Invention Grant
US08627442B2 Hierarchical rule development and binding for web application server firewall
有权
Web应用服务器防火墙的层次规则开发和绑定
- Patent Title: Hierarchical rule development and binding for web application server firewall
- Patent Title (中): Web应用服务器防火墙的层次规则开发和绑定
-
Application No.: US13114315Application Date: 2011-05-24
-
Publication No.: US08627442B2Publication Date: 2014-01-07
- Inventor: Peng Ji , Lin Luo , Vugranam C. Sreedhar , Shun Xiang Yang , Yu Zhang
- Applicant: Peng Ji , Lin Luo , Vugranam C. Sreedhar , Shun Xiang Yang , Yu Zhang
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Otterstedt, Ellenbogen & Kammer, LLP
- Agent Anne V. Dougherty
- Main IPC: G06F9/00
- IPC: G06F9/00 ; G06F15/16 ; G06F17/00 ; G06F11/00 ; G06F12/14 ; G06F12/16 ; G08B23/00

Abstract:
At least one of an HTTP request message and an HTTP response message is intercepted. A corresponding HTTP message model is identified. The HTTP message model includes a plurality of message model sections. Additional steps include parsing a representation of the at least one of an HTTP request message and an HTTP response message into message sections in accordance with the message model sections of the HTTP message model; and binding a plurality of security rules to the message model sections. The plurality of security rules each specify at least one action to be taken in response to a given condition. The given condition is based, at least in part, on a corresponding given one of the message sections. A further step includes processing the at least one of an HTTP request message and an HTTP response message in accordance with the plurality of security rules. Techniques for developing rules for a web application server firewall are also provided.
Public/Granted literature
- US20120304275A1 HIERARCHICAL RULE DEVELOPMENT AND BINDING FOR WEB APPLICATION SERVER FIREWALL Public/Granted day:2012-11-29
Information query