-
公开(公告)号:US20050044422A1
公开(公告)日:2005-02-24
申请号:US10930392
申请日:2004-08-31
申请人: Craig Cantrell , Marc Willebeek-Lemair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
发明人: Craig Cantrell , Marc Willebeek-Lemair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
CPC分类号: H04L63/0227 , H04L43/00 , H04L43/028 , H04L43/0888 , H04L43/16 , H04L63/0254 , H04L63/0263 , H04L63/0442 , H04L63/1416 , H04L63/1425 , H04L63/1441
摘要: An active network defense system is provided that is operable to monitor and block traffic in an automated fashion. This active network defense system is placed in-line with respect to the packet traffic data flow as a part of the network infrastructure. In this configuration, inspection and manipulation of every passing packet is possible. An algorithmic filtering operation applies statistical threshold filtering to the data flow in order to identify threats existing across multiple sessions. A trigger filtering operation applies header and content match filtering to the data flow in order to identify threats existing within individual sessions. Threatening packet traffic is blocked and threatening sessions are terminated. Suspicious traffic is extracted from the data flow for further examination with more comprehensive content matching as well as asset risk analysis. A flow control mechanism is provided to control passage rate for packets passing through the data flow.
-
公开(公告)号:US07454792B2
公开(公告)日:2008-11-18
申请号:US10930922
申请日:2004-08-31
申请人: Craig Cantrell , Marc Willebeek-Lemair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
发明人: Craig Cantrell , Marc Willebeek-Lemair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
IPC分类号: H04L9/00 , G06F11/30 , G06F15/173
CPC分类号: H04L63/0227 , H04L43/00 , H04L43/028 , H04L43/0888 , H04L43/16 , H04L63/0254 , H04L63/0263 , H04L63/0442 , H04L63/1416 , H04L63/1425 , H04L63/1441
摘要: An active network defense system is provided that is operable to monitor and block traffic in an automated fashion. This active network defense system is placed in-line with respect to the packet traffic data flow as a part of the network infrastructure. In this configuration, inspection and manipulation of every passing packet is possible. An algorithmic filtering operation applies statistical threshold filtering to the data flow in order to identify threats existing across multiple sessions. A trigger filtering operation applies header and content match filtering to the data flow in order to identify threats existing within individual sessions. Threatening packet traffic is blocked and threatening sessions are terminated. Suspicious traffic is extracted from the data flow for further examination with more comprehensive content matching as well as asset risk analysis. A flow control mechanism is provided to control passage rate for packets passing through the data flow.
-
公开(公告)号:US07454499B2
公开(公告)日:2008-11-18
申请号:US10291095
申请日:2002-11-07
申请人: Craig Cantrell , Marc Willebeek-LeMair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
发明人: Craig Cantrell , Marc Willebeek-LeMair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
IPC分类号: G06F15/173
CPC分类号: H04L63/0227 , H04L43/00 , H04L43/028 , H04L43/0888 , H04L43/16 , H04L63/0254 , H04L63/0263 , H04L63/0442 , H04L63/1416 , H04L63/1425 , H04L63/1441
摘要: An active network defense system is provided that is operable to monitor and block traffic in an automated fashion. This active network defense system is placed in-line with respect to the packet traffic data flow as a part of the network infrastructure. In this configuration, inspection and manipulation of every passing packet is possible. An algorithmic filtering operation applies statistical threshold filtering to the data flow in order to identify threats existing across multiple sessions. A trigger filtering operation applies header and content match filtering to the data flow in order to identify threats existing within individual sessions. Threatening packet traffic is blocked and threatening sessions are terminated. Suspicious traffic is extracted from the data flow for further examination with more comprehensive content matching as well as asset risk analysis. A flow control mechanism is provided to control passage rate for packets passing through the data flow.
-
公开(公告)号:US20050028013A1
公开(公告)日:2005-02-03
申请号:US10930922
申请日:2004-08-31
申请人: Craig Cantrell , Marc Willebeek-LeMair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
发明人: Craig Cantrell , Marc Willebeek-LeMair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
CPC分类号: H04L63/0227 , H04L43/00 , H04L43/028 , H04L43/0888 , H04L43/16 , H04L63/0254 , H04L63/0263 , H04L63/0442 , H04L63/1416 , H04L63/1425 , H04L63/1441
摘要: An active network defense system is provided that is operable to monitor and block traffic in an automated fashion. This active network defense system is placed in-line with respect to the packet traffic data flow as a part of the network infrastructure. In this configuration, inspection and manipulation of every passing packet is possible. An algorithmic filtering operation applies statistical threshold filtering to the data flow in order to identify threats existing across multiple sessions. A trigger filtering operation applies header and content match filtering to the data flow in order to identify threats existing within individual sessions. Threatening packet traffic is blocked and threatening sessions are terminated. Suspicious traffic is extracted from the data flow for further examination with more comprehensive content matching as well as asset risk analysis. A flow control mechanism is provided to control passage rate for packets passing through the data flow.
