Patent · US Active

Enforcing a centralized, cryptographic network policy for various traffic at a host

US10382490B2 · kind B2 · utility

2Cited by
6References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 24, 2017
Grant dateAug 13, 2019
Priority date
Expiry dateAug 17, 2037

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/166
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A computer-implemented method includes monitoring a plurality of connections of a plurality of host applications at a host, where each connection of the plurality of connections carries network traffic associated with a respective host application of the plurality of host applications. A plurality of sets of security attributes are detected, and include a respective set of security attributes for each connection of the plurality of connections. The plurality of sets of security attributes are stored in a security database. From the security database, the respective set of security attributes of a first connection are compared to a centralized security policy. It is determined that the respective set of security attributes of the first connection do not meet the centralized security policy. A remedial action is performed on the first connection, responsive to the respective set of security attributes of the first connection not meeting the centralized security policy.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.