Invention Grant
- Patent Title: Hierarchical rule development and binding for web application server firewall
-
Application No.: US14960374Application Date: 2015-12-05
-
Publication No.: US09992166B2Publication Date: 2018-06-05
- Inventor: Peng Ji , Lin Luo , Vugranam C. Sreedhar , Shun Xiang Yang , Yu Zhang
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee Address: US NY Armonk
- Agency: Otterstedt, Ellenbogen & Kammer, LLP
- Agent Rabin Bhattacharya
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/08

Abstract:
At least one of an HTTP request message and an HTTP response message is intercepted. A corresponding HTTP message model includes a plurality of message model sections. A representation of the at least one of an HTTP request message and an HTTP response message is parsed into message sections in accordance with the message model sections of the HTTP message model. A plurality of security rules are bounds to the message model sections. The plurality of security rules each specify at least one action to be taken in response to a given condition, which is based, at least in part, on a corresponding given one of the message sections. The at least one of an HTTP request message and an HTTP response message is processed in accordance with the plurality of security rules. Techniques for developing rules for a web application server firewall are also provided.
Public/Granted literature
- US20160087939A1 HIERARCHICAL RULE DEVELOPMENT AND BINDING FOR WEB APPLICATION SERVER FIREWALL Public/Granted day:2016-03-24
Information query