IP Library Granted Patent US 7,620,989
Granted Patent B1
US 7,620,989 · App. 11/061,102 · Granted Nov 17, 2009

Network testing methods and systems

Assignee: Spirent Communications Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,620,989
App. No.
11/061,102
Granted
Nov 17, 2009
Kind
B1
Abstract

Network vulnerability testing methods, systems, devices, appliances and software products generate stateful and stateless network representative of network threats. The traffic is applied to a network or device under test, thereby to test the vulnerability of the network or device to threats. A graphical user interface, which does not require a programming or scripting language can be used to generate an intermediate descriptive format that can in turn be used to generate stateful or stateless threat signatures. By using the intermediate descriptive form, threats can be generated under the control of the graphical user interface and in accordance with stored threat signatures, without the need for a programming or scripting language.

Claims (24)

1. A method of testing digital network vulnerability to threats, the method executable in a network of digital processors operable to communicate via a communications channel, the method comprising:

generating both stateful and stateless network traffic, the stateful and stateless network traffic collectively representing actual threats to the network, wherein the generating is in accordance with one or more stateful or stateless threat signatures, and

applying the generated stateful and stateless network traffic to the network in a traffic stream, thereby to test network vulnerability to threats,

wherein stateful and stateless networking traffic is generated and applied to the network to represent actual network threats including any of denial of service, resource exhaustion, port scanning or port corruption, and

the generating of stateful and stateless networking traffic is effected in accordance with an intermediate descriptive format and without the use of a programming or scripting language.

2. The method of claim 1 , wherein the generating of both stateful and stateless networking traffic is operable to define any selected network threat comprising any of denial of service, resource exhaustion, port scanning, or port corruption.

3. The method of claim 2 , further comprising using a graphical user interface without the use of a programming or scripting language, and operable to generate an intermediate descriptive format that can in turn be used to generate any of stateful or stateless threat signatures.

4. The method of claim 3 further operable to corrupt any stateful or stateless traffic streams.

5. The method of claim 4 , further comprising using a graphic user interface without the use of a programming or scripting language, and that is represented using a descriptive format that requires no programming or scripting language.

6. The method of claim 5 , further operable to modify any traffic streams.

7. The method of claim 6 , wherein traffic streams are modified using Network Address Translation (NAT) techniques.

8. The method of claim 7 , further comprising using a graphical user interface without the use of a programming or scripting language, and that is represented using a descriptive format that requires no programming or scripting language.

9. The method of claim 2 wherein the intermediate descriptive format can be stored in a central repository and distributed to a testing appliance to generate stateful and stateless traffic threat signatures without the use of a programming or scripting language.

10. A system for testing a network of digital processors operable to communicate via a communications channel, the system comprising:

means for generating both stateful and stateless networking traffic, the stateful and stateless network traffic collectively representing actual threats to the network, wherein the generating is in accordance with one or more stateful or stateless threat signatures, and

means for applying the generated stateful and stateless network traffic to the network in a traffic stream, thereby to test vulnerability of the network to threats,

wherein the stateful and stateless networking traffic are generated and applied to the network to represent actual network threats including any of denial of service, resource exhaustion, port scanning or port corruption, and

the generating of stateful and stateless networking traffic is effected in accordance with an intermediate descriptive format and without the use of a programming or scripting language.

11. The system of claim 10 further comprising a testing appliance operable to generate stateful and stateless traffic threat signatures without the use of a programming or scripting language.

12. A computer software product executable in a computer to test a network of digital processors operable to communicate via communications channel, the network being operable to communicate with the computer, the computer software product comprising computer-executable instructions on a computer-readable medium, the computer-executable instructions comprising:

first computer-executable instructions executable in the computer to enable the computer to generate both stateful and stateless networking traffic, the stateful and stateless network traffic collectively representing actual threats to the network, wherein the generating is in accordance with one or more stateful or stateless threat signatures, and

second computer-executable instructions executable in the computer to apply the generated stateful and stateless network traffic to the network in a traffic stream, thereby to test vulnerability of the network to threats,

wherein the stateful and stateless networking traffic are generated and applied to the network to represent actual network threats including any of denial of service, resource exhaustion port scanning or port corruption, and

the generating of stateful and stateless networking traffic is effected in accordance with an intermediate descriptive format and without the use of a programming or scripting language.

Assignments (6)
RELEASE OF SECURITY INTEREST AT REEL/FRAME 73189/0873 Recorded May 28, 2026
From: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
To: INERTIAL LABS, INC.; VIAVI SOLUTIONS INC.; VIAVI SOLUTIONS LICENSING LLC
Reel/Frame 075642/0381 →
SECURITY INTEREST Recorded Nov 14, 2025
From: VIAVI SOLUTIONS INC.; VIAVI SOLUTIONS LICENSING LLC; INERTIAL LABS, INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS AGENT
Reel/Frame 073571/0137 →
SECURITY AGREEMENT Recorded Oct 21, 2025
From: INERTIAL LABS, INC.; VIAVI SOLUTIONS INC.; VIAVI SOLUTIONS LICENSING LLC
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
Reel/Frame 073189/0873 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 20, 2025
From: SPIRENT COMMUNICATIONS, INC.
To: VIAVI SOLUTIONS LICENSING LLC
Reel/Frame 073121/0549 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 8, 2006
From: IMPERFECT NETWORKS, INC.
To: SPIRENT COMMUNICATIONS INC.
Reel/Frame 018072/0722 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 3, 2005
From: COUTURIER, RUSSELL L.; CHIVALURI, DINKAR
To: IMPERFECT NETWORKS, INC.
Reel/Frame 016093/0722 →
Continuity (1)
Provisional Application 6054586400 · Feb 19, 2004