The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 14, 2019

Filed:

Sep. 30, 2015
Applicant:

Symantec Corporation, Mountain View, CA (US);

Inventors:

Deb Banerjee, Cupertino, CA (US);

Susan Hassall, Brookeville, MD (US);

Assignee:

Symantec Corporation, Mountain View, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/55 (2013.01); H04L 12/24 (2006.01); H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
H04L 63/20 (2013.01); G06F 21/552 (2013.01); H04L 41/0853 (2013.01); H04L 63/101 (2013.01); H04L 63/1408 (2013.01); H04L 63/1425 (2013.01); H04L 41/046 (2013.01);
Abstract

Techniques are disclosed for constructing network whitelists in server endpoints using host-based security controls. Once constructed, the network whitelists are used to detect unauthorized communications at the server endpoints. In one embodiment, a method is disclosed for constructing a network whitelist. The method includes identifying at least a first application hosted on a computing system. The method also includes inspecting one or more configuration files associated with the first application to identify one or more configuration settings that specify how the first application communicates with one or more second applications. The method further includes generating a whitelist that specifies expected network communications activity for the first application, based on the configuration settings.


Find Patent Forward Citations

Loading…