U.S. patents available from 1976 to present.
U.S. patent applications available from 2005 to present.

Icon_funbox Bizarre Patents

Patent No. 5571247

Self Containing Enclosure for Protection from Killer Bees

A self contained protective enclosure with an opening for entry and egress and a screen for ventilation and viewing.

Newsletter  PatentStorm News

Make the Most of Our Site

See this month's Top Inventors and Most Cited Patents.

Stay on top of the latest innovations by subscribing to an RSS feed.

Registered users: Manage your profile.

 

Class 726/13 - Packet filtering


Subclass of Class 726 - Information security
Definition: Subject matter including a multi-ported internetworking
No. of patents: 332
Last issue date: 05/15/2012


1                  
NumberTitleIssue Date
8181239Distributed network security system and a hardware processor therefor
An architecture provides capabilities to transport and process Internet Protocol (IP) packets from Layer 2 through transport protocol layer and may also provide packet inspection through Layer 7. A set of engines may perform pass-through packet classification, polic...
05/15/2012
8171539Methods and apparatus for implementing a search tree
Apparatus and methods are provided for implementing a firewall in a network infrastructure component. A method comprises generating a search tree for a plurality of rules. The search tree comprises a first node having a first field bounds and a first set of rules of...
05/01/2012
8161540System and method for unified communications threat management (UCTM) for converged voice, video and multi-media over IP flows
A method and system for unified communications threat management (UCTM) for converged voice and video over IP is disclosed. A computer-implemented method for threat management receives an incoming packet. The incoming packet is broken into sub-packets and fed to a p...
04/17/2012
8161539IPSec network adapter verifier
A data processing system that supports verifiable IPSec network communication. The data processing system comprises an IPSec network adapter that connects the data processing system to an external network and provides IPSec encryption and routing of IPSec packets. T...
04/17/2012
8156551Preventing network traffic blocking during port-based authentication
A network device is allowed to transmit only authentication protocol traffic and no other traffic on an interface that is coupled to a port using port-based authentication until after authentication succeeds. If the network device is using a switch port that does no...
04/10/2012
8151340Data relay device and data relay method
A data relay device has a plurality of security functions sequentially executes security functions on inputted data based on a predetermined rule, to determine whether or not to permit the relay of the data, and denies the relay of the data the relay is determined t...
04/03/2012
8151339Method and apparatus for implementing filter rules in a network element
Multiple non-conflicting actions associated with filter rules may be located and applied to a packet using a single ACL lookup by causing action records to be created from ACEs in the ACL, and then causing the ACL lookup to return the action record rather than any o...
04/03/2012
8151341System and method for reducing false positives during detection of network attacks
Disclosed are systems, methods and computer program products for reduction of false positives during detection of network attacks on a protected computer. In one example, the system comprises a proxy device configured to redirect and mirror traffic directed to the p...
04/03/2012
8132251Firewall system for interconnecting two IP networks managed by two different administrative entities
Firewall system for interconnecting a first IP network (10) to a second IP network (16), these networks belonging to two different entities having each a different administration wherein any data packet transmitted/received by the first IP network is f...
03/06/2012
8132250Message profiling systems and methods
Methods and systems for operation upon one or more data processors that classify communications from messaging entities. A method can include receiving a communication that was sent from a messaging entity. A plurality of message classification techniques is used to...
03/06/2012
8122495Integrated computer security management system and method
The present invention is generally directed to a computer security management system that integrates a firewall with an intrusion detection system (IDS). In other words, the firewall and IDS of the present invention can be designed to communicate process or status i...
02/21/2012
8122494Apparatus and method of securing network
The present invention relates to an apparatus and method of securing a network. In the present invention, a pattern matching engine 210 corresponding to a first security module initially performs a hardware-based filtering process for a static attack of an in...
02/21/2012
8104079Methods, systems and devices for packet watermarking and efficient provisioning of bandwidth
Disclosed herein are methods and systems for transmitting streams of data. The present invention also relates to generating packet watermarks and packet watermark keys. The present invention also relates to a computerized system for packaging data for transmission t...
01/24/2012
8099776Personalized firewall
A personalized firewall or other network gateway is provided by a method of matching a data packet to a rule in a network gateway having a rule base. One or more identification values are determined based on the data packet and property value(s) associated with said...
01/17/2012
8095973Apparatus and method for detecting network attack
There are provided a network attack detection apparatus and method capable of determining even unknown network attack, the apparatus connected between two networks or connected by port mirroring of an Ethernet switch to real-time monitor all packets flowing through ...
01/10/2012
8074267Computer communications monitor
A method for monitoring computer communications is disclosed. A packet sent from a sending node to a destination node is received at a monitoring node. It is determined whether the packet is encrypted. ...
12/06/2011
8065721Merging filter rules to reduce forwarding path lookup cycles
The invention is directed to techniques for managing filter rules applied to network traffic at a network device. A network device merges multiple filter rules associated with separate filter matching modules to reduce lookup cycles in a forwarding path of the netwo...
11/22/2011
8060927Security state aware firewall
A network firewall may apply policies to packets based on a security classification. Packets with an authenticated and established security connection may be handled at a high throughput while packets with unauthenticated connections may be handed at a low throughpu...
11/15/2011
8042170Bearer control of encrypted data flows in packet data communications
In a communication session in which data flows with encrypted data packets pass through a monitoring intermediary for data traffic control. The encrypted data packets include SPIs (Secured Parameter Indexes) which are used to identify SAs (Security Associations) for...
10/18/2011
8042171Providing continuing service for a third-party network site during adverse network conditions
