Patent · US Active

Techniques for network protection based on subscriber-aware application proxies

US8266696B2 · kind B2 · utility

6Cited by
16References
34Claims
0Family size

Assignee

Inventors

Key dates

Filing dateNov 14, 2005
Grant dateSep 11, 2012
Priority date
Expiry dateFeb 14, 2029

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1441
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Techniques for responding to intrusions on a packet switched network include receiving user data at a subscriber-aware gateway server between a network access server and a content server. The user data includes subscriber identifier data that indicates a unique identifier for a particular user, network address data that indicates a network address for a host used by the particular user, NAS data that indicates an identifier for the network access server, flow list data that indicates one or more open data packet flows, and suspicious activity data. The suspicious activity data indicates a value for a property of the open data packet flows that indicates suspicious activity. It is determined whether an intrusion condition is satisfied based on the suspicious activity data. If the intrusion condition is satisfied, then the gateway responds based at least in part on user data other than the network address data.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.