Invention Grant
- Patent Title: Network traffic scanning of encrypted data
-
Application No.: US14973337Application Date: 2015-12-17
-
Publication No.: US10581819B1Publication Date: 2020-03-03
- Inventor: Alexander L. Lototskiy
- Applicant: Symantec Corporation
- Applicant Address: US CA San Jose
- Assignee: CA, Inc.
- Current Assignee: CA, Inc.
- Current Assignee Address: US CA San Jose
- Agency: FisherBroyles, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/08

Abstract:
Techniques are disclosed herein for scanning encrypted data sent to and from applications executing in user space of a computer system. A traffic monitoring tool of a network intrusion prevention system detects a secure session being established between an application executing on a client and a server. The traffic monitoring tool retrieves, from the client application, a symmetric key generated by the client application. The traffic monitoring tool intercepts encrypted data transmitted between the client application and the server as part of the secure session. The traffic monitoring tool decrypts the encrypted data using the retrieved symmetric key. Upon determining that the decrypted data indicates a threat to the client, transmission of the encrypted data is blocked.
Public/Granted literature
- US2194984A Oil burner Public/Granted day:1940-03-26
Information query