Unified network threat management with rule classification
    2.
    发明授权
    Unified network threat management with rule classification 有权
    统一网络威胁管理与规则分类

    公开(公告)号:US08561129B2

    公开(公告)日:2013-10-15

    申请号:US12039490

    申请日:2008-02-28

    IPC分类号: G06F17/00 H04L29/06

    CPC分类号: H04L63/0263 H04L63/1416

    摘要: A computer network device comprises an intrusion prevention rule set comprising a plurality of rules, each of the plurality of rules associated with two or more rule classification parameters, and an intrusion prevention module that is operable to use two or more of the classification parameters associated with the plurality of intrusion protection rules to selectively apply the rules to provide network intrusion protection of network traffic.

    摘要翻译: 计算机网络设备包括入侵防御规则集,其包括多个规则,与两个或多个规则分类参数相关联的多个规则中的每个规则,以及入侵防御模块,其可操作以使用两个或更多个与 多个入侵保护规则选择性地应用规则来提供网络流量的网络入侵保护。

    Secure server utilizing separate protocol stacks
    3.
    发明授权
    Secure server utilizing separate protocol stacks 有权
    安全服务器使用单独的协议栈

    公开(公告)号:US06332195B1

    公开(公告)日:2001-12-18

    申请号:US09255111

    申请日:1999-02-22

    IPC分类号: G06F1130

    摘要: A secure commerce server system and method. A secure commerce server system includes a plurality of regions or burbs, including an internal burb and an external burb, a commerce server and an administration server. Processes and data objects associated with the administration server are bound to the internal burb. Processes and data objects associated with the commerce server are bound to the external burb. Processes bound to one burb cannot communicate directly to processes and data objects bound to other burbs. The administration server cannot be manipulated by a process bound to the external burb.

    摘要翻译: 一种安全的商务服务器系统和方法。 安全的商务服务器系统包括多个区域或布局,包括内部布局和外部布局,商务服务器和管理服务器。 与管理服务器关联的进程和数据对象绑定到内部burb。 与商务服务器相关联的进程和数据对象绑定到外部burb。 绑定到一个burb的进程不能直接与绑定到其他burbs的进程和数据对象进行通信。 管理服务器不能被绑定到外部burb的进程操纵。

    Secure server utilizing separate protocol stacks
    4.
    发明授权
    Secure server utilizing separate protocol stacks 失效
    安全服务器使用单独的协议栈

    公开(公告)号:US5913024A

    公开(公告)日:1999-06-15

    申请号:US605320

    申请日:1996-02-09

    摘要: A secure commerce server system and method. A secure commerce server system includes a plurality of regions or burbs, including an internal burb and an external burb, a commerce server and an administration server. Processes and data objects associated with the administration server are bound to the internal burb. Processes and data objects associated with the commerce server are bound to the external burb. Processes bound to one burb cannot communicate directly to processes and data objects bound to other burbs. The administration server cannot be manipulated by a process bound to the external burb.

    摘要翻译: 一种安全的商务服务器系统和方法。 安全的商务服务器系统包括多个区域或布局,包括内部布局和外部布局,商务服务器和管理服务器。 与管理服务器关联的进程和数据对象绑定到内部burb。 与商务服务器相关联的进程和数据对象绑定到外部burb。 绑定到一个burb的进程不能直接与绑定到其他burbs的进程和数据对象进行通信。 管理服务器不能被绑定到外部burb的进程操纵。

    Modular data routing system
    5.
    发明授权
    Modular data routing system 失效
    模块化数据路由系统

    公开(公告)号:US4763329A

    公开(公告)日:1988-08-09

    申请号:US827415

    申请日:1986-02-10

    申请人: Michael W. Green

    发明人: Michael W. Green

    摘要: A modular system for controlling the routing of data through a plurality of data terminals includes a number of modules in a tree structure. Each of the modules has circuitry for receiving a data stream. Each of the modules further has a plurality of ports, each port being suitable for transmitting data to and receiving data from data devices such as data terminals and other modules. Each of the modules includes a routing array connected to the ports for serially connecting the ports for flow of the data stream through the operable data devices connected to the ports. The routing array is internally controllable to open a selected one of a plurality of data paths between the ports. At least some of the ports have driver circuits associated therewith for regenerating and converting the data stream as it passes between ports in the selected data path. Each module has an output for supplying the data stream from the module to a destination device. Detecting circuitry is included in each module for automatically detecting a fault between the input and output of that module. The detecting circuitry is responsive to the detection of such a fault to control the routing array to open a fault-free data path between the input and output of the module if any such path exists.

    摘要翻译: 用于控制通过多个数据终端的数据路由的模块化系统包括树形结构中的多个模块。 每个模块具有用于接收数据流的电路。 每个模块还具有多个端口,每个端口适用于向诸如数据终端和其他模块的数据设备发送数据并从数据设备接收数据。 每个模块包括连接到端口的路由阵列,用于串行连接端口,用于通过连接到端口的可操作数据设备的数据流的流。 路由阵列在内部可控制以打开端口之间的多个数据路径中的所选择的一个。 至少一些端口具有与之相关联的驱动器电路,用于当数据流在所选择的数据路径中的端口之间通过时再生和转换数据流。 每个模块都有一个输出,用于将数据流从模块提供给目标设备。 每个模块都包含检测电路,用于自动检测该模块的输入和输出之间的故障。 检测电路响应于这种故障的检测来控制路由阵列以在任何这样的路径存在时在模块的输入和输出之间打开无故障的数据路径。

    Septacussion
    6.
    发明授权
    Septacussion 失效
    隔音

    公开(公告)号:US4452121A

    公开(公告)日:1984-06-05

    申请号:US385561

    申请日:1982-06-07

    申请人: Michael W. Green

    发明人: Michael W. Green

    IPC分类号: G10D13/02

    CPC分类号: G10D13/02

    摘要: This invention comprises a percussion instrument, including seven bongo drums held together by blocks fastened therebetween, a carrying handle on one of the blocks, and a microphone holder attached to one of the drums.

