发明名称 White-list firewall based on the document object model
摘要 Some embodiments provide firewalls and methods for guarding against attacks by leveraging the Document Object Model (DOM). The firewall renders the DOM tree to produce a white-list rendering of the data which presents the non-executable elements of the data and, potentially, outputs of the executable elements of the data without the executable elements that could be used to carry a security threat. Some embodiments provide control over which nodes of the DOM tree are included in producing the white-list rendering. Specifically, a configuration file is specified to white-list various nodes from the DOM tree and the white-list rendering is produced by including the DOM tree nodes that are specified in the white-list of the configuration file while excluding those nodes that are not in the white-list. Some embodiments provide a hybrid firewall that executes a set of black-list rules over white-listed nodes of the DOM tree.
申请公布号 US8601565(B1) 申请公布日期 2013.12.03
申请号 US201313939095 申请日期 2013.07.10
申请人 EDGECAST NETWORKS, INC. 发明人 SAKATA JAYSON G.;MAK JACQUELINE;KAZERANI ALEXANDER A.
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址