-
公开(公告)号:US12126653B2
公开(公告)日:2024-10-22
申请号:US17107350
申请日:2020-11-30
Applicant: Cisco Technology, Inc.
Inventor: Blake Harrell Anderson , Chris Allen Shenefiel , David McGrew , Robert M. Waitman
CPC classification number: H04L63/20 , H04L63/10 , H04L63/1416 , H04L63/166 , G06N20/00 , H04L63/145 , H04L63/1458
Abstract: In one embodiment, a service that monitors a network obtains file characteristic data of a file stored on a first endpoint in the network. The service infers characteristics of encrypted content within encrypted traffic in the network between the first endpoint and a second endpoint, by applying a machine learning-based classifier to traffic data regarding the encrypted traffic session. The service compares the file characteristic data of the file to the inferred content characteristics of the encrypted content within the encrypted traffic, to detect the file within the encrypted traffic. The service enforces a network policy in the network, based on the detection of the file within the encrypted traffic.
-
公开(公告)号:US20210112102A1
公开(公告)日:2021-04-15
申请号:US17107350
申请日:2020-11-30
Applicant: Cisco Technology, Inc.
Inventor: Blake Harrell Anderson , Chris Allen Shenefiel , David McGrew , Robert M. Waitman
IPC: H04L29/06
Abstract: In one embodiment, a service that monitors a network obtains file characteristic data of a file stored on a first endpoint in the network. The service infers characteristics of encrypted content within encrypted traffic in the network between the first endpoint and a second endpoint, by applying a machine learning-based classifier to traffic data regarding the encrypted traffic session. The service compares the file characteristic data of the file to the inferred content characteristics of the encrypted content within the encrypted traffic, to detect the file within the encrypted traffic. The service enforces a network policy in the network, based on the detection of the file within the encrypted traffic.
-