FIELD: information technology.
SUBSTANCE: method involves modifying DNS response to resolution of a domain name of a target information service such that, an "Additional" field specified by configuration information and security policy rules is added to the DNS response, said field initiating the beginning of the process of monitoring and controlling communication security, after which the modified DNS response is sent from a controlled DNS server to the DNS server of an internet provider; a request is sent on behalf of a client to the target information service; the request from the client is received at the monitoring point; the necessary control actions are determined based on the network security policy and information in the request to the target information service; control actions are carried out for network traffic.
EFFECT: providing remote monitoring and control of networking information security regardless of network topology and the location of the monitoring point and high security of controlled information structures.
3 dwg
Title | Year | Author | Number |
---|---|---|---|
METHOD FOR PROTECTING COMPUTER NETWORK AGAINST INTRUSION | 2021 |
|
RU2758997C1 |
CLOUD SERVICE SECURITY BROKER AND PROXY | 2014 |
|
RU2679549C2 |
PRIVATE NICKNAMES OF END POINTS FOR ISOLATED VIRTUAL NETWORKS | 2015 |
|
RU2669525C1 |
SYSTEMS AND METHODS FOR USING DNS MESSAGES FOR SELECTIVE COLLECTION OF COMPUTER FORENSIC DATA | 2020 |
|
RU2776349C1 |
METHOD OF ACCESSING DOMAIN NAME SYSTEM AND COMMUNICATION DEVICE | 2020 |
|
RU2810996C2 |
METHOD OF ANALYSING AND DETECTING MALICIOUS INTERMEDIATE NODES IN NETWORK | 2012 |
|
RU2495486C1 |
SYSTEM AND METHOD OF CONNECTING SECURE DNS RESOLUTION PROTOCOL | 2018 |
|
RU2726879C2 |
AUTHENTICATION METHOD WITHOUT DUPLICATION OF CREDENTIALS OF USERS BELONGING TO DIFFERENT ORGANISATIONS | 2008 |
|
RU2507702C2 |
APPARATUS AND METHODS OF BUILDING UNIVERSAL SERVICE INTERFACE NETWORKS | 2010 |
|
RU2500086C1 |
SYSTEM AND METHOD FOR DETECTION OF TARGET ATTACKS | 2014 |
|
RU2601147C2 |
Authors
Dates
2013-12-27—Published
2012-06-06—Filed