×

Locked down network interface

  • US 9,426,124 B2
  • Filed: 04/08/2014
  • Issued: 08/23/2016
  • Est. Priority Date: 04/08/2013
  • Status: Active Grant
First Claim
Patent Images

1. A logic device for intercepting a data flow from a network source to a network destination, the logic device comprising:

  • a data store holding a set of compliance rules and corresponding actions wherein at least one of the set of compliance rules is a temporary compliance rule valid for a predetermined period;

    a packet inspector configured to inspect the intercepted data flow and identify from the data store a temporary compliance rule associated with the inspected data flow, wherein the temporary compliance rule is generated in response to the inspected data flow being associated with a compliance rule with a corresponding action comprising the generation of said temporary compliance rule; and

    a packet filter configured to when the data flow is identified as being associated with the temporary compliance rule, carry out an action with respect to the data flow corresponding to the temporary compliance rule while the temporary compliance rule is valid,wherein said logic device is further configured to when the data flow is identified as being associated with the temporary compliance rule, inform a compliance rule controller of the generation of a temporary compliance rule, the compliance rule controller being configured to audit the data flow and determine whether the temporary compliance rule is to be made permanent.

View all claims
  • 6 Assignments
Timeline View
Assignment View
    ×
    ×