×

Method for device quarantine and quarantine network system

  • US 8,046,836 B2
  • Filed: 05/31/2006
  • Issued: 10/25/2011
  • Est. Priority Date: 10/26/2005
  • Status: Expired due to Fees
First Claim
Patent Images

1. A device quarantine method, applied for a quarantine network and a business network, for inspecting a device that is intended to be connected to the business network, the method comprising:

  • storing data of definitions for types of quarantine-exempted devices and management data of a quarantine-exempted device to a storage device;

    connecting the device which is intended to be connected to the business network to the quarantine network;

    acquiring information of the device connected to the quarantine network;

    executing a connection test on ports of the device connected to the quarantine network;

    determining whether the type of the device is quarantine-exempted or not based on the data of definitions for types of quarantine-exempted devices and the acquired information of the device;

    when the determination result in the determining indicates that the type of the device is quarantine-exempted, updating the management data of a quarantine-exempted device to allow communication in the business network;

    enabling connection to the business network based on the updated management data of a quarantine-exempted device; and

    wherein the data of definitions for types of quarantine-exempted devices includes information of request-essential ports which is designated as a request destination for communication and request-prohibited ports for which a request is prohibited for communication for each type of devices,the method further comprising;

    acquiring the communication log of the device omitting an inspection to allow communication in the business network continuously;

    comparing the communication log and the information of request-essential ports and request-prohibited ports; and

    when there exists no log event in the communication log that the device requests communication to the business network with one of the request-essential ports, or there exists the log event in the communication log that the device requests communication to the business network with one of the request-prohibited ports, canceling the setup that the device is dealt as quarantine-exempted.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×