×

Programmable context aware firewall with integrated intrusion detection system

  • US 20050229246A1
  • Filed: 03/31/2004
  • Published: 10/13/2005
  • Est. Priority Date: 03/31/2004
  • Status: Abandoned Application
First Claim
Patent Images

1. A method comprising:

  • receiving at least one protocol state machine definition for a network protocol, said protocol state machine definition including a plurality of protocol state rules;

    parsing the at least one protocol state machine definition to form a set of parsed protocol state rules, said parsed protocol state rules including at least one condition and at least one action associated with the condition;

    storing a set of filters in a filter database;

    receiving a network flow, said flow including a plurality of packets; and

    applying the parsed protocol state rules to the plurality of packets in the network flow;

    wherein the at least one action comprises the instantiation of a filter from the set of filters.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×