U.S. patents available from 1976 to present.
U.S. patent applications available from 2005 to present.

Icon_funbox Famous Patents

The ice cream cone was invented at the St. Louis Worlds Fair by Ernest Hamwi in 1904. His waffle booth was next to an ice cream vendor who ran short of dishes. Hamwi rolled a waffle to hold ice cream and the cone was born.

Newsletter  PatentStorm News

Make the Most of Our Site

See this month's Top Inventors and Most Cited Patents.

Stay on top of the latest innovations by subscribing to an RSS feed.

Registered users: Manage your profile.

 

Class 726/11 - Firewall


Subclass of Class 726 - Information security
Definition: Subject matter including a device installed between internal
No. of patents: 450
Last issue date: 05/29/2012


                  11    
NumberTitleIssue Date
7120927System and method for e-mail alias registration
An e-mail alias registration system is provided. According to one embodiment, users may register an e-mail address and a password at an alias relay server (102). Then, when a third party attempts to reply to the registered user, the third party will be presen...
10/10/2006
7120930Method and apparatus for control of security protocol negotiation
Method and apparatus for enhanced security for communication over a network, and more particularly to control of security protocol negotiation to enable multiple clients to establish a virtual private network connection with a same remote address, is described. A ma...
10/10/2006
7120934System, method and apparatus for detecting, identifying and responding to fraudulent requests on a network
Embodiments of the invention are directed to a detection system, method and apparatus that identifies and eradicates fraudulent requests on a network. Embodiments of the detection system comprise at least one router, a server, and an activity monitoring system. The ...
10/10/2006
7114182Statistical methods for detecting TCP SYN flood attacks
Methods of detecting TCP SYN flooding attacks at a router located between a LAN and a network such as the Internet are described. The methods rely on a counting arrangement in which SYN and Fin packets are counted on both the LAN side and the network or Internet sid...
09/26/2006
7107612Method, apparatus and computer program product for a network firewall
An improved firewall for providing network security is described. The improved firewall provides for dynamic rule generation, as well using conventional fixed rules. This improvement is provided without significant increase in the processing time required for most p...
09/12/2006
7107609Stateful packet forwarding in a firewall cluster
A method is disclosed for processing data using multiple interconnected firewall devices. A connection is initiated between an internal host and an external network, through a home firewall device. A separate, receiving firewall device may then receive a data packet...
09/12/2006
7103772Pervasive, user-centric network security enabled by dynamic datagram switch and an on-demand authentication and encryption scheme through mobile intelligent data carriers
Methods and systems are provided for improving security, efficiency, access control, administrative monitoring, reliability as well as integrity of data transmission and remote application sharing over a network. Secure, stable network connections and efficient netw...
09/05/2006
7103421Control system, display device, control-use host computer, and data transmission method
A control system including control devices with each control device including a control unit and a display device connected with the control unit via a dedicated communication line and being capable of display corresponding to a control state of the control unit. Th...
09/05/2006
7103023Radio communication control station, radio communication terminal, home agent, and radio communication method
A radio communication control station including a packet receiver, a paging controller, a location information receiver, and a retriever. The packet receiver receives an IP packet destined for a radio communication terminal subscribing to one of sub-networks constit...
09/05/2006
7103774Method of establishing secure communications in a digital network using pseudonymic digital identifiers
A system and method of relating a public key to a compact identification string in a digital certificate to enable an entity to construct a certificate chain from a root certificate authority to an end-entity efficiently and further allow a certificate holder to sto...
09/05/2006
7100201Undetectable firewall
An undetectable firewall for network protection has been developed. The invention includes a method of preventing unauthorized access to a computer system. The firewall receives a data packet and copies its contents exactly. Next, the firewall analyzes the data pack...
08/29/2006
7100202Voice firewall
A voice firewall for providing communication between a user endpoint at a user location and a provider endpoint at a provider location is provided. The voice firewall includes a command input port for receiving a connect command that includes a private connection ad...
08/29/2006
7093287Method and system for building dynamic firewall rules, based on content of downloaded documents
A method for filtering incoming data from an external computer network is provided. This method includes scanning the contents of incoming data for pre-selected keyword(s) and allowing it to pass per standard service rules if its content does not contain the pre-sel...
08/15/2006
7093280Internet security system
Methods and apparatus, including computer program products, implementing and using techniques for processing a data packet in a packet forwarding device. A data packet is received. A virtual local area network destination is determined for the received data packet, ...
08/15/2006
7093288Using packet filters and network virtualization to restrict network communications
A network mediator corresponding to a computing device uses packet filters to restrict network communications. The network mediator includes a set of one or more filters, each filter having parameters that are compared to corresponding parameters of a data packet to...
08/15/2006
7089424Peripheral device for protecting data stored on host device and method and system using the same
A system for protecting data stored on a device. The system has a server for assigning encryption/decryption keys and one or more peripheral devices. The peripheral devices have a network interface to connect to the server to receive the keys, a host interface to co...
08/08/2006
7089581Security system design supporting method
A security system design supporting tool and method are disclosed, in which security requirements (PP) and security specifications (ST) used for designing a product or a system (TOE) based on CC requirements can be prepared efficiently and uniformly even by ordinary...
08/08/2006
7085267Methods, systems and computer program products for translating internet protocol (IP) addresses located in a payload of a packet
Methods, systems and computer program products are discussed for processing a packet. Internet Protocol (IP) addresses located in a payload of the packet are translated if a source address and/or a destination address located in a packet header has been previously t...
08/01/2006
7085850Stateless message processing scheme for network processors interactions
A stateless message-passing scheme for interactions between a network processor and a coprocessor is provided. The network processor, when receiving data frames for transmission from a network element to another network element encapsulates the entire packet that it...
