发明名称 System and method for integrated header, state, rate and content anomaly prevention with policy enforcement
摘要 The present invention provides an integrated prevention of header, state, rate and content anomalies along with network policy enforcement. A hardware based apparatus classifies layers 2, 3, 4 and 7 network data and maintains rate-thresholds through continuous and adaptive learning. In the process of classifying the packets, the apparatus can determine header and state anomalies and drop packets containing those anomalies. Accurate detection and prevention of layer 7 content anomalies is achieved using fragment assembly, TCP reorder and retransmission removal components, which also identify anomalies in those areas. Content inspection is achieved at high speed through a Content Inspection Engine. The apparatus integrates advantageous solutions to prevent anomalous packets and enables a policy based packet filter.
申请公布号 US7602731(B2) 申请公布日期 2009.10.13
申请号 US20040021637 申请日期 2004.12.22
申请人 INTRUGUARD DEVICES, INC. 发明人 JAIN HEMANT KUMAR
分类号 H04L12/26;H04L9/32 主分类号 H04L12/26
代理机构 代理人
主权项
地址