Invention Grant
- Patent Title: Vulnerability analysis and segmentation of bring-your-own IoT devices
-
Application No.: US15891749Application Date: 2018-02-08
-
Publication No.: US10742678B2Publication Date: 2020-08-11
- Inventor: Manikandan Kesavan , Plamen Nedeltchev , Hugo Latapie , Enzo Fenoglio
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Behmke Innovation Group LLC
- Agent James M. Behmke; James J. Wong
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06N20/00 ; H04W12/08 ; H04W12/12

Abstract:
In one embodiment, a security device maintains a plurality of security enclaves for a computer network, each associated with a given level of security policies. After detecting a given device joining the computer network, the security device places the given device in a strictest security enclave of the plurality of security enclaves in response to joining the computer network. The security device then subjects the given device to joint adversarial training, where a control agent representing behavior of the given device is trained against an inciting agent, and where the inciting agent attempts to force the control agent to misbehave by applying destabilizing policies. Accordingly, the security device may determine control agent behavior during the joint adversarial training, and promotes the given device to a less strict security enclave of the plurality of enclaves in response to the control agent being robust against the attempts by the inciting agent.
Public/Granted literature
- US20190245882A1 VULNERABILITY ANALYSIS AND SEGMENTATION OF BRING-YOUR-OWN IOT DEVICES Public/Granted day:2019-08-08
Information query