Patent · US Active

System and method for detection of aberrant network behavior by clients of a network access gateway

US7590728B2 · kind B2 · utility

21Cited by
61References
16Claims
0Family size

Assignee

Inventor

Key dates

Filing dateMar 10, 2005
Grant dateSep 15, 2009
Priority date
Expiry dateAug 17, 2026

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0227
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A system and method for detecting aberrant network behavior. One embodiment provides a system of detecting aberrant network behavior behind a network access gateway comprising a processor, a first network interface coupled to the processor, a second network interface coupled to the processor, a storage media accessible by the processor and a set of computer instructions executable by the processor. The computer instructions can be executable to observe network communications arriving at the first network interface from multiple clients and determine when the traffic of a particular client is indicative of malware infection or other hostile network activity. If the suspicious network communication is determined to be of a sufficient volume, type, or duration the computer instructions can be executable to log such activity to storage media, or to notify an administrative entity via either the first network interface or second network interface, or to make the computer instructions be executable to perform other configured actions related to the functioning of the network access gateway.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.