Method for Improving Security of Computer Networks
Abstract
A method of preventing unauthorized user access to a computer network has been developed. The method includes receiving a domain name server resolution request at the computer network from a requesting user. Next a reply to the requesting user is generated with a domain name server resolution and internet protocol address of a target device within the computer network. The reply is inspected with a network security device, where the network security device does not have an assigned internet protocol address so that it remains undetected by the requesting user. The network security device then monitors data traffic to the computer network to detect a reply from the requesting user. Once detected, the reply to the internet protocol address is intercepted with the network security device. Finally, the network security device verifies that the requesting user is authorized to access the computer network with the network security device.
Claims
exact text as granted — not AI-modified1 . A method of preventing unauthorized user access to a computer network,
comprising: receiving a domain name server resolution request at the computer network from a requesting user; replying to the requesting user with a domain name server resolution and internet protocol address of a target device within the computer network; inspecting the reply to the requesting user with a network security device, where the network security device does not have an assigned internet protocol address; monitoring data traffic to the computer network with the network security device to detect a reply to the internet protocol address of the target device from the requesting user; intercepting the reply to the interact protocol address of the target device from the requesting user with the network security device; and verifying that the requesting user is authorized to access the computer network with the network security device.
2 . The method of claim 1 , where the network security device uses the internet protocol address of the target device when intercepting the reply from the requesting user in order to remain undetected by the requesting user.
3 . The method of claim 1 , where the network security device comprises a firewall.
4 . The method of claim I, where the computer network in a local area network.
5 . A method of preventing unauthorized user access to a computer network, comprising:
step for receiving an access request to the computer network from a requesting user; step for replying to the access request with an internet protocol address within the computer network; step inspecting the reply to the requesting user with a network security device, where the network security device does not have an assigned internet protocol address; step for detecting a reply from the requesting user with the network security device; step for intercepting the reply from the requesting user with the network security device so that it appears to the requesting user that a connection has been established with the internet protocol address within the computer network; and step for verifying that the requesting user is authorized to access the computer network with the network security device.
6 . The method of claim 5 , where the network security device uses the internet protocol address within the computer network when intercepting the reply from the requesting user in order to remain undetected by the requesting user.Join the waitlist — get patent alerts
Track US2008134300A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.