One-click reputation adjustment
Abstract
In an example, there is disclosed a security management console, comprising: a hardware platform, comprising a processor, a memory, and a data exchange layer (DXL) interface, the DXL interface comprising a hardware network connection and a software layer, the software layer to provide a two-layer messaging bus, wherein a lower layer is an internet protocol (IP) network, and an upper layer is a publish-subscribe enterprise service bus (ESB); an interface to a reputation database, the reputation database including cached reputations for a plurality of network objects, the reputations representing the network objects' safety within an enterprise serviced by the DXL; and instructions encoded within the memory to instruct the processor to: provide a DXL security console graphical user interface (GUI), the GUI including instructions to provide a graphical representation of an object, including the object's default reputation retrieved from the reputation database; receive a user input to override the object's default reputation to a selected reputation; provide an instruction via the reputation database interface to update the object's default reputation in the database with the selected reputation; and publish a DXL message to a DXL topic associated with the object, the DXL message including the selected reputation.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A security management console, comprising:
a hardware platform, comprising a processor, a memory, and a data exchange layer (DXL) interface, the DXL interface comprising a hardware network connection and a software layer, the software layer to provide a two-layer messaging bus, wherein a lower layer is an internet protocol (IP) network, and an upper layer is a publish-subscribe enterprise service bus (ESB); an interface to a reputation database, the reputation database including cached reputations for a plurality of network objects, the reputations representing the network objects' safety within an enterprise serviced by the DXL; and instructions encoded within the memory to instruct the processor to:
provide a DXL security console graphical user interface (GUI), the GUI including instructions to provide a graphical representation of an object, including the object's default reputation retrieved from the reputation database;
receive a user input to override the object's default reputation to a selected reputation;
provide an instruction via the reputation database interface to update the object's default reputation in the database with the selected reputation; and
publish a DXL message to a DXL topic associated with the object, the DXL message including the selected reputation.
2 . The security management console of claim 1 , wherein the object is a device.
3 . The security management console of claim 1 , wherein the object is a certificate.
4 . The security management console of claim 1 , wherein the object is a file.
5 . The security management console of claim 1 , wherein the object is a URL.
6 . The security management console of claim 1 , wherein publishing the DXL message comprises sending the message to a DXL broker with a DXL header including the DXL topic.
7 . The security management console of claim 1 , wherein the instructions include a guest platform.
8 . The security management console of claim 7 , wherein the guest platform includes a virtualization layer.
9 . The security management console of claim 7 , wherein the guest platform includes a containerization infrastructure.
10 . One or more tangible, non-transitory computer-readable storage media having stored thereon executable instructions to:
provide a data exchange layer (DXL) bus, including an publish-subscribe enterprise service bus (ESB) layer on top of a traditional internet protocol (IP) network; receive an identifier for a DXL object; query an object reputation database for a default reputation for the DXL object; receive via an interface an override reputation for the object; and publish the override reputation to the DXL via a DXL message.
11 . The one or more tangible, non-transitory computer-readable storage media of claim 10 , wherein the instructions are further to cause a database update to update the DXL object with the override reputation.
12 . The one or more tangible, non-transitory computer-readable storage media of claim 10 , wherein the interface is a graphical user interface.
13 . The one or more tangible, non-transitory computer-readable storage media of claim 10 , wherein the interface is a DXL administrator graphical user interface.
14 . The one or more tangible, non-transitory computer-readable storage media of claim 10 , wherein the interface is an application programming interface (API) for providing DXL administration functions.
15 . The one or more tangible, non-transitory computer-readable storage media of claim 10 , wherein the DXL object is a device.
16 . The one or more tangible, non-transitory computer-readable storage media of claim 10 , wherein the DXL object is a certificate.
17 . A computer-implemented method of providing a one-click reputation update of an object via a data exchange layer (DXL), comprising:
establishing a logical connection with the DXL, comprising overlaying a publish-subscribe enterprise service bus (ESB) onto an internet protocol (IP) network; receiving an identifier for a DXL object; receiving a default reputation for the DXL object; receiving via a software interface an override reputation for the object; and publishing a DXL message comprising the override reputation for the object.
18 . The method of claim 17 , wherein receiving the default reputation comprises receiving the default reputation from a database.
19 . The method of claim 18 , wherein receiving the default reputation from the database comprises receiving the default reputation via a DXL message.
20 . The method of claim 17 , wherein the software interface is a graphical user interface.Join the waitlist — get patent alerts
Track US2020403977A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.