VERFAHREN ZUR STEIGERUNG DES DURCHSATZES VON DATEN IN EINER NETZÜBERGANGSEINRICHTUNG, UND ROUTER

In one aspect, the present invention is directed to a method for speeding up the transfer of data objects through a network gateway in which the incoming data objects are passed through a malicious content detection facility for checking the existence of malicious content within a data object, e.g....

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: GRUPER, SHIMON, ELAZAM, OFER
Format: Patent
Sprache:ger
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator GRUPER, SHIMON
ELAZAM, OFER
description In one aspect, the present invention is directed to a method for speeding up the transfer of data objects through a network gateway in which the incoming data objects are passed through a malicious content detection facility for checking the existence of malicious content within a data object, e.g. a Web file, a multimedia file, an e-mail message, and a communication packet; the method characterized according to the steps of: pre-determining one or more criteria for classifying a data object as trusted or distrusted according to the possibility of existence of malicious content within the data objects; classifying an incoming data object to the gateway as trusted or distrusted according to one or more of the criteria; and routing a trusted data object directly toward the object's destination, thereby bypassing the malicious content detection facility. According to a preferred embodiment of the invention, the criterion is prior information that the type of the data object comprises non-executable code. In another aspect, the present invention is directed to a router apparatus comprising programmable means for detecting malicious content within data objects that pass through the apparatus, characterized in having: storage means for storing data of at least one criteria for classifying a data object as trusted or distrusted; programmable means for classifying a data object as trusted or distrusted according to at least one of the criteria stored within the storage means; programmable means for routing a distrusted data object to the programmable means for detecting malicious content within data objects; and programmable means for routing a trusted data object to the object's original destination.There is provided in accordance with another aspect of the present invention a security routing methodology and apparatus which includes sensing information contained in an object, analyzing the information to determine a security classification thereof and routing the object to at least one node selected from at least one destination node and at least one intermediate node which is selected at least partially in accordance with the security classification.
format Patent
fullrecord <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_ATE311064TT1</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>ATE311064TT1</sourcerecordid><originalsourceid>FETCH-epo_espacenet_ATE311064TT13</originalsourceid><addsrcrecordid>eNqNjDEOwjAQBNNQIOAPRw8SVhC9sS-2m4t0PqdIE0WRqRBECs_hN3wMFzyAaker2V1XY4fcaM9I0CeGKBgcciIHFiPYxMZHLX3hriWwWooYCDAQMhBK_3lfkZ0mF0vHwXgp4wMkssBtEuRttbqN9yXvfrmp9g2K8cc8P4e8zOOUH_k1lOdaqdPlLKLqf5wvYVg1eQ</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>VERFAHREN ZUR STEIGERUNG DES DURCHSATZES VON DATEN IN EINER NETZÜBERGANGSEINRICHTUNG, UND ROUTER</title><source>esp@cenet</source><creator>GRUPER, SHIMON ; ELAZAM, OFER</creator><creatorcontrib>GRUPER, SHIMON ; ELAZAM, OFER</creatorcontrib><description>In one aspect, the present invention is directed to a method for speeding up the transfer of data objects through a network gateway in which the incoming data objects are passed through a malicious content detection facility for checking the existence of malicious content within a data object, e.g. a Web file, a multimedia file, an e-mail message, and a communication packet; the method characterized according to the steps of: pre-determining one or more criteria for classifying a data object as trusted or distrusted according to the possibility of existence of malicious content within the data objects; classifying an incoming data object to the gateway as trusted or distrusted according to one or more of the criteria; and routing a trusted data object directly toward the object's destination, thereby bypassing the malicious content detection facility. According to a preferred embodiment of the invention, the criterion is prior information that the type of the data object comprises non-executable code. In another aspect, the present invention is directed to a router apparatus comprising programmable means for detecting malicious content within data objects that pass through the apparatus, characterized in having: storage means for storing data of at least one criteria for classifying a data object as trusted or distrusted; programmable means for classifying a data object as trusted or distrusted according to at least one of the criteria stored within the storage means; programmable means for routing a distrusted data object to the programmable means for detecting malicious content within data objects; and programmable means for routing a trusted data object to the object's original destination.There is provided in accordance with another aspect of the present invention a security routing methodology and apparatus which includes sensing information contained in an object, analyzing the information to determine a security classification thereof and routing the object to at least one node selected from at least one destination node and at least one intermediate node which is selected at least partially in accordance with the security classification.