首页> 外国专利> Router based securing of internet of things devices on local area networks

Router based securing of internet of things devices on local area networks

机译:基于路由器的局域网上物联网设备的安全保护

摘要

IoT devices are secured on multiple local area networks. Each local network contains a router which monitors activities of IoT devices, and transmits corresponding information to a backend server. The backend amalgamates this information, calculates dynamic reputation scores, and determines expected authorized activities for specific IoT devices. Based thereon, the backend creates a constraint profile for each IoT device, and transits the constraint profiles to the routers for enforcement. Enforcing a constraint profile can include creating multiples VLANs with varying levels of restricted privileges on a given local area network, and isolating various IoT devices in specific VLANs based on their reputation scores. Constraint profiles can specify to enforce specific firewall rules, and/or to limit an IoT device's communication to specific domains and ports, and/or to specific content. The backend continues to receive monitored information concerning IoT devices from multiple routers over time, and periodically updates constraint profiles.
机译:物联网设备在多个局域网中得到保护。每个本地网络都包含一个路由器,该路由器监视IoT设备的活动,并将相应的信息传输到后端服务器。后端将这些信息合并,计算动态信誉评分,并确定特定物联网设备的预期授权活动。基于此,后端为每个IoT设备创建约束配置文件,并将约束配置文件传输到路由器以实施。实施约束配置文件可以包括在给定的局域网上创建具有不同级别的受限特权的多个VLAN,并根据其信誉得分将各种IoT设备隔离在特定VLAN中。约束配置文件可以指定强制执行特定的防火墙规则,和/或将IoT设备的通信限制为特定的域和端口和/或特定的内容。随着时间的推移,后端将继续从多个路由器接收有关IoT设备的受监视信息,并定期更新约束配置文件。

著录项

  • 公开/公告号US9565192B2

    专利类型

  • 公开/公告日2017-02-07

    原文格式PDF

  • 申请/专利权人 SYMANTEC CORPORATION;

    申请/专利号US201514747896

  • 发明设计人 BRUCE MCCORKENDALE;SRINIVAS CHILLAPPA;

    申请日2015-06-23

  • 分类号G06F9/00;H04L29/06;

  • 国家 US

  • 入库时间 2022-08-21 13:41:14

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号