Invention Grant
- Patent Title: Hostname validation and policy evasion prevention
-
Application No.: US16669256Application Date: 2019-10-30
-
Publication No.: US10965716B2Publication Date: 2021-03-30
- Inventor: Martin Walter , Charles Bransi , Suiqiang Deng
- Applicant: Palo Alto Networks, Inc.
- Applicant Address: US CA Santa Clara
- Assignee: Palo Alto Networks, Inc.
- Current Assignee: Palo Alto Networks, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Van Pelt, Yi & James LLP
- Main IPC: G06F17/00
- IPC: G06F17/00 ; H04L29/06 ; H04L29/12 ; H04L29/08 ; G06F16/2453

Abstract:
A request to establish a session with a first server is received from a client device. The first server is associated with a first hostname, and the request includes information identifying a second hostname purported to correspond to the first server. A Domain Name System (DNS) lookup using the second hostname is performed. A determination that the second hostname was spoofed by the client device is determined based on a response to the DNS lookup. In response to the determination being made that the request received from the client device includes the spoofed second hostname, a determination that the client device has injected or overridden at least one of an HTTP Host header and a Server Name Indicator in the request is made, and an action to take with respect to the client device is determined.
Public/Granted literature
- US20200067989A1 HOSTNAME VALIDATION AND POLICY EVASION PREVENTION Public/Granted day:2020-02-27
Information query