DNS based enforcement for confinement and detection of network malicious activities
US7984493B2 · kind B2 · utility
Assignee
Inventor
Key dates
| Filing date | Jul 22, 2005 |
| Grant date | Jul 19, 2011 |
| Priority date | — |
| Expiry date | Sep 10, 2029 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F16/122
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Malicious network activities do not make use of the Domain Name System (DNS) protocol to reach remote targets outside a local network. This DNS-based enforcement system for confinement and detection of network malicious activities requires that every connection toward a resource located outside the local network is blocked by default by the local enforcement box, e.g. a firewall or a proxy. Outbound connections are allowed to leave the local network only when authorized directly by an entity called the DNS Gatekeeper.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.