×

Methods and systems for providing a token-based application firewall correlation

  • US 9,350,705 B2
  • Filed: 12/30/2010
  • Issued: 05/24/2016
  • Est. Priority Date: 06/25/2010
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • receiving a request for access to a resource within a secure computing environment from a remote user device, the request received by an application-level firewall;

    associating a token with the request, by the application-level firewall, wherein the token is added to a session context and the token is injected into multiple events that originate from the request to service the request within the secure computing environment during the session to allow the application-level firewall to correlate the request with a corresponding session;

    storing, by the application-level firewall, the token and associated information in an event correlator within the secure computing environment that is communicatively coupled with the application-level firewall;

    associating, by the application-level firewall, the token with one or more subsequent actions within the secure computing environment during the session by the resource to service the request, wherein the one or more subsequent actions comprises at least generating a database query based on the request, the database query including the token and the token is included in a logic of the database query;

    creating, by the application-level firewall, at least one statistical model to identify abnormalities and react based on security policies;

    generating a response to the request, the response including the token; and

    transmitting the response with the token to the remote user device via the application-level firewall, wherein the application-level firewall analyzes the response and determines an action to be taken on the response based on the token and the associated information.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×