×

Open enhanced federation security techniques

  • US 8,347,358 B2
  • Filed: 06/25/2007
  • Issued: 01/01/2013
  • Est. Priority Date: 06/25/2007
  • Status: Active Grant
First Claim
Patent Images

1. A method, comprising:

  • receiving a request for an instant messaging connection from a federated client;

    determining, by a processor, that the federated client is an untrusted client;

    comparing a total request number with a total limit number to generate a threat status indicator value for the untrusted client, the total request number representing a number of unique uniform resource identifiers (URIs) contacted by requests for an instant messaging connection made by the untrusted client, the number of unique URIs comprising both valid and invalid URIs, the total request number formed using a hash table comprising a plurality of buckets, the total request number determined based on a number of buckets to which hash values corresponding to the requests for an instant messaging connection are mapped;

    when the threat status indicator value indicates that the total limit number has not been reached, authorizing the request from the untrusted client; and

    when the threat status indicator value indicates that the total limit number has been exceeded, associating a threat watch indicator with the untrusted client, adding the untrusted client to a list of suspicious peers based on the threat watch indicator, and performing enhanced security analysis based on behavior of the suspicious peers.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×