IL192117A

Systems and methods for processing data flows

Abstract

This record has no abstract on file.

IL192117A, drawing sheet 1
Sheet 1 of 32

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

22 claims: 8 independent, 14 dependent

  1. 1
    What is claimed is:1. A method in a flow processing facility for securing a computer resource, comprising: receiving a data flow;employing a set of artificial neurons to make a determination, the determination indicating which of a plurality of patterns is present in the data flow;accessing a configuration, the configuration associating zero or more actions with each pattern of the plurality of patterns;executing the actions that are associated with the patterns that the determination indicates, the actions modifying the data flow;and transmitting the data flow.
  2. 3
    A method in a flow processing facility for providing a network service, comprising:receiving a data flow;making a characterization of the data flow, the characterization being made by a set of artificial neurons;and routing the data flow to an application in response to the characterization.
  3. 7
    A method in a flow processing facility for securing a computer resource, comprising:receiving a data flow;employing a set of artificial neurons to make a determination, the determination indicating which of a plurality of patterns is present in the data flow, the plurality of patterns being associated with a firewall application;and routing the data flow to the firewall application when the determination indicates that at least one of the plurality of patterns is present in the data flow.
  4. 11
    A computer security data flow system comprising:a facility for receiving a data flow;a normalization facility for producing a normalization of the data flow based at least in part on at least one of a plurality of machine learning logic;an application processor module for processing the normalized data;and an antivirus application that is executable by the application processor module.
  5. 14
    A method comprising:providing a flow processing facility for processing a data flow, wherein the data flow comprises packets;receiving a plurality of packets, wherein each packet includes a payload;inspecting a content of the payload of at least some of the plurality of packets;and controlling the flow of packets related to the inspected packets based on the inspection.
  6. 16
    A flow processing facility comprising:a plurality of application processor modules for detecting intrusions in packet payloads, wherein each of the plurality of application processor modules is configured to detect intrusions at a specific network layer;and a switching fabric for routing packets through the plurality of application processor modules so that a packet is processed through at least two processor modules.
  7. 18
    A method comprising:providing a flow processing facility for processing a data flow, wherein the data flow comprises data packets;providing routing information for the data packets;inspecting the packets to determine a validity for each packet;combining the inspection result with packet routing information into a network behavior;establishing a baseline for network behavior;and comparing ongoing network behavior to the baseline to detect abnormal network behavior in the flow processing facility.
  8. 20
    A method of virtual network security, comprising:providing a flow processing facility for processing a data flow;establishing a first security policy for a first virtual network;establishing a second security policy for a second virtual network;and processing the data flow for the first and second virtual networks through the data flow processor, wherein portions of the data flow that are associated with the first virtual network are processed according to the first security policy, and wherein portions of the dataflow that are associated with the second virtual network are processed according to the second security policy.