Invention Grant
- Patent Title: Network security system with enhanced traffic analysis based on feedback loop and low-risk domain identification
-
Application No.: US16168487Application Date: 2018-10-23
-
Publication No.: US11245667B2Publication Date: 2022-02-08
- Inventor: Eugene (John) Neystadt , Eyal Heiman , Elisha Ben-Zvi , Robert D. Blumofe
- Applicant: Akamai Technologies, Inc.
- Applicant Address: US MA Cambridge
- Assignee: Akamai Technologies, Inc.
- Current Assignee: Akamai Technologies, Inc.
- Current Assignee Address: US MA Cambridge
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/825 ; H04L29/12 ; G06N20/00

Abstract:
It is known in the art to route client traffic to a network security gateway using the domain name system, or DNS. More specifically, a local DNS resolver on a private network may apply security intelligence to client DNS lookup requests, based on the domains that clients are seeking to resolve. If a requested domain represents a known security threat, the client can be blocked or directed to the network security gateway instead of to the desired host. This routing of the client request to the network security gateway can be accomplished by giving the client the IP address of the network security gateway instead of the actual IP address corresponding to the domain name, in response to a given DNS name query from the client. Request routing can be accomplished using other techniques, such as IP layer routing, as well.
Information query