发明授权
- 专利标题: System and method for inspecting domain name system flows in a network environment
- 专利标题(中): 在网络环境中检查域名系统流的系统和方法
-
申请号: US14661058申请日: 2015-03-18
-
公开(公告)号: US09210122B2公开(公告)日: 2015-12-08
- 发明人: Robert Batz , Robert Mackie
- 申请人: CISCO TECHNOLOGY, INC.
- 申请人地址: US CA San Jose
- 专利权人: CISCO TECHNOLOGY, INC.
- 当前专利权人: CISCO TECHNOLOGY, INC.
- 当前专利权人地址: US CA San Jose
- 代理机构: Patent Capital Group
- 主分类号: H04L29/12
- IPC分类号: H04L29/12 ; H04L12/14 ; H04L29/06 ; H04L12/801 ; H04L29/08 ; H04L12/24
摘要:
A method is provided in one example and includes maintaining a correlation between a domain name and a plurality of Internet protocol (IP) addresses included in a domain name system (“DNS”) response to a DNS request in connection with DNS exchange between a subscriber and a DNS server, wherein each of the IP addresses corresponds to one of a plurality of web servers associated with the domain name; receiving from the subscriber a packet associated with a flow; identifying an IP address within the packet as being one of the plurality of IP addresses included in the DNS response; and executing a policy decision for the subsequent flow without inspecting the contents of the subsequent flow at layer 7 based on an identity of the subscriber and the domain name correlated to the identified IP address, wherein the policy decision comprises charging a different rate for a particular flow.
公开/授权文献
信息查询