Network Eavesdropping Detection
First Claim
1. A method comprising:
- receiving a series of impedance values for a communication line over a time period;
calculating a baseline impedance as a function of the series of impedance values;
receiving an impedance measurement generated after the time period;
calculating a difference between the impedance measurement and the baseline impedance;
comparing the difference to a threshold impedance tolerance; and
generate a warning message when the absolute value of the difference exceeds the threshold impedance tolerance.
1 Assignment
0 Petitions
Accused Products
Abstract
In one implementation, network taps are detected using impedance measurements from a network. A network device is configured to calculate a baseline impedance as a function of a sequence of impedance values. As impedance measurements subsequent to the sequence of impedance values are received, the network device is configured to calculate a difference between the impedance measurement and the baseline impedance. The network device generates a network tap warning message when the difference between the impedance measurement and the baseline impedance exceeds a threshold. The network device may be an endpoint computer, a data switch, or an external device remote from the network.
-
Citations
20 Claims
-
1. A method comprising:
-
receiving a series of impedance values for a communication line over a time period; calculating a baseline impedance as a function of the series of impedance values; receiving an impedance measurement generated after the time period; calculating a difference between the impedance measurement and the baseline impedance; comparing the difference to a threshold impedance tolerance; and generate a warning message when the absolute value of the difference exceeds the threshold impedance tolerance. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11)
-
-
12. An apparatus comprising:
-
a communication interface configured to receive a series of impedance values for a communication line over a time period; and a controller configured to calculate a baseline impedance as a function of the series of impedance values and a difference between a current impedance measurement and the baseline impedance, wherein an alert is generated when the difference between the current impedance measurement and the baseline impedance exceeds a threshold impedance tolerance, wherein the alert indicates that a network tap may be coupled with the communication interface. - View Dependent Claims (13, 14, 15, 16, 17)
-
-
18. A non-transitory computer readable medium including instructions that when executed by a processor are operable to:
-
receive an impedance measurement; detect a network tap as a function of the impedance measurement; generate a network tap warning message in response to the detection of the network tap; and send the network tap warning message to a cloud service. - View Dependent Claims (19, 20)
-
Specification