Invention Grant
- Patent Title: Methods and systems for efficient encrypted SNI filtering for cybersecurity applications
-
Application No.: US17175747Application Date: 2021-02-15
-
Publication No.: US11646996B2Publication Date: 2023-05-09
- Inventor: Sean Moore , Vincent Mutolo , Jonathan R. Rogers
- Applicant: Centripetal Networks, LLC
- Applicant Address: US NH Portsmouth
- Assignee: Centripetal Networks, LLC
- Current Assignee: Centripetal Networks, LLC
- Current Assignee Address: US NH Portsmouth
- Agency: Banner & Witcoff, Ltd.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/40 ; H04L61/4511

Abstract:
A packet-filtering system described herein may be configured to filter packets with encrypted hostnames in accordance with one or packet-filtering rules. The packet-filtering system may resolve a plaintext hostname from ciphertext comprising an encrypted Server Name Indication (eSNI) value. The packet-filtering system may resolve the plaintext hostname using a plurality of techniques. Once the plaintext hostname is resolved, the packet-filtering system may then use the plaintext hostname to determine whether the packets are associated with one or more threat indicators. If the packet-filtering system determines that the packets are associated with one or more threat indicators, the packet-filtering system may apply a packet filtering operation associated with the packet-filtering rules to the packets.
Public/Granted literature
- US20220021650A1 METHODS AND SYSTEMS FOR EFFICIENT ENCRYPTED SNI FILTERING FOR CYBERSECURITY APPLICATIONS Public/Granted day:2022-01-20
Information query