摘要翻译: 提供了一种主动的网络防御系统,其可操作以自动化方式监视和阻止业务。 作为网络基础设施的一部分,该活动的网络防御系统相对于分组业务数据流在线地放置。 在这种配置中,可以检查和操纵每个通过的包。 算法过滤操作将统计阈值过滤应用于数据流,以便识别跨多个会话存在的威胁。 触发器过滤操作将头部和内容匹配过滤应用于数据流,以便识别各个会话中存在的威胁。 威胁数据包流量被阻止,威胁性会话终止。 从数据流中提取可疑流量进行进一步检查,具有更全面的内容匹配和资产风险分析。 提供流控制机制来控制通过数据流的分组的通过速率。
-
5.
公开(公告)号:US20050141563A1
公开(公告)日:2005-06-30
申请号:US11060472
申请日:2005-02-16
申请人: John McHale , Robert Locklear , Robert Burke
发明人: John McHale , Robert Locklear , Robert Burke
CPC分类号: H04Q11/0421 , H04L12/2856 , H04L12/2889 , H04L12/4612 , H04L12/5692 , H04L27/0008 , H04M11/06 , H04M11/062 , H04Q2213/13003 , H04Q2213/1302 , H04Q2213/13036 , H04Q2213/13039 , H04Q2213/1304 , H04Q2213/13093 , H04Q2213/13103 , H04Q2213/13106 , H04Q2213/13109 , H04Q2213/1319 , H04Q2213/13196 , H04Q2213/13199 , H04Q2213/13203 , H04Q2213/13204 , H04Q2213/13213 , H04Q2213/1329 , H04Q2213/13292 , H04Q2213/13299 , H04Q2213/13302 , H04Q2213/1332 , H04Q2213/13322 , H04Q2213/1334 , H04Q2213/13349 , H04Q2213/13389
摘要: A communication system (500) includes a plurality of subscriber systems (510) coupled to a plurality of twisted pair data lines (520). Each subscriber system (510) has an availability guarantee value, which may specify a level of service for the subscriber system (510). A communication server (502) is coupled to the plurality of subscriber systems (510). The communication server (502) selectively couples a subscriber system (510), responsive to a request for service, to either a first modem pool (530) or a second modem pool (540) based on the availability guarantee value associated with the subscriber system (510). Communication server (502) can also provide a soft-termination state and dynamic network address allocation for subscriber systems (510).
摘要翻译: 通信系统(500)包括耦合到多个双绞线数据线(520)的多个用户系统(510)。 每个订户系统(510)具有可用性保证值,其可以指定订户系统的服务等级(510)。 通信服务器(502)耦合到多个订户系统(510)。 基于与用户系统相关联的可用性保证值,通信服务器(502)响应于服务请求选择性地将订户系统(510)耦合到第一调制解调器池(530)或第二调制解调器池(540) (510)。 通信服务器(502)还可以为订户系统(510)提供软终止状态和动态网络地址分配。
-
公开(公告)号:US07451489B2
公开(公告)日:2008-11-11
申请号:US10930392
申请日:2004-08-31
申请人: Craig Cantrell , Marc Willebeek-Lemair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
发明人: Craig Cantrell , Marc Willebeek-Lemair , Dennis Cox , John McHale , Brian Smith , Donovan Kolbly
IPC分类号: H04L9/00 , G06F11/30 , G06F15/173
CPC分类号: H04L63/0227 , H04L43/00 , H04L43/028 , H04L43/0888 , H04L43/16 , H04L63/0254 , H04L63/0263 , H04L63/0442 , H04L63/1416 , H04L63/1425 , H04L63/1441
摘要: An active network defense system is provided that is operable to monitor and block traffic in an automated fashion. This active network defense system is placed in-line with respect to the packet traffic data flow as a part of the network infrastructure. In this configuration, inspection and manipulation of every passing packet is possible. An algorithmic filtering operation applies statistical threshold filtering to the data flow in order to identify threats existing across multiple sessions. A trigger filtering operation applies header and content match filtering to the data flow in order to identify threats existing within individual sessions. Threatening packet traffic is blocked and threatening sessions are terminated. Suspicious traffic is extracted from the data flow for further examination with more comprehensive content matching as well as asset risk analysis. A flow control mechanism is provided to control passage rate for packets passing through the data flow.
