EP1122932A2

Protection of computer networks against malicious content

Abstract

A gateway including an input for receiving communications packets, an output for outputting communications packets generally in real time with respect to receipt thereof, a policy manager determining criteria for collection and inspection of a collection of packets and a packet collection agent receiving packets from the input in accordance with criteria established by the policy manager and including a content inspector inspecting the collection of packets in accordance with criteria established by the policy manager and being operative to prevent supply of at least one packet of a collection of packets to the output when the collection of packets includes undesirable content in accordance with the criteria established by the policy manager.

EP1122932A2, drawing sheet 1
Sheet 1 of 5

Term

Term ended

Projected expiry passed 1 February 2021, 5.6 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

17 claims: 7 independent, 10 dependent

  1. 1
    A gateway comprising:an input for receiving communications packets;an output for outputting communications packets generally in real time with respect to receipt thereof;a policy manager determining criteria for collection and inspection of a collection of packets;a packet collection agent receiving packets from said input in accordance with criteria established by said policy manager;andat least one content inspector operated by the packet collection agent and inspecting said collection of packets in accordance with criteria established by said policy manager,said packet collection agent being operative to prevent supply of at least one packet of a collection of packets to said output when said collection of packets includes undesirable content in accordance with said criteria established by said policy manager.
  2. 4
    A gateway according to any of claims 1 to 3 and wherein said packet collection agent inspects all packets of files that are to be inspected.
  3. 5
    A gateway according to any of claims I to 4 and wherein said packet collection agent operates plural content inspectors simultaneously.
  4. 6
    A gateway according to any of claims 1 to 5 and wherein said policy manager determines criteria whereby some types of files are not released even without inspection by a content inspector.
  5. 7
    A gateway according to any of claims 1 to 6 and wherein said packet collection agent operates on Internet but not on intranet traffic.
  6. 8
    A gateway comprising:an input for receiving communications packets;an output for outputting communications packets generally in real time with respect to receipt thereof;anda packet collection agent receiving packets from said input in accordance with criteria established by said policy manager;anda content inspector operated by the packet collection agent for inspecting said collection of packets and being operative to prevent supply of at least one packet of a collection of packets to said output when said collection of packets includes undesirable content.
  7. 11
    A method for protecting a computer from malicious content comprising the steps of:determining criteria for collection and inspection of a collection of packets;receiving packets from among the collection of packets in accordance with the criteria;inspecting the packets in accordance with the criteria;preventing output of at least one packet but not all packets of a collection of packets when the collection of packets includes undesirable content in accordance with the criteria;andoutputting packets other than the at least one packet generally in real time with respect to receipt thereof.