IP Library › Granted Patent US 7,350,203
Granted Patent B2
US 7,350,203 · App. 10/201,430 · Granted Mar 25, 2008

Network security software

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,350,203
App. No.
10/201,430
Granted
Mar 25, 2008
Kind
B2
Abstract

A software facility for evaluating and reporting security vulnerabilities on a computer network that comprises an interactive interface for a network scanner that incorporates recovery points, a health metrics facility, a status pager for mobile user notification and a reporting module for producing reports on the network's security status.

Claims (38)

1. A software facility for evaluating and reporting security vulnerabilities on a computer network having nodes, each node performing one or more production tasks, said facility comprising:

a network scanner incorporating recovery points providing a restart capability, said scanner further comprising password intrusion routines obtaining password files using read-only methods;

a web based health metrics reporter;

a status pager for mobile user notification; and

a job controller, providing for waiving a predetermined vulnerability and tracking all waivers, whereby said scanner, said reporter and said pager are controlled, wherein said job controller scans a node without impacting the one or more production tasks of said node, said status pager indicates a scanner status, a server status and an intrusion.

2. A software facility as in claim 1 further comprising:

a notification tool for prompting a user of an event.

3. A software facility as in claim 1 wherein:

the health metrics facility is web based.

4. A software facility as in claim 1 wherein:

the job controller provides for expiration of waivers.

5. A software facility as in claim 1 further comprising:

means to automatically update an IP address to correspond to a particular user.

6. A software facility as in claim 1 further comprising:

a program versioning control system.

7. A software facility as in claim 1 further comprising:

automated tutorials.

8. A software facility as in claim 1 further comprising:

an intrusion detection system.

9. A software facility as in claim 1 further comprising:

means for maintaining its own internal domainname system for joining other domainname systems to their corresponding IP addresses.

10. A software facility as in claim 1 further comprising:

a banner filter.

11. A method for evaluating and reporting security vulnerabilities on a computer network comprising:

scanning the nodes of a network for vulnerabilities with a scanner that incorporates recovery points providing a restart capability, said scanner comprising password intrusion routines obtaining password files using read-only methods;

reporting the operation and results of the scanning;

providing mobile notification of predetermined events; and

maintaining an independent domainname system for joining domainname systems to the corresponding IP addresses, and providing for waiving a predetermined vulnerability and tracking all waivers, wherein said reporting includes indicating a scanner status, a server status and an intrusion.

12. A method for evaluating and reporting vulnerabilities as in claim 11 further comprising:

automatically providing tutorials on a particular vulnerability to user.

13. A software facility for evaluating and reporting security vulnerabilities on a computer network having nodes, each node performing one or more production tasks, said facility comprising:

a network scanner incorporating recovery points providing a restart capability, said scanner comprising password intrusion routines obtaining password files using read-only methods;

a Web based health metrics reporter;

a status pager for mobile user notifications;

a job controller whereby said scanner, said reporter and said pager are controlled, said job controller providing for waiving a predetermined vulnerability and tacking all waivers;

a program versioning control system;

an intrusion detection system; and

a banner filter for assessing banner compliance regarding proper wording, wherein said job controller defines an enterprise scan and scans a node without impacting the one or more production tasks of said node, and said status pager indicates a scanner status, a server status and an intrusion.

Continuity (1)
Related Publication 20040019803A1 · Jan 29, 2004