摘要翻译: 提供了一种主动的网络防御系统,其可操作以自动化方式监视和阻止业务。 作为网络基础设施的一部分,该活动的网络防御系统相对于分组业务数据流在线地放置。 在这种配置中,可以检查和操纵每个通过的包。 算法过滤操作将统计阈值过滤应用于数据流,以便识别跨多个会话存在的威胁。 触发器过滤操作将头部和内容匹配过滤应用于数据流,以便识别各个会话中存在的威胁。 威胁数据包流量被阻止,威胁性会话终止。 从数据流中提取可疑流量进行进一步检查,具有更全面的内容匹配和资产风险分析。 提供流控制机制来控制通过数据流的分组的通过速率。
-
公开(公告)号:US07359962B2
公开(公告)日:2008-04-15
申请号:US10136889
申请日:2002-04-30
申请人: Marc Willebeek-LeMair , Craig Cantrell , Dennis Cox , John McHale , Brian Smith
发明人: Marc Willebeek-LeMair , Craig Cantrell , Dennis Cox , John McHale , Brian Smith
IPC分类号: G06F15/173
CPC分类号: H04L63/0227 , H04L29/06 , H04L63/1416 , H04L63/1433 , H04L67/02 , H04L69/329
摘要: A network discovery functionality, intrusion detector functionality and firewalling functionality are integrated together to form a network security system presenting a self-deploying and self-hardening security defense for a network.
摘要翻译: 网络发现功能,入侵检测器功能和防火墙功能集成在一起,形成网络安全系统,为网络呈现自我部署和自强化的安全防御。
-
公开(公告)号:US08200526B2
公开(公告)日:2012-06-12
申请号:US13063914
申请日:2010-01-15
申请人: Raymond John McHale
发明人: Raymond John McHale
IPC分类号: G06F17/00
CPC分类号: G06Q10/04 , G06Q10/0637 , G06Q30/0203
摘要: A system for compiling and presenting data collection instruments associated with a plurality of stakeholder relationship causality models, managing data collection processes, conducting statistical tests, variable analytics and impacts calculations, and generating action plans and reports associated with a plurality of stakeholder experiences, stakeholder attitudes and stakeholder behavioral intentions for use in assessing the state of stakeholder relationships and planning for performance optimization, the system comprising: a) a user interface software module, b) a stakeholder model library, c) a variables database, d) a stakeholder profile database, e) an action plan library, f) a reports library, g) a language conversion engine, h) a stakeholder survey software module, i) a variable analytics software module, j) an impact calculation software module, k) an action plan generation software module, and l) a report generation software module.
摘要翻译: 一种用于编译和呈现与多个利益相关者关系因果关系模型相关联的数据收集工具的系统,管理数据收集过程,进行统计测试,可变分析和影响计算,以及生成与多个利益相关者经验相关的行动计划和报告,利益相关者态度 以及利益相关者的行为意图,用于评估利益相关者关系状态和规划绩效优化,该系统包括:a)用户界面软件模块,b)利益相关者模型库,c)变量数据库,d)利益相关者资料数据库 e)动作计划库,f)报告库,g)语言转换引擎,h)利益相关者调查软件模块,i)可变分析软件模块,j)影响计算软件模块,k)行动计划 生成软件模块,以及l)报告生成软件模块。
-
公开(公告)号:US20110173049A1
公开(公告)日:2011-07-14
申请号:US13063914
申请日:2010-01-15
申请人: Raymond John McHale
发明人: Raymond John McHale
IPC分类号: G06Q10/00
CPC分类号: G06Q10/04 , G06Q10/0637 , G06Q30/0203
摘要: A system for compiling and presenting data collection instruments associated with a plurality of stakeholder relationship causality models, managing data collection processes, conducting statistical tests, variable analytics and impacts calculations, and generating action plans and reports associated with a plurality of stakeholder experiences, stakeholder attitudes and stakeholder behavioural intentions for use in assessing the state of stakeholder relationships and planning for performance optimisation, the system comprising: a) a user interface software module, b) a stakeholder model library, c) a variables database, d) a stakeholder profile database, e) an action plan library, f) a reports library, g) a language conversion engine, h) a stakeholder survey software module, i) a variable analytics software module, j) an impact calculation software module, k) an action plan generation software module, and l) a report generation software module.
摘要翻译: 一种用于编译和呈现与多个利益相关者关系因果关系模型相关联的数据收集工具的系统,管理数据收集过程,进行统计测试,可变分析和影响计算,以及生成与多个利益相关者经验相关的行动计划和报告,利益相关者态度 以及利益相关者的行为意图,用于评估利益相关者关系状态和规划绩效优化,该系统包括:a)用户界面软件模块,b)利益相关者模型库,c)变量数据库,d)利益相关者资料数据库 e)动作计划库,f)报告库,g)语言转换引擎,h)利益相关者调查软件模块,i)可变分析软件模块,j)影响计算软件模块,k)行动计划 生成软件模块,以及l)报告生成软件模块。
-
-
-
-
-
-
-
-