The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Mar. 21, 2006

Filed:

Apr. 20, 2000
Applicants:

Mark Longworth, Sterling, VA (US);

John D. Abromavage, Fairfax, VA (US);

Todd A. Moore, Reston, VA (US);

Scott V. Totman, Vienna, VA (US);

Vince Romano, Ellicott City, MD (US);

Inventors:

Mark Longworth, Sterling, VA (US);

John D. Abromavage, Fairfax, VA (US);

Todd A. Moore, Reston, VA (US);

Scott V. Totman, Vienna, VA (US);

Vince Romano, Ellicott City, MD (US);

Assignee:

Mantech CTX Corporation, Fairfax, VA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 15/173 (2006.01); G06F 15/16 (2006.01);
U.S. Cl.
CPC ...
Abstract

A system for network security transparently occupies an observation port on the data stream, passing the entire range of network information to a dedicated interpreter. The interpreter resolves the data stream into individual data packets, which are then assembled into reconstructed network sessions according to parameters such as protocol type, source and destination addresses, source and destination ports, sequence numbers and other variables. The different types of sessions may include the traffic of many different types of users, such as e-mail, streaming video, voice-over-Internet and others. The system detects and stores the sessions into a database. A parser module may extract only the minimum information needed to reconstruct individual sessions. A backend interface permits a systems administrator to interrogate the forensic record of the network for maintenance, security and other purposes. The invention is not constrained to detect limited types of data, but rather captures and records a comprehensive record of network behavior.


Find Patent Forward Citations

Loading…