Data processing: software development – installation – and managem – Software upgrading or updating
Reexamination Certificate
2008-03-11
2008-03-11
An, Meng-Al T. (Department: 2193)
Data processing: software development, installation, and managem
Software upgrading or updating
C726S013000, C726S022000
Reexamination Certificate
active
07343599
ABSTRACT:
A universal patching machine is used to provide network-based security for a data network. The universal patching machine may be implemented on a network appliance located at the edge of the data network. From this location, the universal patching machine intercepts data traffic between the internet and the data network. The universal patching machine examines the intercepted data traffic to detect security vulnerabilities. If a vulnerability violation is detected, the universal patching machine modifies the data traffic to remove the violation. Fixing the data traffic in this way ensures that the vulnerability cannot be exploited in an attack against the data network. The universal patching machine is formed from patch processors and a packet controller. The patch processors are formed from network patches. In operation, the patch processors detect vulnerabilities and issue modification commands that direct the packet controller to fix the data traffic.
REFERENCES:
patent: 5278901 (1994-01-01), Shieh et al.
patent: 5414833 (1995-05-01), Hershey et al.
patent: 5452442 (1995-09-01), Kephart
patent: 5557742 (1996-09-01), Smaha et al.
patent: 5623600 (1997-04-01), Ji et al.
patent: 5720033 (1998-02-01), Deo
patent: 5727146 (1998-03-01), Savoldi et al.
patent: 5826013 (1998-10-01), Nachenberg
patent: 5948104 (1999-09-01), Gluck et al.
patent: 5983348 (1999-11-01), Ji
patent: 5991881 (1999-11-01), Conklin et al.
patent: 6035423 (2000-03-01), Hodges et al.
patent: 6272641 (2001-08-01), Ji
patent: 6279113 (2001-08-01), Vaidya
patent: 6301668 (2001-10-01), Gleichauf et al.
patent: 6321338 (2001-11-01), Porras et al.
patent: 6477651 (2002-11-01), Teal
patent: 6681331 (2004-01-01), Munson et al.
patent: 6701440 (2004-03-01), Kim et al.
patent: 6789202 (2004-09-01), Ko et al.
patent: 6792546 (2004-09-01), Shanklin et al.
patent: 6816973 (2004-11-01), Gleichauf et al.
patent: 2002/0118380 (2002-08-01), Krueger et al.
patent: 2002/0178381 (2002-11-01), Lee et al.
patent: 2005/0039042 (2005-02-01), Liang
patent: 2005/0120243 (2005-06-01), Palmer et al.
patent: 2005/0198110 (2005-09-01), Garms et al.
Valentin Razmov and Daniel Simon, “Practical Automated Filter Generation to Explicitly Enforce Implicit Input Assumption”, 2001, Proceedings of 17th Annual Computer Security Applications Conference (ACSAC 2001).
Koral Ilgun et al. “State Transition Analysis: A Rule-Based Instrusion Detection Approach”, IEEE Trans. Software Eng. vol. 21, No. 3, Mar. 1995, pp. 181-199.
Teresa F. Lunt “A survey of intrusion detection techniques” Computers & Security, 12 (1993) pp. 404-418 (Elsevier Science Publishers Ltd.).
Teresa F. Lunt et al. “A Real-Time Instrusion-Detection Expert System (IDES)”, Final Technical Report, Feb. 28, 1992 (SRI International) pp. 1-156.
Herve Debar et al. “Towards a Taxonomy of Intrustion-Detection Systems” (Elsevier Preprint), Oct. 28, 1998 pp. 1-31.
Shiuh-Pying Shieh et al. “On a Pattern-Oriented Model for Intrusion Detection” IEEE Trans. Knowledge and Data Eng. vol. 9, No. 4 (1997) pp. 661-667.
Helen J. Wang et al. “Shield: Vulnerability-Driven Network Filters for Preventing Known Vulnerability Exploits” SIGCOMM '04, Aug./Sep. 2004.
“Computer Security Threat Monitoring and Surveillance” James P. Anderson Co., Feb. 26, 1980, pp. 1-54.
Kenneth J. Macleod “Patch Management and the Need for Metrics” SANS Institute (c) 2004 pp. 1-20.
An Meng-Al T.
Blue Lane Technologies Inc.
Treyz G. Victor
Wang Jue
LandOfFree
Network-based patching machine does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Network-based patching machine, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Network-based patching machine will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-2807702