发明名称 SYSTEM AND METHOD FOR LIMITING DATA LEAKAGE IN AN APPLICATION FIREWALL
摘要 System and methods for connection processing with limited data leakage. The system records state associated with a connection request in a connection state engine, records state associated with a connection acknowledgement in the connection state engine, stores data sent after the connection acknowledgement in a buffer and determines, without a proxy, whether to allow or deny a connection as a function of the data stored in the buffer.
申请公布号 US2016043995(A1) 申请公布日期 2016.02.11
申请号 US201514923084 申请日期 2015.10.26
申请人 McAfee, Inc. 发明人 Meyer Paul;Diehl David;Minear Spencer
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A system for determining whether to allow a connection between a first computer and a second computer, comprising: a receiver, operable to receive data into a buffer from one of the first computer or the second computer; and a connection state engine, operable to: record connection state information responsive to receipt of an acknowledgement by the second computer of a connection request from the first computer;read the data from the buffer;apply a security policy to the data; anddeny use of the connection between the first computer and the second computer without forwarding the data, based on the application of the security policy to the data.
地址 Santa Clara CA US