会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 21. 发明申请
    • FEEDBACK MECHANISM TO ENFORCE A SECURITY POLICY
    • US20220321533A1
    • 2022-10-06
    • US17217682
    • 2021-03-30
    • Palo Alto Networks, Inc.
    • Zhou Olivier Zheng
    • H04L29/06H04L29/12
    • Techniques for providing a feedback mechanism to enforce a security policy are provided. In some embodiments, dynamic resolution of Fully Qualified Domain Name (FQDN) address objects in policy definitions includes receiving a security policy that includes a domain name (e.g., the network policy can include a network security rule that is based on the domain name); and periodically updating Internet Protocol (IP) address information associated with the domain name based on a feedback mechanism that utilizes network logs (e.g., implemented using a learning process for FQDN to IP address mappings) to facilitate a more effective security policy enforcement. For example, a security device (e.g., a firewall or other network gateway) can perform a learning process for FQDN to IP address mappings that utilizes past successful sessions or trusted information sources to be used as an authorized IP range, and then the security policy can be enriched with the layer 3 information (e.g., IP addresses) and matching the FQDN address objects (e.g., web addresses, such as Uniform Resource Locations). As such, the security device can then be configured to block all connection attempts at layer 3 (e.g., using IP addresses), which improves network security by reducing the opportunity for attackers to, for example, send/download malicious traffic prior to enforcement based on layer 7 information.