U.S. patents available from 1976 to present.
U.S. patent applications available from 2005 to present.

Method and apparatus for managing internetwork and intranetwork activity

Patent 5983270 Issued on November 9, 1999. Estimated Expiration Date: Icon_subject April 2, 2017. Estimated Expiration Date is calculated based on simple USPTO term provisions. It does not account for terminal disclaimers, term adjustments, failure to pay maintenance fees, or other factors which might affect the term of a patent.

Patent References

Method and apparatus for managing and facilitating communications in a distributed hetergeneous network
Patent #: 5317568
Issued on: 05/31/1994
Inventor: Bixby, et al.

System for selectively intercepting and rerouting data network traffic
Patent #: 5347633
Issued on: 09/13/1994
Inventor: Ashfield, et al.

Apparatus and method for a federated naming system which can resolve a composite name composed of names from any number of disparate naming systems
Patent #: 5377323
Issued on: 12/27/1994
Inventor: Vasudevan

Protocol selection and address resolution for programs running in heterogeneous networks
Patent #: 5425028
Issued on: 06/13/1995
Inventor: Britton, et al.

Method for updating value in distributed shared virtual memory among interconnected computer nodes having page table with minimal processor involvement
Patent #: 5522045
Issued on: 05/28/1996
Inventor: Sandberg

System for securing inbound and outbound data packet flow in a computer network
Patent #: 5606668
Issued on: 02/25/1997
Inventor: Shwed

Directory with options for access to and display of email addresses Patent #: 5742769
Issued on: 04/21/1998
Inventor: Lee, et al.

Inventors

Assignee

Application

No. 825775 filed on 04/02/1997

US Classes:

709/224, Computer network monitoring709/225, Computer network access regulating709/250NETWORK-TO-COMPUTER INTERFACING

Examiners

Primary: Maung, Zarni

Attorney, Agent or Firm

Foreign Patent References

  • 0658837A2 EP. 06/12/1995
  • 0658837A3 EP. 06/12/1995

International Class

G06F 013/00

Abstract

In accordance with the present invention, a network management program (80) is provided that manages the communication of data packets between an intranetwork (44) and an internetwork (40). An operator of a computer connected to the intranetwork (44) inputs vital information regarding users of computers connected to the intranetwork (44), mapping information regarding computers connected to the intranetwork (44), and policies to be applied against those users and computers, using a graphical user interface (GUI 70). The GUI (70) communicates the vital user information, mapping information and policies to a database (72) which stores and organizes the vital user information, mapping information and policies. A filter executive (76) optimizes the policies stored in the database (72) into a set of rules for each user and passes the rules to a filter engine (78). The filter engine (78) filters all outbound data packets transmitted from the intranetwork (44) to the internetwork (40) and verifies all inbound data packets from the internetwork (40) according to the rules provided by the filter executive (76). The filter executive (76) also communicates the mapping information stored in the database (72) to a naming service manager (74) which further updates the mapping information and returns the updated mapping information to the filter executive (76). Consequently, the filter executive (78) filters the data packets according to the most recent mapping information.

Other References

  • IBM Corp., "Enforced Separation of Roles In A Multi-User Operating System," IBM Technical Disclosure Bulletin, vol. 34, No. 7B, pp. 120-122 (Dec. 1991)
  • J. Bruce Dawson, "Intrusion Protection for Networks," BYTE (Apr. 1995)
  • Jim Reid, "Open Systems Security: Traps and Pitfalls," Computer & Security 14:496-517 (1995)
  • S.M. Bellovin and W.R. Cheswick, "Network Firewalls," IEEE Communiations Magazine, No. 9 New York, US (1994)
  • D. Brent Chapman, Network (In) Security Through IP Packet Filtering, USENIX Symposium Proceedings, UNIX Security III, Baltimore, Maryland, Sep. 14-16, 1992
  • D. Brent Chapman and Elizabeth D. Zwicky, Building Internet Firewalls, Chapters 6 & 8 (O'Reilly & Associates, Inc., 1995)
  • Chris Hare and Karanjit Siyan, Internet Firewalls and Network Security, Chapter 5 (New Riders Publishing, 2d Ed. 1996
PatentsPlus Images
Enhanced PDF formats
loading...
PatentsPlus: add to cart
PatentsPlus: add to cartSearch-enhanced full patent PDF image
$9.95more info
PatentsPlus: add to cart
PatentsPlus: add to cartIntelligent turbocharged patent PDFs with marked up images
$18.95more info
 
Sign InRegister
Username  
Password   
forgot password?