The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 11, 2011

Filed:

Feb. 03, 2009
Applicants:

Stephen W. Turner, Menlo Park, CA (US);

Hsien-chung Woo, Fremont, CA (US);

Sanjay Kalra, San Jose, CA (US);

Truman Joe, Mountain View, CA (US);

Wendy R. Cartee, Los Altos, CA (US);

Inventors:

Stephen W. Turner, Menlo Park, CA (US);

Hsien-Chung Woo, Fremont, CA (US);

Sanjay Kalra, San Jose, CA (US);

Truman Joe, Mountain View, CA (US);

Wendy R. Cartee, Los Altos, CA (US);

Assignee:

Juniper Networks, Inc., Sunnyvale, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 11/00 (2006.01); H04J 3/14 (2006.01); H04L 1/00 (2006.01);
U.S. Cl.
CPC ...
Abstract

A network router includes a set of interface cards to receive packets from a network, and a set of accounting modules to calculate flow statistics for the packets. The router further includes a control unit to adaptively update routing information in response to the calculated flow statistics, and to route the packets in accordance with the routing information. The control unit identifies potentially malicious packet flows for the received packets based on the flow statistics, and applies an intercept filter to intercept the packets of the identified packet flows. The control unit analyzes the intercepted packets in real-time to determine the presence of a network event, and updates the routing information based on the determination, e.g., by terminating routing for packets associated with malicious packet flows. In this manner, the router may adaptively respond to network events, such as network security violations.


Find Patent Forward Citations

Loading…