Patent · US Active

Network protection service

US9185127B2 · kind B2 · utility

108Cited by
11References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 6, 2011
Grant dateNov 10, 2015
Priority date
Expiry dateOct 22, 2031

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2463/144
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A network protection method is provided. The network protection method may include receiving a Domain Name System (DNS) request, logging the DNS request, classifying the DNS request based on an analysis of a DNS name associated with the DNS request, taking a security action based on the classification, analyzing network traffic after taking the security action, and providing substantially real-time feedback associated with the network traffic to improve future DNS request classifications. The method may further include receiving a DNS response and logging the DNS response. The analysis of the DNS name may include receiving DNS data related to the DNS name from a plurality of sources, receiving reputation data related to the plurality of sources, scoring each of the plurality of sources based on the reputation data, and aggregating the DNS data related to the DNS name based on the scoring.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.