Invention Grant
- Patent Title: Methods and systems for efficient encrypted SNI filtering for cybersecurity applications
-
Application No.: US17307080Application Date: 2021-05-04
-
Publication No.: US11271902B2Publication Date: 2022-03-08
- Inventor: Sean Moore , Vincent Mutolo , Jonathan R. Rogers
- Applicant: Centripetal Networks
- Applicant Address: US NH Portsmouth
- Assignee: Centripetal Networks
- Current Assignee: Centripetal Networks
- Current Assignee Address: US NH Portsmouth
- Agency: Banner & Witcoff, Ltd.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L61/4511

Abstract:
A packet-filtering system described herein may be configured to filter packets with encrypted hostnames in accordance with one or packet-filtering rules. The packet-filtering system may resolve a plaintext hostname from ciphertext comprising an encrypted Server Name Indication (eSNI) value. The packet-filtering system may resolve the plaintext hostname using a plurality of techniques. Once the plaintext hostname is resolved, the packet-filtering system may then use the plaintext hostname to determine whether the packets are associated with one or more threat indicators. If the packet-filtering system determines that the packets are associated with one or more threat indicators, the packet-filtering system may apply a packet filtering operation associated with the packet-filtering rules to the packets.
Public/Granted literature
- US20220021651A1 Methods and Systems for Efficient Encrypted SNI filtering for Cybersecurity Applications Public/Granted day:2022-01-20
Information query