×

System and method for wireless local area network monitoring and intrusion detection

  • US 7,849,500 B2
  • Filed: 09/23/2008
  • Issued: 12/07/2010
  • Est. Priority Date: 09/23/2002
  • Status: Expired due to Fees
First Claim
Patent Images

1. A computer-implemented method for securing a computer network comprising a wired and wireless portion, the method comprising:

  • providing a security component within a wired portion of the computer network, wherein the security component is configured to control the bridging of network activity between the wireless portion and wired portion of the computer network; and

    through the security component;

    passively monitoring for network traffic between the wireless and wired portions of the computer network for unknown wireless devices;

    detecting network traffic between the wireless and wired portions of the computer network for an unknown wireless device;

    determining at least one identifying characteristic of the unknown wireless device by actively probing the unknown wireless device for an identifying characteristic;

    determining at least one behavioral characteristic of the unknown wireless device according to the network traffic between the unknown wireless device and devices in the wired portion of the computer network;

    generating a device profile of the unknown wireless device according to the at least one identifying characteristic and the at least one behavioral characteristic of the unknown wireless device;

    determining a set of access privileges corresponding to the unknown wireless device according to the device profile; and

    bridging network traffic between the unknown wireless device and devices in the wired portion of the computer network consistent with the determined access privileges.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×