首页> 外国专利> System and methods for securing port to port communications on Layer 2 Ethernet switching devices.

System and methods for securing port to port communications on Layer 2 Ethernet switching devices.

机译:用于在第二层以太网交换设备上保护端口到端口通信的系统和方法。

摘要

The invention uses a layer 2 Ethernet switching device to establish two new port types, ‘trusted ports’ and ‘un-trusted ports’. Devices connected to trusted ports on the switch (such as centrally managed file, email, print, and web servers) are permitted by default to transmit to and receive data from any device attached to the switch, whether attached to a trusted or an un-trusted port. Devices connected to un-trusted ports (such as end-user laptops, workstations, mobile devices, and other systems at greater risk of virus and worm infection), are permitted only to establish connections to devices attached to the trusted ports on the switch. The premise of the invention is provide a simplified system and methods to safeguard the confidentially, availability, and integrity of network-based information assets by reducing the total number of computer systems that an unauthorized user or application (e.g., hacker, worm, or virus) can connect to and attempt to exploit vulnerabilities on.
机译:本发明使用第二层以太网交换设备来建立两个新的端口类型,“可信端口”和“不可信端口”。默认情况下,连接到交换机上受信任端口的设备(例如集中管理的文件,电子邮件,打印和Web服务器)被允许与连接到交换机的任何设备(无论是连接到受信任的设备还是未连接到设备的设备)进行数据收发受信任的端口。连接到不受信任端口的设备(例如,最终用户的笔记本电脑,工作站,移动设备和其他病毒和蠕虫感染风险更大的系统)仅允许建立与连接到交换机受信任端口的设备的连接。本发明的前提是提供一种简化的系统和方法,以通过减少未经授权的用户或应用程序(例如,黑客,蠕虫或病毒)的计算机系统总数来保护基于网络的信息资产的机密性,可用性和完整性。 )可以连接并尝试利用其上的漏洞。

著录项

  • 公开/公告号US2006080739A1

    专利类型

  • 公开/公告日2006-04-13

    原文格式PDF

  • 申请/专利权人 TIMOTHY PETER LAWTON;

    申请/专利号US20040711856

  • 发明设计人 TIMOTHY PETER LAWTON;

    申请日2004-10-10

  • 分类号H04N7/16;

  • 国家 US

  • 入库时间 2022-08-21 21:47:35

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号