Packet tagging for improved guest system security
US9948611B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Feb 5, 2016 |
| Grant date | Apr 17, 2018 |
| Priority date | — |
| Expiry date | Apr 30, 2036 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L43/20
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Some embodiments provide a novel method for monitoring network requests from a machine. The method captures the network request at various layers of a protocol stack. At a first layer of a protocol stack, the method tags a packet related to the network request with a tag value, maps the tag value to a set of tuples associated with the packet, and sends a first set of data related to the packet to a security engine. At a second layer of the protocol stack, the method determines whether the packet has been modified through the protocol stack, and sends an updated second set of data to the security engine when the packet has been modified.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.