Information security – Access control or authentication – Network
Reexamination Certificate
2005-01-05
2009-02-24
Nguyen, Minh Dieu (Department: 2437)
Information security
Access control or authentication
Network
C713S188000, C709S244000
Reexamination Certificate
active
07496956
ABSTRACT:
A security server distributes security polices to the client computers. Each security policy includes an identifier identifying the process to which the policy pertains, and security rules for use with that process. The identifier includes a version hash and a code hash. The version hash of a process is likely to remain unchanged if the process is modified by a legitimate agent, such as by a software update. The code hash of a process is likely to change if the process is modified by a malicious agent. When a process executing on the client computer requests access to a resource, the client computer generates a version hash of the process and uses it to identify the security policy pertaining to the process. If the version hash matches a version hash in a security policy, but the code hash does not match, the client computer declares the process potentially malicious.
REFERENCES:
patent: 5944821 (1999-08-01), Angelo
patent: 6766314 (2004-07-01), Burnett
patent: 7143113 (2006-11-01), Radatti
patent: 2002/0099952 (2002-07-01), Lambert et al.
patent: 2003/0120935 (2003-06-01), Teal et al.
patent: 2003/0149887 (2003-08-01), Yadav
patent: 2003/0167402 (2003-09-01), Stolfo et al.
patent: 2004/0078591 (2004-04-01), Teixeira et al.
patent: 2004/0107360 (2004-06-01), Herrmann et al.
patent: 2004/0133548 (2004-07-01), Fielding et al.
patent: 2004/0268124 (2004-12-01), Narayanan
patent: 2006/0206943 (2006-09-01), Ellison et al.
patent: 2007/0204154 (2007-08-01), Swander et al.
White Paper: Application Firewalls, F5 Networks, Inc., Oct. 2004, 7 pages, [online] [Retrieved on Apr. 26, 2005] Retrieved from the Internet <URL:http://www.f5.com/solutions/tech/asg.html>.
Rudis, B. et al., The Enemy Within: Firewalls And Backdoors, [online] [Retrieved on Apr. 26, 2005] Retrieved from the Internet <URL:http:www.securityfocus.com/infocus/1701>.
Firewalls, updated Feb. 19, 2004, 6 pages, [online] [Retrieved on Apr. 26, 2005] Retrieved from the Internet <URL:http://www.wilders.org/firewalls—m.htm>.
Viljoen Pieter
Vogel Gregory D.
Fenwick & West LLP
Nguyen Minh Dieu
Symantec Corporation
LandOfFree
Forward application compatible firewall does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Forward application compatible firewall, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Forward application compatible firewall will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-4093812