Patent · US Active

Domain name system security network

US8375120B2 · kind B2 · utility

9Cited by
3References
12Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMay 19, 2006
Grant dateFeb 12, 2013
Priority date
Expiry dateNov 1, 2031

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L61/4511
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

In one embodiment, a DNS security network includes several DNS appliances and a security operations center (SOC) server computer. The SOC server computer may receive telemetry data from the DNS appliances, the telemetry data comprising information about DNS client queries received in the respective DNS appliances. From the telemetry data, the SOC server computer may generate security policies for distribution to the DNS appliances. The security policies may be used by the DNS appliances to determine whether a DNS client query is originated by a client computer performing a prohibited activity (e.g., sending spam, communicating with a zombie control computer, navigating to a prohibited website, etc.). An answer to a client query may be replaced or discarded altogether in cases where the originator is performing a prohibited activity.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.