PATTERN-BASED NETWORK DEFENSE MECHANISM
First Claim
Patent Images
1. A method comprising:
- tracking traffic flow patterns in a network independent from any payload data in the flow;
comparing the traffic flow patterns with a set of predefined patterns; and
triggering an event responsive to a match between a subset of the traffic flow patterns and the predefined patterns.
1 Assignment
0 Petitions
Accused Products
Abstract
Method, system and machine accessible medium for pattern based network defense. The traffic flow in a network is tracked independently form the payload data in the flow. The traffic flow pattern is compared with a set of predefined malicious traffic patterns descriptions. An event is triggered responsive to a match between a subset of the traffic patterns and the predefined malicious traffic descriptions.
-
Citations
23 Claims
-
1. A method comprising:
-
tracking traffic flow patterns in a network independent from any payload data in the flow; comparing the traffic flow patterns with a set of predefined patterns; and triggering an event responsive to a match between a subset of the traffic flow patterns and the predefined patterns. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8)
-
-
9. A system comprising:
-
an element to capture information about traffic flow; a data holder to retain traffic flow patterns independently from any payload data in the flow; an interface to receive malicious traffic patterns definitions; a comparator to compare the tracked traffic flow patterns with a set of the predefined patterns; and an interface to trigger an event in response to a match between a subset of the traffic flow patterns and the predefined patterns. - View Dependent Claims (10, 11, 12, 13, 14, 15)
-
-
16. A machine accessible medium that provides instructions that, if executed by a machine, will cause the machine to execute operations comprising:
-
tracking traffic flow patterns in a network independently from any payload data in the flow; comparing the traffic flow patterns with a set of predefined patterns; and triggering an event responsive to a match between a subset of the traffic flow patterns and the predefined patterns. - View Dependent Claims (17, 18, 19, 20, 21, 22, 23)
-
Specification