A method for providing protective assistance to a network site is presented. As implemented by a network protection service communicatively coupled to the network site via a network, the method comprises monitoring for a condition to provide protective assistance to...
10/18/2011
8037519Apparatus and method for managing access to one or more network resources
An apparatus is provided that includes a processor configured to receive a captured traffic unit (CTU) intended for a network service, the CTU being one into which incoming traffic has been assembled based on a filter describing which incoming traffic to capture and...
10/11/2011
8028334Automated generation of configuration elements of an information technology system
A firewall rule generation method, a load balancing rule generation method, and a wrapper generation method, for an Information Technology (IT) system, associated computer program products, and an associated processes for integrating computing infrastructure. The fi...
09/27/2011
8024787Packet firewalls of particular use in packet switching devices
One or more firewalls are used to perform firewall functionality on packets based on the entry and exit accesses of each of the one or more firewalls being applied to a packet. For example, when firewalls are included in a router, the interfaces of the router are ty...
09/20/2011
8011003Method and apparatus for handling messages containing pre-selected data
A method and apparatus for blocking messages containing pre-selected data is described. In one embodiment, the method includes determining that a message transmitted to a recipient via a network includes pre-selected data. The pre-selected data contains information ...
08/30/2011
7950053Firewall system and firewall control method
It is made possible to appropriately execute packet filtering and unauthorized access detection in a situation in which mobile network communications are operated. A home agent 404A acquires IP address, port number, and media type obtained by call cont...
05/24/2011
7926100Method for preventing unauthorized connection in network system
A method for preventing unauthorized connection in a network system mainly includes adding an authentication key in the LLDP (link layer discovery protocol) transmitted in accordance with the 802.1ab communication protocol so as to proceed with security mechanism un...
04/12/2011
7926099Computer-implemented method and system for security event transport using a message bus
A computer-implemented device provides security events from publishers to subscribers. There is provided a message bus, configured to contain a plurality of security events. Also provided is a receiver unit, responsive to a plurality of publishers, to receive the pl...
04/12/2011
7904954Method, device and security control system for controlling communication border security
The present invention provides a method, a device and a system for controlling VoIP border security. The system includes: a border security controller, which includes two dynamic information tables, an active session information table and a registered user informati...
03/08/2011
7890996Using statistical analysis to generate exception rules that allow legitimate messages to pass through application proxies and gateways
A security gateway receives messages rejected by a message filter based on a set of rules. The security gateway also receives attributes of the rejected messages that triggered the rules. The security gateway maintains frequencies with which the messages with a part...
02/15/2011
7882556Method and apparatus for protecting legitimate traffic from DoS and DDoS attacks
An apparatus for protecting legitimate traffic from DoS and DDoS attacks has a high-priority (505) and a low-priority (506) queue. Besides, a queue information table (402) has STT (Source-based Traffic Trunk) service queue information of a speci...
02/01/2011
7882555Application layer security method and system
The invention provides an application layer security method and system to secure trusted computer applications from executing out of their intended and authorized scope caused by illegal or harmful operation requests received from a distrusted environment. In an emb...
02/01/2011
7877796Method and apparatus for best effort propagation of security group information
A method and system for best effort propagation of security group information is disclosed. The method includes determining if a reserved group identifier is associated with a destination and, if the reserved group identifier is associated with the destination, indi...
01/25/2011
7870603Method and apparatus for automatic filter generation and maintenance
A method is disclosed for automatic filter generation and maintenance. From information transmitted on a network, a first device identifier and a second device identifier are detected. Based on the first and second device identifiers, a filter is automatically confi...
01/11/2011
7861291System and method for implementing ACLs using standard LPM engine
A method, data processing system, and computer program product are provided for retrieving access rules using a plurality of subtables. An incoming packet that includes fields of data is received from a network. A key is formed from the fields, the key includes a nu...
12/28/2010
7849503Packet processing using distribution algorithms
Network devices, systems, and methods are provided for packet processing. One method includes receiving a checking functionality rule set as an input to a distribution algorithm. The method includes bifurcating and providing configuration instructions, as an output ...
12/07/2010
7836496Dynamic network protection
A method for protecting a network from an attack includes measuring a property of traffic entering the network, and analyzing the property using at least one fuzzy logic algorithm in order to detect the attack. ...
11/16/2010
7827602Network firewall host application identification and authentication
Systems for providing information on network firewall host application identification and authentication include an identifying and transmitting agent on a host computer, configured to identify each application in use, tag the application identity with a host identi...
11/02/2010
7823194System and methods for identification and tracking of user and/or source initiating communication in a computer network
A method and system for managing and tracking communications within a computer network. A unique user identifier and unique system identifier are assigned to each authorized user and each authorized computer, respectively, within a computer network. The unique user ...
10/26/2010
7823195Method, apparatus and computer program product for a network firewall
An improved firewall for providing network security is described. The improved firewall provides for dynamic rule generation, as well using conventional fixed rules. This improvement is provided without significant increase in the processing time required for most p...
10/26/2010
7818795Per-port protection against denial-of-service and distributed denial-of-service attacks
An apparatus having a corresponding method and computer program comprises one or more ports each to transmit and receive packets of data; a classifier to determine one or more attributes for each of the packets of data; one or more counters for each of the ports, wh...
10/19/2010
1                  
 
Sign InRegister
Username  
Password   
forgot password?