×

Firewall method and apparatus for industrial systems

  • US 20060155865A1
  • Filed: 01/06/2006
  • Published: 07/13/2006
  • Est. Priority Date: 01/06/2005
  • Status: Active Grant
First Claim
Patent Images

1. A method for use with a system including networked resources where communication between resources is via at least first and second protocols wherein the first protocol includes a first protocol packet including a source identifier, a first protocol destination identifier that indicates a first protocol destination resource and a first protocol data field, the second protocol including a second protocol packet including at least one second protocol destination identifier that indicates a second protocol destination resource and a second protocol data field, wherein at least some communication between resources includes first protocol packets including second protocol packets embedded in the first protocol data fields, packet transmitting and receiving resources being source and destination resources, respectively, the method for controlling communication between resources and comprising the steps of:

  • specifying access control information for at least a subset of the resources;

    for each first protocol packet transmitted on the network that includes a second protocol packet embedded in the first protocol data field;

    (i) intercepting the first protocol packet prior to the first protocol destination resource;

    (ii) examining at least a subset of the embedded second protocol packet information to identify the second protocol destination resource;

    (iii) identifying the access control information associated with the second protocol destination resource;

    (iv) identifying at least a subset of characteristics of the first protocol packet;

    (v) comparing the first protocol packet characteristics to the access control information associated with the second protocol destination resource; and

    (vi) restricting transmission of the first protocol packet as a function of the comparison results.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×