×

System and method for inspecting domain name system flows in a network environment

  • US 9,015,318 B1
  • Filed: 11/18/2009
  • Issued: 04/21/2015
  • Est. Priority Date: 11/18/2009
  • Status: Active Grant
First Claim
Patent Images

1. A method, comprising:

  • receiving a first packet associated with a domain name system (DNS) exchange between a subscriber and a DNS server;

    maintaining a correlation between a domain name and a plurality of Internet protocol (IP) addresses included in a DNS response;

    receiving from the subscriber a subsequent packet associated with a subsequent flow;

    identifying an IP address within the subsequent packet as being one of the plurality of IP addresses included in the DNS response, wherein each of the IP addresses corresponds to one of a plurality of web servers associated with the domain name; and

    executing a policy decision for the subsequent flow without inspecting the contents of the subsequent flow at layer 7 based on an identity of the subscriber and the domain name correlated to the identified IP address, wherein the policy decision relates to charging a different rate for a particular flow.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×