×

Computerized system and method for advanced network content processing

  • US 9,825,993 B2
  • Filed: 01/13/2016
  • Issued: 11/21/2017
  • Est. Priority Date: 01/13/2006
  • Status: Active Grant
First Claim
Patent Images

1. A computer-implemented method comprising:

  • receiving network traffic at a first interface of a network security device implementing firewall functionality;

    identifying, by the network security device, a first transmission protocol according to which a first subset of packets of the network traffic is formatted;

    redirecting, by the network security device, the first subset of packets to a first proxy module executing on the network security device based on the identified first transmission protocol;

    extracting first network content from the first subset of packets and buffering at least a portion of the first network content by the first proxy module;

    processing, by a plurality of scanning engines implemented within the first proxy module, the buffered portion of the first network content in accordance with a plurality of content processing rules selected from a rule definition store based on a first set of network traffic selectors associated with the first subset of packets;

    identifying, by the network security device, a second transmission protocol, distinct from the first transmission protocol, according to which a second subset of packets of the network traffic is formatted;

    redirecting, by the network security device, the second subset of packets to a second proxy module executing on the network security device based on the identified second transmission protocol;

    extracting second network content from the second subset of packets and buffering at least a portion of the second network content by the second proxy module; and

    processing, by a plurality of scanning engines implemented within the second proxy module, the buffered portion of the second network content in accordance with a plurality of content processing rules selected from the rule definition store based on a second set of network traffic selectors associated with the second subset of packets.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×