The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 21, 2017

Filed:

Aug. 13, 2015
Applicant:

Fortinet, Inc., Sunnyvale, CA (US);

Inventor:

William Jeffrey Crawford, Coquitlam, CA;

Assignee:

Fortinet, Inc., Sunnyvale, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 12/861 (2013.01); G06F 21/56 (2013.01); H04L 29/08 (2006.01); G06F 17/30 (2006.01); G06F 11/00 (2006.01); G06F 21/00 (2013.01);
U.S. Cl.
CPC ...
H04L 63/145 (2013.01); G06F 21/56 (2013.01); H04L 29/06 (2013.01); H04L 29/06224 (2013.01); H04L 49/90 (2013.01); H04L 63/0245 (2013.01); H04L 63/0281 (2013.01); H04L 67/06 (2013.01); G06F 11/00 (2013.01); G06F 17/30 (2013.01); G06F 21/00 (2013.01); H04L 67/28 (2013.01); H04L 67/289 (2013.01);
Abstract

Methods and systems for content filtering of remote file-system access protocols are provided. According to one embodiment, a proxy, implemented within a network gateway device of a private network, monitors remote file-system access protocol sessions involving client computer systems and a server computer system associated with the private network. For each file on a share of the server computer system being accessed by one or more of the client computer systems: (i) a shared holding buffer corresponding to the file is created within a shared memory of the network gateway device; (ii) data being read from or written to the file by the monitored remote file-system access protocol sessions is buffered into the shared holding buffer; and (iii) responsive to a predetermined event, content filtering is performed on the shared holding buffer to determine whether malicious, dangerous or unauthorized content is contained within the shared holding buffer.


Find Patent Forward Citations

Loading…