×

System and method for identification and blocking of unwanted network traffic

  • US 9,628,511 B2
  • Filed: 04/29/2016
  • Issued: 04/18/2017
  • Est. Priority Date: 09/28/2007
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • receiving at a network protection system an alert from an intrusion detection system associated with a protected network, wherein the alert is triggered by network traffic that is evaluated by the intrusion detection system and that is determined to match a signature that is associated with undesired network behavior;

    determining a source of the network traffic that triggered the alert;

    grouping at the network protection system the alert into an alert group;

    assigning a determination to the alert group, the determination indicating a threat level associated with the alert group;

    generating an entry in an undesired source database based on the alert group, the entry including a first Internet Protocol (IP) address associated with the alert; and

    providing the undesired source database to the intrusion detection system, such that the intrusion detection system is configured to block network traffic that originates from the first IP address.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×