首页> 外国专利> Methods, network services, and computer program products for recommending security policies to firewalls

Methods, network services, and computer program products for recommending security policies to firewalls

机译:向防火墙推荐安全策略的方法,网络服务和计算机程序产品

摘要

Recommending a security policy to a firewall, includes receiving a request from a firewall for a recommendation as to whether the firewall should allow or block a detected present communication for which the firewall does not have an existing security policy. Information about past blocked and allowed communications at other firewalls on a network is searched to identify past communications that are similar to the present communication. The identified past communications are assigned a respective positive or negative vote. A positive vote indicates a past communication was allowed and a negative vote indicates a past communication was not allowed. A positive recommendation is sent to the requesting firewall to allow the present communication if the positive votes outnumber the negative votes, and a negative recommendation is sent to the requesting firewall to block the present communication if the negative votes outnumber the positive votes.
机译:将安全策略推荐给防火墙,包括接收来自防火墙的请求,以请求有关防火墙是否应允许或阻止检测到的当前通信的建议,而该通信没有防火墙现有的安全策略。搜索关于网络上其他防火墙上过去的阻止和允许的通信的信息,以识别类似于当前通信的过去的通信。所识别的过去的通信被分配相应的正面或负面投票。赞成票表示允许过去的通讯,反对票表示不允许过去的通讯。如果肯定票数超过否定票数,则将肯定建议发送到请求防火墙以允许当前通信,如果否定票数超过肯定票数,则将否定建议发送到请求防火墙以阻止当前通信。

著录项

  • 公开/公告号US8255985B2

    专利类型

  • 公开/公告日2012-08-28

    原文格式PDF

  • 申请/专利权人 JEFFREY AARON;

    申请/专利号US20060598490

  • 发明设计人 JEFFREY AARON;

    申请日2006-11-13

  • 分类号H04L29/06;

  • 国家 US

  • 入库时间 2022-08-21 17:28:19

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号