</description><edition>7</edition><language>ger</language><subject>ELECTRIC COMMUNICATION TECHNIQUE ; ELECTRICITY ; TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><creationdate>2005</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20051215&amp;DB=EPODOC&amp;CC=AT&amp;NR=E311064T1$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,776,881,25542,76289</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20051215&amp;DB=EPODOC&amp;CC=AT&amp;NR=E311064T1$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>GRUPER, SHIMON</creatorcontrib><creatorcontrib>ELAZAM, OFER</creatorcontrib><title>VERFAHREN ZUR STEIGERUNG DES DURCHSATZES VON DATEN IN EINER NETZÜBERGANGSEINRICHTUNG, UND ROUTER</title><description>In one aspect, the present invention is directed to a method for speeding up the transfer of data objects through a network gateway in which the incoming data objects are passed through a malicious content detection facility for checking the existence of malicious content within a data object, e.g. a Web file, a multimedia file, an e-mail message, and a communication packet; the method characterized according to the steps of: pre-determining one or more criteria for classifying a data object as trusted or distrusted according to the possibility of existence of malicious content within the data objects; classifying an incoming data object to the gateway as trusted or distrusted according to one or more of the criteria; and routing a trusted data object directly toward the object's destination, thereby bypassing the malicious content detection facility. According to a preferred embodiment of the invention, the criterion is prior information that the type of the data object comprises non-executable code. In another aspect, the present invention is directed to a router apparatus comprising programmable means for detecting malicious content within data objects that pass through the apparatus, characterized in having: storage means for storing data of at least one criteria for classifying a data object as trusted or distrusted; programmable means for classifying a data object as trusted or distrusted according to at least one of the criteria stored within the storage means; programmable means for routing a distrusted data object to the programmable means for detecting malicious content within data objects; and programmable means for routing a trusted data object to the object's original destination.There is provided in accordance with another aspect of the present invention a security routing methodology and apparatus which includes sensing information contained in an object, analyzing the information to determine a security classification thereof and routing the object to at least one node selected from at least one destination node and at least one intermediate node which is selected at least partially in accordance with the security classification.</description><subject>ELECTRIC COMMUNICATION TECHNIQUE</subject><subject>ELECTRICITY</subject><subject>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2005</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNqNjDEOwjAQBNNQIOAPRw8SVhC9sS-2m4t0PqdIE0WRqRBECs_hN3wMFzyAaker2V1XY4fcaM9I0CeGKBgcciIHFiPYxMZHLX3hriWwWooYCDAQMhBK_3lfkZ0mF0vHwXgp4wMkssBtEuRttbqN9yXvfrmp9g2K8cc8P4e8zOOUH_k1lOdaqdPlLKLqf5wvYVg1eQ</recordid><startdate>20051215</startdate><enddate>20051215</enddate><creator>GRUPER, SHIMON</creator><creator>ELAZAM, OFER</creator><scope>EVB</scope></search><sort><creationdate>20051215</creationdate><title>VERFAHREN ZUR STEIGERUNG DES DURCHSATZES VON DATEN IN EINER NETZÜBERGANGSEINRICHTUNG, UND ROUTER</title><author>GRUPER, SHIMON ; ELAZAM, OFER</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_ATE311064TT13</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>ger</language><creationdate>2005</creationdate><topic>ELECTRIC COMMUNICATION TECHNIQUE</topic><topic>ELECTRICITY</topic><topic>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</topic><toplevel>online_resources</toplevel><creatorcontrib>GRUPER, SHIMON</creatorcontrib><creatorcontrib>ELAZAM, OFER</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>GRUPER, SHIMON</au><au>ELAZAM, OFER</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>VERFAHREN ZUR STEIGERUNG DES DURCHSATZES VON DATEN IN EINER NETZÜBERGANGSEINRICHTUNG, UND ROUTER</title><date>2005-12-15</date><risdate>2005</risdate><abstract>In one aspect, the present invention is directed to a method for speeding up the transfer of data objects through a network gateway in which the incoming data objects are passed through a malicious content detection facility for checking the existence of malicious content within a data object, e.g. a Web file, a multimedia file, an e-mail message, and a communication packet; the method characterized according to the steps of: pre-determining one or more criteria for classifying a data object as trusted or distrusted according to the possibility of existence of malicious content within the data objects; classifying an incoming data object to the gateway as trusted or distrusted according to one or more of the criteria; and routing a trusted data object directly toward the object's destination, thereby bypassing the malicious content detection facility. According to a preferred embodiment of the invention, the criterion is prior information that the type of the data object comprises non-executable code. In another aspect, the present invention is directed to a router apparatus comprising programmable means for detecting malicious content within data objects that pass through the apparatus, characterized in having: storage means for storing data of at least one criteria for classifying a data object as trusted or distrusted; programmable means for classifying a data object as trusted or distrusted according to at least one of the criteria stored within the storage means; programmable means for routing a distrusted data object to the programmable means for detecting malicious content within data objects; and programmable means for routing a trusted data object to the object's original destination.There is provided in accordance with another aspect of the present invention a security routing methodology and apparatus which includes sensing information contained in an object, analyzing the information to determine a security classification thereof and routing the object to at least one node selected from at least one destination node and at least one intermediate node which is selected at least partially in accordance with the security classification.</abstract><edition>7</edition><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language ger
recordid cdi_epo_espacenet_ATE311064TT1
source esp@cenet
subjects ELECTRIC COMMUNICATION TECHNIQUE
ELECTRICITY
TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION
title VERFAHREN ZUR STEIGERUNG DES DURCHSATZES VON DATEN IN EINER NETZÜBERGANGSEINRICHTUNG, UND ROUTER
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-02-05T05%3A39%3A55IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=GRUPER,%20SHIMON&rft.date=2005-12-15&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3EATE311064TT1%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true