首页> 外国专利> UNIFIED SYSTEM FOR DETECTING POLICY ENFORCEMENT ISSUES IN A CLOUD-BASED ENVIRONMENT

UNIFIED SYSTEM FOR DETECTING POLICY ENFORCEMENT ISSUES IN A CLOUD-BASED ENVIRONMENT

机译:用于检测基于云的环境中的策略实施问题的统一系统

摘要

Disclosed is a unified security system of cloud-based components configured for (a) packet-level and (b) protocol-level access control and traffic inspection, (c) threat detection and (d) activity contextualization. Packet-level inspects and classifies headers in requests or responses, sets a first restrictive state or passes the request or response. Protocol-level performs deep packet inspection for malicious signatures then sets a second state or passes. Threat detection, when the request or response is an HTTP/S stream, classifies as directed to a threat destination or not, then sets a third state or passes the request or response and activity contextualization, when the request is an HTTP/S stream seeking access to a cloud-based application, recognizes, processes and classifies content-containing activity as compromising or not, then sets a fourth state or passes. A restrictive state analyzer determines whether the first, second, third or fourth restrictive state has been set and takes restrictive steps in response.
机译:Disclosed 是一个由基于云的组件组成的统一安全系统,配置用于 (a) 数据包级和 (b) 协议级访问控制和流量检查,(c) 威胁检测和 (d) 活动情境化。数据包级检查和分类请求或响应中的标头,设置第一个限制性状态或传递请求或响应。协议级对恶意签名执行深度数据包检测,然后设置第二种状态或通过。当请求或响应是 HTTP/S 流时,威胁检测会根据是否定向到威胁目标进行分类,然后设置第三种状态或传递请求或响应和活动上下文化,当请求是寻求访问基于云的应用程序的 HTTP/S 流时,识别、处理包含内容的活动并将其分类为是否妥协, 然后设置第四个状态或通过。限制性状态分析器确定是否设置了第一个、第二个、第三个或第四个限制性状态,并采取限制性步骤作为响应。

著录项

  • 公开/公告号US2022247785A1

    专利类型

  • 公开/公告日2022-08-04

    原文格式PDF

  • 申请/专利权人 NETSKOPE INC.;

    申请/专利号US202117163416

  • 发明设计人 KAND LY;AMIT GANESH DATAR;KARTIK SUBBANNA;

    申请日2021-01-30

  • 分类号H04L29/06;

  • 国家

  • 入库时间 2024-06-14 23:32:25

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号