Patent · US Active

Methods and systems for API proxy based adaptive security

US10193867B2 · kind B2 · utility

20Cited by
1References
8Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMay 25, 2016
Grant dateJan 29, 2019
Priority date
Expiry dateJul 31, 2036

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L69/40
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

The invention concerns API proxy based adaptive security. The invention implements adaptive security for API servers, while avoiding data bottlenecks and maintaining client experience. The invention provides methods and configurations for API security that may be employed at proxies for implementing routing decisions involving client messages received at said proxies. The invention also involves generating or collecting at proxies, log information that captures data corresponding to received client messages and responses from API servers—which log information correlates communications between clients, proxies and backend API servers, and includes data relevant for purposes generating API metrics and identifying anomalies and/or indicators of compromise. The invention yet further provides security server clusters configured for generating API metrics and/or identify anomalies or indicators of compromise—which may be used by proxies to terminate existing connections and block subsequent requests or messages from clients associated with the identified anomalies or indicators of compromise.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.