Invention Grant
- Patent Title: Method and system for network access control based on traffic monitoring and vulnerability detection using process related information
-
Application No.: US15527783Application Date: 2015-12-18
-
Publication No.: US10313367B2Publication Date: 2019-06-04
- Inventor: Jimit Hareshkumar Mahadevia , Shalvi D. Dave , Bhushan H. Trivedi
- Applicant: Sophos Limited
- Applicant Address: GB Abingdon
- Assignee: Sophos Limited
- Current Assignee: Sophos Limited
- Current Assignee Address: GB Abingdon
- Agency: Strategic Patents, P.C.
- Priority: IN4068/MUM/2014 20141218; IN4068/MUM/2014 20150526
- International Application: PCT/GB2015/054072 WO 20151218
- International Announcement: WO2016/097757 WO 20160623
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/55

Abstract:
Disclosed are various embodiments of method and system for network access control. The method may involve traffic monitoring and vulnerability detection using process information. The system may analyze the vulnerability as a process malfunctioning where preventive action focuses on process blocking as opposed to host blocking, which can lead to improved performance and productivity of a network. Techniques may use process related information, connection information, and network packet information for network control. The information may be matched against a plurality of signatures to identify and detect a known vulnerability in network activities. On the basis of a match, a verification report may be established. Techniques may further check whether a verification report is applicable to a process associated with a network packet and allow or block the process running on the host based in the report.
Public/Granted literature
Information query