-
公开(公告)号:US20130014253A1
公开(公告)日:2013-01-10
申请号:US13177504
申请日:2011-07-06
申请人: Vivian Neou , Robert S. Wilbourn , Handong Wu , Eileen Liu , Colleen Shannon , Sam Bretheim
发明人: Vivian Neou , Robert S. Wilbourn , Handong Wu , Eileen Liu , Colleen Shannon , Sam Bretheim
IPC分类号: G06F21/20 , G06F15/173
CPC分类号: H04L63/1441 , H04L2463/144
摘要: A network protection method is provided. The network protection method may include receiving a Domain Name System (DNS) request, logging the DNS request, classifying the DNS request based on an analysis of a DNS name associated with the DNS request, taking a security action based on the classification, analyzing network traffic after taking the security action, and providing substantially real-time feedback associated with the network traffic to improve future DNS request classifications. The method may further include receiving a DNS response and logging the DNS response. The analysis of the DNS name may include receiving DNS data related to the DNS name from a plurality of sources, receiving reputation data related to the plurality of sources, scoring each of the plurality of sources based on the reputation data, and aggregating the DNS data related to the DNS name based on the scoring.
摘要翻译: 提供网络保护方法。 网络保护方法可以包括接收域名系统(DNS)请求,记录DNS请求,基于与DNS请求相关联的DNS名称的分析来分类DNS请求,基于分类采取安全动作,分析网络 采取安全措施后的流量,并提供与网络流量相关联的实质性实时反馈,以改进未来的DNS请求分类。 该方法还可以包括接收DNS响应并记录DNS响应。 DNS名称的分析可以包括从多个源接收与DNS名称有关的DNS数据,接收与多个源相关的信誉数据,基于该信誉数据对多个源中的每一个进行评分,并且聚合DNS数据 相关的DNS名称基于得分。
-
公开(公告)号:US09185127B2
公开(公告)日:2015-11-10
申请号:US13177504
申请日:2011-07-06
申请人: Vivian Neou , Robert S. Wilbourn , Handong Wu , Eileen Liu , Colleen Shannon , Sam Bretheim
发明人: Vivian Neou , Robert S. Wilbourn , Handong Wu , Eileen Liu , Colleen Shannon , Sam Bretheim
CPC分类号: H04L63/1441 , H04L2463/144
摘要: A network protection method is provided. The network protection method may include receiving a Domain Name System (DNS) request, logging the DNS request, classifying the DNS request based on an analysis of a DNS name associated with the DNS request, taking a security action based on the classification, analyzing network traffic after taking the security action, and providing substantially real-time feedback associated with the network traffic to improve future DNS request classifications. The method may further include receiving a DNS response and logging the DNS response. The analysis of the DNS name may include receiving DNS data related to the DNS name from a plurality of sources, receiving reputation data related to the plurality of sources, scoring each of the plurality of sources based on the reputation data, and aggregating the DNS data related to the DNS name based on the scoring.
摘要翻译: 提供网络保护方法。 网络保护方法可以包括接收域名系统(DNS)请求,记录DNS请求,基于与DNS请求相关联的DNS名称的分析来分类DNS请求,基于分类采取安全动作,分析网络 采取安全措施后的流量,并提供与网络流量相关联的实质性实时反馈,以改进未来的DNS请求分类。 该方法还可以包括接收DNS响应并记录DNS响应。 DNS名称的分析可以包括从多个源接收与DNS名称有关的DNS数据,接收与多个源相关的信誉数据,基于该信誉数据对多个源中的每一个进行评分,并且聚合DNS数据 相关的DNS名称基于得分。
-
公开(公告)号:US20120254996A1
公开(公告)日:2012-10-04
申请号:US13077934
申请日:2011-03-31
CPC分类号: H04L61/1511 , H04L61/6009 , H04L63/1441
摘要: Systems and methods for resolving domain name system (DNS) queries are provided herein. Methods may include receiving a DNS query from a DNS client via a DNS server, responsive to the DNS query, generating the DNS response utilizing the at least one policy associated with the view, providing the DNS response to the DNS client from which the DNS query was received, and storing the DNS response in a shared cache, the shared cache including previously generated DNS responses that are available to the DNS server, wherein previously generated DNS responses may be provided to DNS clients upon receiving a DNS query corresponding to at least one of the previously generated DNS responses.
摘要翻译: 本文提供了解决域名系统(DNS)查询的系统和方法。 方法可以包括:响应于DNS查询,通过DNS服务器从DNS客户端接收DNS查询,利用与该视图相关联的至少一个策略来生成DNS响应,向DNS客户端提供DNS响应,DNS客户端从其中查询DNS查询 并且将DNS响应存储在共享缓存中,共享缓存包括可用于DNS服务器的先前生成的DNS响应,其中先前生成的DNS响应可以在接收到对应于至少一个的DNS查询时提供给DNS客户端 的以前生成的DNS响应。
-
公开(公告)号:US08707429B2
公开(公告)日:2014-04-22
申请号:US13077934
申请日:2011-03-31
IPC分类号: G06F21/00
CPC分类号: H04L61/1511 , H04L61/6009 , H04L63/1441
摘要: Systems and methods for resolving domain name system (DNS) queries are provided herein. Methods may include receiving a DNS query from a DNS client via a DNS server, responsive to the DNS query, generating the DNS response utilizing the at least one policy associated with the view, providing the DNS response to the DNS client from which the DNS query was received, and storing the DNS response in a shared cache, the shared cache including previously generated DNS responses that are available to the DNS server, wherein previously generated DNS responses may be provided to DNS clients upon receiving a DNS query corresponding to at least one of the previously generated DNS responses.
摘要翻译: 本文提供了解决域名系统(DNS)查询的系统和方法。 方法可以包括:响应于DNS查询,通过DNS服务器从DNS客户端接收DNS查询,利用与该视图相关联的至少一个策略来生成DNS响应,向DNS客户端提供DNS响应,DNS客户端从其中查询DNS查询 并且将DNS响应存储在共享缓存中,共享缓存包括可用于DNS服务器的先前生成的DNS响应,其中先前生成的DNS响应可以在接收到对应于至少一个的DNS查询时提供给DNS客户端 的以前生成的DNS响应。
-
-
-