发明名称 METHODS AND SYSTEMS FOR CONTEXT-BASED APPLICATION FIREWALLS
摘要 Context-based application firewall functionality. A user session is initiated with a client device. The user session allows access a remote resource on a server device coupled with the client device over a network. The connection between the client device and the remote resource is through an application firewall. An application firewall context setup is performed with the application firewall in response to the user session. The application firewall context comprises firewall context information to be used during the user session to perform network and application security operations with the application firewall. A response is created to provide information from the remote resource to the client device. The response includes metadata to be used to update the firewall context information. The firewall context information is updated with the application firewall based on the metadata. The response is transmitted to the client device.
申请公布号 US2016308835(A1) 申请公布日期 2016.10.20
申请号 US201615194429 申请日期 2016.06.27
申请人 salesforce.com, inc. 发明人 Gluck Yoel
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method comprising: running an application level firewall on a hardware computing device in response to initiation of a user session to provide application level or higher analysis of network traffic and to utilize context information shared between the application level firewall and one or more applications to be used during the user session to perform network and application security operations with the application level firewall and at least one of the one or more applications to make security evaluations; receiving, with the application level firewall, a response to provide information from at least one application to at least one client hardware computing device, the response having at least metadata to be used to update the firewall context information; updating the context information using the application level firewall based on the metadata; and transmitting, with the application level firewall, the response to the client hardware computing device.
地址 San Francisco CA US