×

Method and apparatus for optimizing a firewall

  • US 7,966,655 B2
  • Filed: 06/30/2006
  • Issued: 06/21/2011
  • Est. Priority Date: 06/30/2006
  • Status: Active Grant
First Claim
Patent Images

1. A method for optimizing a set of rules associated with a firewall security policy, the method comprising:

  • examining stored characteristics associated with network traffic monitored by a firewall;

    determining rule invocation of one or more rules in a first set of rules, with respect to the network traffic, the first set of rules being associated with a firewall security policy;

    automatically generating a second set of rules based on the rule invocation, by at least performing an online adaptation technique, wherein performing the online adaptation technique further comprises;

    generating a long-term rule hit profile based on traffic variability;

    comparing a short-term traffic pattern with the long-term rule hit profile; and

    generating the second set of rules when a discrepancy is detected between the short-term traffic pattern and the long-term rule hit profile; and

    enforcing the firewall security policy, based on the second set of rules.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×