会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明授权
    • Network appliance for vulnerability assessment auditing over multiple networks
    • 用于通过多个网络进行漏洞评估审核的网络设备
    • US07310669B2
    • 2007-12-18
    • US11331776
    • 2006-01-13
    • Evan McClendon WebbChristopher Daniel BoscoloRobert G. Gilde
    • Evan McClendon WebbChristopher Daniel BoscoloRobert G. Gilde
    • G06F15/173H04L9/00G06F11/00
    • H04L63/1433G06F21/577H04L63/1408H04L63/1441H04L63/20
    • An apparatus, system, and method are directed towards enabling auditing of network vulnerabilities from multiple network vantage points virtually simultaneously. Multiple network vantage points may include, but are not limited to, remote/branch enterprise sites, devices on an enterprise perimeter, on either side of a security perimeter, and even through the security perimeter. In one embodiment, an auditor performs reflected audits thereby extending auditing of network vulnerabilities to provide a comprehensive 360 degree audit of internal, external, and remote enterprise network sites. In one embodiment, the present invention may be implemented employing a single auditing device, and one or more audit extension devices that are configured to extend the auditing device's audit reach. The auditing device and one or more audit extension devices may communicate using an encrypted network channel through a security perimeter and/or across multiple networks.
    • 一种装置,系统和方法旨在实际上同时实现来自多个网络有利位置的网络漏洞的审计。 多个网络优势点可以包括但不限于远程/分支企业站点,企业周边的设备,安全边界的任一侧,甚至通过安全边界。 在一个实施例中,审计员执行反映的审计,从而延长对网络漏洞的审计,以提供对内部,外部和远程企业网络站点的全面360度审计。 在一个实施例中,可以使用单个审核设备来实现本发明,以及被配置为扩展审计设备的审计范围的一个或多个审计扩展设备。 审计设备和一个或多个审计扩展设备可以使用加密的网络信道通过安全边界和/或跨多个网络进行通信。
    • 3. 发明授权
    • Network appliance for vulnerability assessment auditing over multiple networks
    • 用于通过多个网络进行漏洞评估审核的网络设备
    • US08554903B2
    • 2013-10-08
    • US11877496
    • 2007-10-23
    • Evan M. WebbChristopher Daniel BoscoloRobert G. Gilde
    • Evan M. WebbChristopher Daniel BoscoloRobert G. Gilde
    • G06F15/173G06F11/00H04L9/00
    • H04L63/1433G06F21/577H04L63/1408H04L63/1441H04L63/20
    • An apparatus, system, and method are directed towards enabling auditing of network vulnerabilities from multiple network vantage points virtually simultaneously. Multiple network vantage points may include, but are not limited to, remote/branch enterprise sites, devices on an enterprise perimeter, on either side of a security perimeter, and even through the security perimeter. In one embodiment, an auditor performs reflected audits thereby extending auditing of network vulnerabilities to provide a comprehensive 360 degree audit of internal, external, and remote enterprise network sites. In one embodiment, the present invention may be implemented employing a single auditing device, and one or more audit extension devices that are configured to extend the auditing device's audit reach. The auditing device and one or more audit extension devices may communicate using an encrypted network channel through a security perimeter and/or across multiple networks.
    • 一种装置,系统和方法旨在实际上同时实现来自多个网络有利位置的网络漏洞的审计。 多个网络优势点可以包括但不限于远程/分支企业站点,企业周边的设备,安全边界的任一侧,甚至通过安全边界。 在一个实施例中,审计员执行反映的审计,从而延长对网络漏洞的审计,以提供对内部,外部和远程企业网络站点的全面360度审计。 在一个实施例中,可以使用单个审核设备来实现本发明,以及被配置为扩展审计设备的审计范围的一个或多个审计扩展设备。 审计设备和一个或多个审计扩展设备可以使用加密的网络信道通过安全边界和/或跨多个网络进行通信。
    • 4. 发明授权
    • Network appliance for customizable quarantining of a node on a network
    • 网络设备可自定义隔离网络上的节点
    • US08520512B2
    • 2013-08-27
    • US11461321
    • 2006-07-31
    • Robert G. GildeChristopher Daniel Boscolo
    • Robert G. GildeChristopher Daniel Boscolo
    • H04L12/28
    • H04L63/0227H04L12/4641H04L63/10H04L63/1433H04L63/20H04L67/025
    • A system, method, and apparatus are directed to managing access to a network. An agent may intercept a network packet transmitted by an enforcement point in response to a request from a device to join the network. The agent identifies, based on the network packet, a port number on the enforcement point at which the request is received. The agent may transmit the port number to a NACA to enable security enforcement operations to be performed on the device. Another device may reside outside the quarantined network and be enabled by the NACA to direct a remediation measure to be performed on the device using at least the port number. The NACA may spoof an ARP response with an address of the NACA to restrict access to resources. The NACA may also place the device into one of a plurality of quarantined networks.
    • 系统,方法和装置被引导以管理对网络的访问。 代理可以响应于来自设备加入网络的请求来拦截由执行点发送的网络分组。 代理根据网络数据包识别接收请求的执行点上的端口号。 代理可以将端口号发送到NACA,以便在设备上执行安全执行操作。 另一个设备可能驻留在隔离网络之外,并由NACA启用以使用至少端口号在设备上执行修复措施。 NACA可能会使用NACA的地址欺骗ARP响应,以限制对资源的访问。 NACA还可以将设备放置在多个隔离网络中的一个中。
    • 5. 发明授权
    • Method and system for scaling network traffic managers
    • 扩展网络流量管理器的方法和系统
    • US08477609B1
    • 2013-07-02
    • US12723576
    • 2010-03-12
    • Carlton G. AmdahlRobert G. GildePaul I. SzaboRichard R. MastersDavid D. Schmitt
    • Carlton G. AmdahlRobert G. GildePaul I. SzaboRichard R. MastersDavid D. Schmitt
    • H04J1/16H04J3/14
    • H04L12/4641H04L47/10H04L47/125H04L47/2441
    • Distributing network traffic to multiple traffic management devices. A distributor receives packets from a network and may act as a layer 2 switch or router, to distribute the packet to one of a group of traffic management devices. The distributor may receive packets from servers that the traffic management devices are managing communications to. When distributing packets to traffic management devices, information may be used to determine which traffic management device each packet should be sent to. The distributor causes packets in a flow to be delivered to the same traffic management device. Many configurations are possible for connecting the distributor to the traffic management devices, including connecting each traffic management device to a physical or virtual port on the distributor, connecting the traffic management devices to the distributor using a virtual local area network, and connecting the traffic management devices to a layer 2 switch.
    • 将网络流量分配到多个流量管理设备。 分发者从网络接收分组,并且可以充当二层交换机或路由器,以将分组分发到一组流量管理设备中。 分发者可以从流量管理设备管理通信的服务器接收数据包。 当向流量管理设备分发数据包时,可以使用信息来确定每个数据包应该发送到哪个流量管理设备。 分发器将流中的数据包传送到相同的流量管理设备。 许多配置可能用于将分发器连接到流量管理设备,包括将每个流量管理设备连接到分发器上的物理或虚拟端口,使用虚拟局域网将流量管理设备连接到分发者,并且连接流量管理 设备到第2层交换机。