Method and System for Providing Remote Protection of Web Servers

Report 7 Downloads 44 Views
US 20100199345A1

(19) United States (12) Patent Application Publication (10) Pub. No.: US 2010/0199345 A1 Nadir (54)

(43) Pub. Date:

METHOD AND SYSTEM FOR PROVIDING REMOTE PROTECTION OF WEB SERVERS

(75) Inventor:

Aug. 5, 2010

Publication Classi?cation

Daniel O. Nadir, Carlsbad, CA

(51)

Int. Cl. G06F 21/20

(200601)

(Us)

G06F 21/00

(2006.01)

Correspondence Address:

(52)

us. Cl. ........................................... .. 726/11; 726/22

PROCOPIO, CORY, HARGREAVES & SAV ITCH LLP

525 B STREET, SUITE 2200

(57)

SAN DIEGO, CA 92101 (US)

(73) (21)

Assignee; Appl. No.:

ABSTRACT _

_

Techmques for preventing attacks of Web servers are pro

BREACH SECURITY, INC"

vided. In one embodiment, a secure Web application ?rewall

Carlsbad, CA (Us)

(“WAF”) service server is provided to protect one or more Web servers from malicious activity. The secure WAF service server is located at a location that is remote from the one or

12/700,468

_

more Web servers. Incoming traf?c to the Web servers and

(22)

Flled?

Feb- 41 2010 Related U-s- Application Data

outbound tra?ic from the Web servers is directed through the secure WAF service server.A secure WAF associated With the

(60)

Provisional application NO_ 61 /149,844, ?led on Feb 4, 2009.

secure WAF serv1ce server analyzes the mcommg and out

bound tra?ic and can perform various responsive actions if malicious activity is detected.

325a

Requested /1 02

320a

/126

Content

Request for Content

Request 310a

DNS Request

for Content

325D

320d

Requested

—>

Content

2s

Network Address of Web Server

320C

Request for Content

@

Network Address

Requested

of Web

Content

Server

m

m

DNS

Request ,

Request for Content 32Gb

1 21 325C

Requested Content

Patent Application Publication

Aug. 5, 2010 Sheet 1 of8

US 2010/0199345 Al

110

I

\106 08 I1

FIG.1

104

/128129

Patent Application Publication

/

Aug. 5, 2010 Sheet 2 0f 8

US 2010/0199345 A1

Request

for Content

225a

21

Requested

/296

a

DNS Request

Content 1/199