×

Network service zone locking

  • US 20040088571A1
  • Filed: 03/25/2002
  • Published: 05/06/2004
  • Est. Priority Date: 01/31/2002
  • Status: Active Grant
First Claim
Patent Images

1. A method for determining unauthorized network usage, comprising the steps of:

  • receiving internal zone data by classification of internal hosts into internal zones;

    receiving unauthorized zone data, the unauthorized zone data specifies which designated internal zones are not authorized to communicate with associated unauthorized internal zones;

    receiving override service data, the override service data specifies particular network services in which designated internal zones are authorized to participate with the associated unauthorized internal zones;

    monitoring network communications;

    capturing header information from monitored network communications;

    determining which internal hosts are participating in the monitored network communications based on captured header information;

    determining the internal zones participating in the monitored zone communications based upon the zone data;

    determining unauthorized network usage based upon the unauthorized internal zone data and the override service data; and

    generating an alarm upon detection of unauthorized network usage.

View all claims
  • 13 Assignments
Timeline View
Assignment View
    ×
    ×