AUTOMATED SECURITY POLICY ENFORCEMENT AND AUDITING
First Claim
1. A method of managing a connection to or from a device, the method comprising the steps of:
- a computer identifying connections of the device;
based on the connections, the computer determining and classifying the device based on security zones to which the device is or has been connected, a quality of service requirement for one or more applications within the device, or a level of information technology service management (ITSM) for the device;
the computer determining whether an existing or proposed connection of the device is consistent with the classification of the device, and if not, the computer displaying an indication or sending a notification that the existing or proposed connection is inconsistent with the classification of the device.
1 Assignment
0 Petitions
Accused Products
Abstract
An approach for managing a connection to or from a device is presented. Connections of the device are identified. Based on the connections, the device is determined and classified based on security zones to which the device is or has been connected, a quality of service requirement for one or more applications within the device, or a level of information technology service management for the device. Whether an existing or proposed connection of the device is consistent with the classification of the device is determined, and if not, an indication is displayed or a notification is sent that the existing or proposed connection is inconsistent with the classification of the device.
60 Citations
20 Claims
-
1. A method of managing a connection to or from a device, the method comprising the steps of:
-
a computer identifying connections of the device; based on the connections, the computer determining and classifying the device based on security zones to which the device is or has been connected, a quality of service requirement for one or more applications within the device, or a level of information technology service management (ITSM) for the device; the computer determining whether an existing or proposed connection of the device is consistent with the classification of the device, and if not, the computer displaying an indication or sending a notification that the existing or proposed connection is inconsistent with the classification of the device. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10)
-
-
11. A computer system for managing a connection to or from a device, the computer system comprising:
-
a CPU; a computer-readable memory; a computer-readable storage device; first program instructions to identify connections of the device; second program instructions to, based on the connections, determine and classify the device based on security zones to which the device is or has been connected, a quality of service requirement for one or more applications within the device, or a level of information technology service management (ITSM) for the device; third program instructions to determine whether an existing or proposed connection of the device is consistent with the classification of the device, and if not, display an indication or send a notification that the existing or proposed connection is inconsistent with the classification of the device, wherein the first, second, and third program instructions are stored on the computer-readable storage device for execution by the CPU via the computer-readable memory. - View Dependent Claims (12, 13, 14, 15)
-
-
16. A computer program product for managing a connection to or from a device, the computer program product comprising:
-
computer-readable storage device(s); and computer-readable program instructions stored on the computer-readable storage device(s), the computer-readable program instructions when executed by a CPU; identify connections of the device; based on the connections, determine and classify the device based on security zones to which the device is or has been connected, a quality of service requirement for one or more applications within the device, or a level of information technology service management (ITSM) for the device; determine whether an existing or proposed connection of the device is consistent with the classification of the device, and if not, display an indication or send a notification that the existing or proposed connection is inconsistent with the classification of the device. - View Dependent Claims (17, 18, 19, 20)
-
Specification