08/01/2006
7076797Granular authorization for network user sessions
Providing access to a mobile user session in a manner that more closely corresponds access to network resources to the trustworthiness of authentication methods and devices associated with the mobile user session. Characteristics of authentication methods associated...
07/11/2006
7076801Intrusion tolerant server system
The invention relates to a reconfigurable scalable intrusion-tolerant network that is interposed between a service requesting client and a protected server to minimize the impact of intrusive events. The apparatus may include a proxy server for receiving the request...
07/11/2006
7069434Secure data transfer method and system
A method and system for securely transferring data between an application server and an agent of the application server through a non-secure node. First, a session key between the agent and the application server is established by utilizing a public key of the appli...
06/27/2006
7061899Method and apparatus for providing network security
An apparatus and a method are provided for performing network routing. The present invention comprises authentication logic, decision logic and routing logic. The authentication logic is configured to receive packets sent from a source agent to a tunnel endpoint and...
06/13/2006
7058972System and method for controlling network elements using softkeys
A system for enabling the use of network features in a network element is provided. The system comprises a softkey assignment system that is operable to perform operations with respect to at least one softkey, the softkey assignment system being operable to assign a...
06/06/2006
7058973Network address translation gateway for local area networks using local IP addresses and non-translatable port addresses
A network address translation gateway (20) provides normal network translation for IP datagrams traveling from a local area network (10) using local IP addresses to an external network (30), but suspends source service address translation when t...
06/06/2006
7055173Firewall pooling in a network flowswitch
A firewall fault-tolerant network interface system includes a switch circuit configured to detect when a firewall fails in a multi-firewall local network. When a failed firewall is detected, the switch circuit waits for a time-out period to expire to allow convergen...
05/30/2006
7051368Methods and systems for screening input strings intended for use by web servers
Methods and systems of screening input strings that are intended for use by a Web server are described. In the described embodiment, an attack pattern is determined that can be used to attack a Web server. A search pattern is defined that can be used to detect the a...
05/23/2006
7051365Method and apparatus for a distributed firewall
A method and apparatus for a implementing a distributed firewall is described. A packet filter processor receives a packet sent from a first device to a second device. The packet filter processor authenticates an identifier for the packet. For example, authenticatio...
05/23/2006
7047303Apparatus and method for using a network processor to guard against a “denial-of-service” attack on a server or server cluster
A system comprising a network resource server or a server farm formed by a plurality of computer systems and a network processor which transfers data exchanged with an external network supported by the server farm at a data rate substantially the same as the data fl...
05/16/2006
7047561Firewall for real-time internet applications
The present invention relates to a firewall for use in association with real-time Internet applications such as Voice over Internet Protocol (VoIP). The firewall applies an application proxy to the signaling and control channels and a packet filter to the bearer cha...
05/16/2006
7043753Providing security for external access to a protected computer network
A system and method are disclosed for providing controlled access via an external network to a resource residing on an internal network. An external request addressed to a first computer system associated with the internal network is received at the first computer s...
05/09/2006
7036141Transmission system, a method and an apparatus providing access for IP data packets to a firewall protected network
The invention provides a transmission system, for example, an ATM transmission system, which is adapted for the transmission of IP data packets, and which includes an IP-network, a network protected by a firewall, and means for temporarily opening the firewall to en...
04/25/2006
7032242Method and system for distributed network address translation with network security features
A method and system for distributed network address translation with security features. The method and system allow Internet Protocol security protocol (“IPsec”) to be used with distributed network address translation. The distributed network address translation...
04/18/2006
7028336Firewall providing enhanced network security and user transparency
The present invention provides a firewall that achieves maximum network security and maximum user convenience. The firewall employs “envoys” that exhibit the security robustness of prior-art proxies and the transparency and ease-of-use of prior-art packet filter...
04/11/2006
7028335Method and system for controlling attacks on distributed network address translation enabled networks
A method and system for distributed network address translation with security for controlling and limiting the disruption caused by denial of service attacks. The method and system have a first network device and a second network device on a first network, and a thi...
04/11/2006
7007299Method and system for internet hosting and security
The present invention relates to a system and method for providing security to Internet hosting sites and mitigating electronic attacks against such sites. The system and method of the present invention provide: adequate Internet connections to the site to prevent c...
02/28/2006
7003798System for operating device from remote location and apparatus for use in the system
Disclosed is a remote operating system in which even if a remote-operated apparatus is connected to a network protected by a firewall and a remote-operating apparatus exists outside of the firewall, it is possible for the remote-operating apparatus to remotely opera...
02/21/2006
7000248Virtual network and virtual network connection system
A virtual network of the present invention includes an external network including a repeat server, and a first and a second private network each including a respective firewall that is connectable only to the repeat server. The first and second private networks resp...
02/14/2006
6996840Method for executing a security critical activity
The present invention relates to a method for executing a security critical activity in a security device (40), wherein the security critical activity is executed with user involvement. Each security critical activity is divided into a number of situations/ac...
02/07/2006
6981280Intelligent network scanning system and method
A system, method and computer program product are provided for scanning data. Initially, data is received at a network element. Thereafter, a load on the network element is identified. The data is then conditionally scanned at the network element based on the load o...
12/27/2005
                  11    
 
Sign InRegister
Username  
Password   
forgot password?