Patent · US Active

Systems and methods for performing targeted scanning of a target range of IP addresses to verify security certificates

US10630674B2 · kind B2 · utility

9Cited by
4References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateOct 2, 2018
Grant dateApr 21, 2020
Priority date
Expiry dateOct 2, 2038

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L61/5007
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

The present disclosure is directed towards systems and methods for scanning of a target range of IP addresses to verify security certificates associated with the target range of IP addresses. Network traffic may be monitored between a plurality of clients and a plurality of servers over an IP address space. Traffic monitors positioned intermediary to the plurality of client and the plurality of servers can identify a target range of IP addresses in the address space for targeted scanning. The target range of IP address may be grouped into a priority queue and a scan can be performed of the target range of IP addresses to verify a security certificate associated with each IP address in the target range of IP addresses. In some embodiments, a rogue security certificate is detected that is associated with at least one IP address in the target range of IP addresses.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.