Managing firewall rules based on triggering statistics
US11258816B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Aug 21, 2019 |
| Grant date | Feb 22, 2022 |
| Priority date | — |
| Expiry date | Jan 12, 2040 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04W12/08
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Embodiments described herein relate to managing firewall rules. Embodiments include identifying a plurality of firewall rules for request handling. Embodiments include determining a deny count for each given firewall rule of the plurality of firewall rules based on a number of requests flagged on account of the given firewall rule. Embodiments include determining an anomaly score for each given firewall rule of the plurality of firewall rules indicating a severity of attacks the given firewall rule protects against. Embodiments include determining an urgency measure for each given firewall rule of the plurality of firewall rules based on the deny count for the given firewall rule and the anomaly score for the given firewall rule. Embodiments include determining an update to at least one firewall rule of the plurality of firewall rules based on the urgency measure for each given firewall rule of the plurality of firewall rules.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.