Destination address control to limit unauthorized communications
US9237027B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Mar 14, 2013 |
| Grant date | Jan 12, 2016 |
| Priority date | — |
| Expiry date | Jul 10, 2034 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L67/104
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Systems and methods for protecting a network including preventing data traffic from exiting the network unless a domain name request has been performed by a device attempting to transmit the data traffic. In an embodiment, a device within the protected network attempting to send data outside the protected network requests an address for a destination outside the protected network from a domain name server (DNS). In response, the DNS provides an address of the destination to the device and a gateway. In response to receiving the address, the gateway temporarily allows access to the address. In an embodiment, a DNS is coupled to a protected network and the gateway, the DNS provides an external address to a device in response to a request; and a mapping to the gateway; the gateway, coupled to a protected network and an external network, allows traffic according to the mapping.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.