×

Method and system for remotely configuring and monitoring a communication device

  • US 6,990,591 B1
  • Filed: 12/22/1999
  • Issued: 01/24/2006
  • Est. Priority Date: 11/18/1999
  • Status: Expired due to Term
First Claim
Patent Images

1. A method for remotely monitoring each of a plurality of network intrusion protection devices with a remote monitoring center under control by a service provider servicing the intrusion protection requirements of a plurality of customers, comprising the steps of:

  • receiving at the remote monitoring center a first transmission comprising a first identification number and a network address associated with one of a plurality of network intrusion prevention devices monitored by the remote monitoring center which operates at a location other than a site of any one of the customers, each network intrusion prevention device positioned in-line and between a computer network controlled by one of the customers and a distributed computer network that is not controlled by the customers, each network intrusion prevention device operative to block a communication from passing to the corresponding computer network via the distributed computer network by terminating the communication based on a determination that the communication represents a security risk to at least one of the computers coupled to the computer network, each network intrusion prevention device operative to make the determination that the communication represents a security risk independently after being configured and without control from the remote monitoring center, each network intrusion prevention device comprising a firewall, an intrusion detector, and a remote monitoring controller communication module, wherein the remote monitoring controller communication module is operatively coupled to the remote monitoring center;

    storing the identification number and network address for the network intrusion prevention device in a database at the remote monitoring center;

    receiving at the remote monitoring center a second identification number during a second transmission from the network intrusion prevention device;

    comparing the second identification number with the first identification number at the remote monitoring center and, in response to a match between the first identification number and second identification number, identifying a plurality of security policy options that are selectable by the network intrusion prevention device;

    generating a configuration file with the remote monitoring center in response to selection of at least one of the security policy options by the network intrusion prevention device, the configuration file governing the intrusion protection operation for the network intrusion prevention device;

    transmitting the configuration file from the remote monitoring center to configure the network intrusion prevention device;

    monitoring the network intrusion prevention device by the remote monitoring center for issuance of an alert signal issued by the network intrusion prevention device in response to a determination that the communication represents a security risk to at least one of the computers coupled to the computer network;

    receiving the alert signal at the remote monitoring center; and

    assigning the alert signal an order and talking responsive action at the remote monitoring center based upon the assigned order.

View all claims
  • 19 Assignments
Timeline View
Assignment View
    ×
    ×