    摘要翻译: 本发明包括一种打击乐器,其包括通过块之间的块固定在一起的七个鼓形鼓,一个块上的一个提手和一个连接到一个鼓的麦克风支架。

    System and method for redirected firewall discovery in a network environment
    7.
    发明授权
    System and method for redirected firewall discovery in a network environment 有权
    网络环境中重定向防火墙发现的系统和方法

    公开(公告)号:US08713668B2

    公开(公告)日:2014-04-29

    申请号:US13275249

    申请日:2011-10-17

    IPC分类号: H04L29/06

    摘要: A method is provided in one example embodiment that includes receiving metadata from a host over a metadata channel. The metadata may be correlated with a network flow and a network policy may be applied to the connection. In other embodiments, a network flow may be received from a host without metadata associated with the flow, and a discovery redirect may be sent to the host. Metadata may then be received and correlated with the flow to identify a network policy action to apply to the flow.

    摘要翻译: 在一个示例实施例中提供了一种方法,其包括通过元数据信道从主机接收元数据。 元数据可以与网络流相关联,并且网络策略可以应用于连接。 在其他实施例中,可以从主机接收没有与流相关联的元数据的网络流,并且可以向主机发送发现重定向。 然后可以接收元数据并与流相关联,以识别应用于流的网络策略动作。

    SYSTEM AND METHOD FOR REDIRECTED FIREWALL DISCOVERY IN A NETWORK ENVIRONMENT
    8.
    发明申请
    SYSTEM AND METHOD FOR REDIRECTED FIREWALL DISCOVERY IN A NETWORK ENVIRONMENT 有权
    网络环境中重定向防火发现的系统与方法

    公开(公告)号:US20130097658A1

    公开(公告)日:2013-04-18

    申请号:US13275249

    申请日:2011-10-17

    IPC分类号: G06F21/00

    摘要: A method is provided in one example embodiment that includes receiving metadata from a host over a metadata channel. The metadata may be correlated with a network flow and a network policy may be applied to the connection. In other embodiments, a network flow may be received from a host without metadata associated with the flow, and a discovery redirect may be sent to the host. Metadata may then be received and correlated with the flow to identify a network policy action to apply to the flow.

    摘要翻译: 在一个示例实施例中提供了一种方法,其包括通过元数据信道从主机接收元数据。 元数据可以与网络流相关联,并且网络策略可以应用于连接。 在其他实施例中,可以从主机接收没有与流相关联的元数据的网络流,并且可以向主机发送发现重定向。 然后可以接收元数据并与流相关联,以识别应用于流的网络策略动作。

    System and method for determining and using local reputations of users and hosts to protect information in a network environment
    9.
    发明授权
    System and method for determining and using local reputations of users and hosts to protect information in a network environment 有权
    用于确定和使用用户和主机的本地声誉以保护网络环境中的信息的系统和方法

    公开(公告)号:US08931043B2

    公开(公告)日:2015-01-06

    申请号:US13443865

    申请日:2012-04-10

    IPC分类号: G06F21/00 G06F15/16

    摘要: A method in an example embodiment includes correlating a first set of event data from a private network and determining a local reputation score of a host in the private network based on correlating the first set of event data. The method further includes providing the local reputation score of the host to a security node, which applies a policy, based on the local reputation score of the host, to a network communication associated with the host. In specific embodiments, the local reputation score of the host is mapped to a network address of the host. In further embodiments, the first set of event data includes one or more event indicators representing one or more events, respectively, in the private network. In more specific embodiments, the method includes determining a local reputation score of a user and providing the local reputation score of the user to the security node.

    摘要翻译: 一个示例性实施例中的方法包括:将来自专用网络的第一组事件数据相关联,并且基于将第一组事件数据相关联来确定专用网络中的主机的本地信誉评分。 该方法还包括将主机的本地信誉评分提供给安全节点,安全节点将基于主机的本地信誉得分的策略应用于与主机相关联的网络通信。 在具体实施例中,主机的本地信誉得分映射到主机的网络地址。 在另外的实施例中,第一组事件数据包括分别表示专用网络中的一个或多个事件的一个或多个事件指示符。 在更具体的实施例中,该方法包括确定用户的本地信誉得分并将用户的本地信誉评分提供给安全节点。

    SYSTEM AND METHOD FOR REDIRECTED FIREWALL DISCOVERY IN A NETWORK ENVIRONMENT
    10.
    发明申请
    SYSTEM AND METHOD FOR REDIRECTED FIREWALL DISCOVERY IN A NETWORK ENVIRONMENT 有权
    网络环境中重定向防火发现的系统与方法

    公开(公告)号:US20140237584A1

    公开(公告)日:2014-08-21

    申请号:US14263164

    申请日:2014-04-28

    IPC分类号: H04L29/06

    摘要: A method is provided in one example embodiment that includes receiving metadata from a host over a metadata channel. The metadata may be correlated with a network flow and a network policy may be applied to the connection. In other embodiments, a network flow may be received from a host without metadata associated with the flow, and a discovery redirect may be sent to the host. Metadata may then be received and correlated with the flow to identify a network policy action to apply to the flow.

    摘要翻译: 在一个示例实施例中提供了一种方法,其包括通过元数据信道从主机接收元数据。 元数据可以与网络流相关联,并且网络策略可以应用于连接。 在其他实施例中,可以从主机接收没有与流相关联的元数据的网络流,并且可以向主机发送发现重定向。 然后可以接收元数据并与流相关联,以识别应用于流的网络策略动作。