US Patent Application 18359472. Method, System, and Computer Program Product for Protocol Parsing for Network Security simplified abstract

From WikiPatents
Jump to navigation Jump to search

Method, System, and Computer Program Product for Protocol Parsing for Network Security

Organization Name

Visa International Service Association

Inventor(s)

Md Mahmud Hossain of Lansdowne VA (US)

D M Shams Zawoad of Dublin CA (US)

Joel Partap Samaroo of Lyndhurst NJ (US)

Patrick Michael Crennen of Lakewood CO (US)

Method, System, and Computer Program Product for Protocol Parsing for Network Security - A simplified explanation of the abstract

This abstract first appeared for US patent application 18359472 titled 'Method, System, and Computer Program Product for Protocol Parsing for Network Security

Simplified Explanation

The patent application describes a method for parsing network protocols for enhanced network security.

  • The method involves receiving packets and extracting lower layer data from each packet.
  • The payload of each packet is then sent to a first queue for further processing.
  • A routing system routes the payload of each packet to a second queue based on the protocol of the packet.
  • A protocol parser node in a parsing system then extracts higher layer data from the payload of each packet in the second queue.
  • The lower layer data is stored in a third queue by the packet capture system, while the higher layer data is also stored in the same third queue by the parsing system.
  • The invention includes a system and computer program product for implementing this method.


Original Abstract Submitted

Provided is a method for protocol parsing for network security. The method may include receiving, by a packet capture system, a plurality of packets, parsing lower layer data from each packet, and communicating a respective payload of each respective packet to at least one first queue. A routing system may route the respective payload of each respective packet to a respective second queue of a plurality of second queues based on a respective protocol of the respective packet. A respective protocol parser node of a parsing system may parse higher layer data from the respective payload of each respective packet from each respective second queue. The packet capture system may communicate the lower layer data for each packet to a third queue, and the parsing system may communicate the higher layer data for each packet to the third queue. A system and computer program product are also disclosed.