发明名称 |
Data leak protection |
摘要 |
Methods and systems for Data Leak Prevention (DLP) in an enterprise network are provided. According to one embodiment, a data leak protection method is provided. Information regarding a watermark filtering rule is received by a network security device. The information includes a sensitivity level and an action to be applied to files observed by the network security device that match the watermark filtering rule. A file attempted to be passed through the network security device is received by the network security device. A watermark embedded within the received file is detected by the network security device. A sensitivity level associated with the watermark is compared by the network security device to the sensitivity level of the watermark. When the comparison results in a match, then the action specified by the watermark filtering rule is performed by the network security device. |
申请公布号 |
US9497192(B2) |
申请公布日期 |
2016.11.15 |
申请号 |
US201514971340 |
申请日期 |
2015.12.16 |
申请人 |
Fortinet, Inc. |
发明人 |
Nelson Michael D.;Xie Michael |
分类号 |
G06F7/04;H04L29/06;G06F21/16 |
主分类号 |
G06F7/04 |
代理机构 |
Hamilton, DeSanctis & Cha LLP |
代理人 |
Hamilton, DeSanctis & Cha LLP |
主权项 |
1. A data leak protection method comprising:
receiving, by a network security device protecting an enterprise network, information regarding a watermark filtering rule, including a sensitivity level and an action to be applied to files observed by the network security device satisfying the watermark filtering rule; receiving, by the network security device, network traffic originating within the enterprise network, directed to a destination device residing outside of the enterprise network and containing a file attempted to be passed through the network security device; extracting, by the network security device, a watermark embedded within the received file; comparing, by the network security device, a sensitivity level associated with the watermark to the sensitivity level of the watermark filtering rule; and when the comparing results in a match, then performing, by the network security device, the action specified by the watermark filtering rule. |
地址 |
Sunnyvale CA US |