Method and system for authentication event security policy generation
    1.
    发明申请
    Method and system for authentication event security policy generation 有权
    生成认证事件安全策略的方法和系统

    公开(公告)号:US20050216956A1

    公开(公告)日:2005-09-29

    申请号:US10887213

    申请日:2004-07-08

    IPC分类号: H04L9/00 H04L29/06

    摘要: Technique for protecting a communications network, such a computer network, from attack such as self-propagating code violations of security policies, in which the network is divided into “compartments” that are separated by access control devices such as firewalls. The access control devices are then used to stop the spread of self-propagating attack code, the “zero-day” worms, for example. However, the access control devices are configured such that upon activation legitimate in-use network services will not be jeopardized.

    摘要翻译: 用于保护通信网络(诸如计算机网络)的技术免于诸如自蔓延代码违反安全策略的攻击,其中网络被分成由诸如防火墙的访问控制设备分隔的“隔间”。 然后,访问控制设备用于例如停止自传播攻击代码的传播,即“零日”蠕虫。 然而,访问控制设备被配置为使得在激活时将不会危及合法的在用网络服务。

    Method and system for reducing scope of self-propagating attack code in network
    2.
    发明申请
    Method and system for reducing scope of self-propagating attack code in network 有权
    减少网络中自传攻击码范围的方法和系统

    公开(公告)号:US20050005017A1

    公开(公告)日:2005-01-06

    申请号:US10684964

    申请日:2003-10-14

    IPC分类号: H04L29/06 G06F15/16 H04L9/00

    CPC分类号: H04L63/029 H04L63/1408

    摘要: Technique for protecting a communications network, such a computer network, from attack such as self-propagating code violations of security policies, in which the network is divided into “compartments” that are separated by access control devices such as firewalls. The access control devices are then used to stop the spread of self-propagating attack code, the “zero-day” worms, for example. However, the access control devices are configured such that upon activation legitimate in-use network services will not be jeopardized.

    摘要翻译: 用于保护通信网络(诸如计算机网络)的技术免于诸如自蔓延代码违反安全策略的攻击,其中网络被分成由诸如防火墙的访问控制设备分隔的“隔间”。 然后,访问控制设备用于例如停止自传播攻击代码的传播,即“零日”蠕虫。 然而,访问控制设备被配置为使得在激活时将不会危及合法的在用网络服务。