发明名称 DOMAIN NAME SYSTEM SECURITY NETWORK
摘要 <p>In one embodiment, a DNS security network includes several DNS appliances (210) and a security operations center (SOC) server computer (260). The SOC server computer (260) may receive telemetry data (382) from the DNS appliances (210), the telemetry data (382) comprising information about DNS client queries received in the respective DNS appliances (210). From the telemetry data (382), the SOC server computer may generate security policies (381) for distribution to the DNS appliances (210). The security policies (381) may be used by the DNS appliances (210) to determine whether a DNS client query is originated by a client computer performing a prohibited activity (e.g., sending spam, communicating with a zombie control computer, navigating to a prohibited website, etc.). An answer to a client query may be replaced or discarded altogether in cases where the originator is performing a prohibited activity.</p>
申请公布号 WO2007062086(A2) 申请公布日期 2007.05.31
申请号 WO2006US45142 申请日期 2006.11.20
申请人 TREND MICRO INCORPORATED;RAND, DAVID, L.;ESTERS, SCOTT, D.;MORIARTY, PAUL, M.;SCHARF, GERALD, C. 发明人 RAND, DAVID, L.;ESTERS, SCOTT, D.;MORIARTY, PAUL, M.;SCHARF, GERALD, C.
分类号 G06F15/16 主分类号 G06F15/16
代理机构 代理人
主权项
地址