DNS request classifications. The method may further include receiving a DNS response and logging the DNS response. The analysis of the DNS name may include receiving DNS data related to the DNS name from a plurality of sources, receiving reputation data related to the plurality of sources, scoring each of the plurality of sources based on the reputation data, and aggregating the DNS data related to the DNS name based on the scoring.

    摘要翻译: 提供网络保护方法。 网络保护方法可以包括接收域名系统(DNS)请求,记录DNS请求,基于与DNS请求相关联的DNS名称的分析来分类DNS请求,基于分类采取安全动作,分析网络 采取安全措施后的流量,并提供与网络流量相关联的实质性实时反馈,以改进未来的DNS请求分类。 该方法还可以包括接收DNS响应并记录DNS响应。 DNS名称的分析可以包括从多个源接收与DNS名称有关的DNS数据,接收与多个源相关的信誉数据,基于该信誉数据对多个源中的每一个进行评分,并且聚合DNS数据 相关的DNS名称基于得分。

    Network protection service
    2.
    发明授权
    Network protection service 有权
    网络保护服务

    公开(公告)号:US09185127B2

    公开(公告)日:2015-11-10

    申请号:US13177504

    申请日:2011-07-06

    IPC分类号: H04L29/06 G06F21/55

    CPC分类号: H04L63/1441 H04L2463/144

    摘要: A network protection method is provided. The network protection method may include receiving a Domain Name System (DNS) request, logging the DNS request, classifying the DNS request based on an analysis of a DNS name associated with the DNS request, taking a security action based on the classification, analyzing network traffic after taking the security action, and providing substantially real-time feedback associated with the network traffic to improve future DNS request classifications. The method may further include receiving a DNS response and logging the DNS response. The analysis of the DNS name may include receiving DNS data related to the DNS name from a plurality of sources, receiving reputation data related to the plurality of sources, scoring each of the plurality of sources based on the reputation data, and aggregating the DNS data related to the DNS name based on the scoring.

    摘要翻译: 提供网络保护方法。 网络保护方法可以包括接收域名系统(DNS)请求,记录DNS请求,基于与DNS请求相关联的DNS名称的分析来分类DNS请求,基于分类采取安全动作,分析网络 采取安全措施后的流量,并提供与网络流量相关联的实质性实时反馈,以改进未来的DNS请求分类。 该方法还可以包括接收DNS响应并记录DNS响应。 DNS名称的分析可以包括从多个源接收与DNS名称有关的DNS数据,接收与多个源相关的信誉数据,基于该信誉数据对多个源中的每一个进行评分,并且聚合DNS数据 相关的DNS名称基于得分。