IP Library Granted Patent US 8,738,708
Granted Patent B2
US 8,738,708 · App. 11/537,432 · Granted May 27, 2014

Bounce management in a trusted communication network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,738,708
App. No.
11/537,432
Granted
May 27, 2014
Kind
B2
Abstract

An embodiment of a method handles bounced messages in a private network processing hub that is configured to handle messages submitted by a plurality of member networks that are registered with the private network processing hub, and wherein the private network processing hub and the plurality of member networks form a private network. The method may include receiving a first message from a member network or from an unregistered network within the private network processing hub, and determining whether the first message is a bounced message generated in response to an original message sent by the private network processing hub by searching the first message for a tracking identifier that was generated by the private network processing hub and inserted into the original message. The determining operation may include searching for the tracking identifier among a plurality of stored tracking identifiers. A system is described that carries out the method.

Claims (48)

1. A private network processing hub that receives and processes messages submitted by a plurality of independent member networks and handles bounced messages intended for said plurality of independent member networks, said private network processing hub and said independent member networks combining to form a private network, said private network processing hub comprising:

a message transfer agent that receives an original message from a member network of said plurality of independent member networks, said original message being sent from an original sender to a recipient, said message transfer agent further creating a tracking identifier indicating that said original message was routed through said private network processing hub, and inserting said tracking identifier into said original message prior to sending said original message to said recipient; and

a bounce management module that receives a second message and determines that said second message is a bounced message, said bounce management module further determining that said bounced message was generated in response to said original message by examining said bounced message to ascertain if said bounced message includes said tracking identifier, if said bounced message includes said tracking identifier then said bounced message is an authenticated bounced message and is delivered to said member network, if said bounced message does not include said tracking identifier then said bounced message is considered a malicious message and is rejected by said private network processing hub and is not delivered to said member network, wherein the tracking identifier is inserted into the original message by rewriting a MAIL FROM field in the original message, wherein the MAIL FROM field is rewritten by replacing a domain name in the MAIL FROM field with a Variable Envelope Return Path (VERP) address that includes the tracking identifier, and wherein the VERP address is used to filter incoming messages, wherein the bounce management module is further configured to determine an action to take responsive to receiving the authenticated bounced message, wherein the action is specified in a policy associated with the member network of the original sender.

2. The private network processing hub as recited in claim 1 , wherein said tracking identifier comprises a hash pointer based on one or more parts of said original message.

3. The private network processing hub as recited in claim 1 , wherein said bounce management module verifies that said second message is an authenticated bounced message generated in response to said original message by auditing a database of tracking identifiers.

4. The private network processing hub as recited in claim 1 , wherein said action to be taken is selected from a group consisting of:

send said bounced message back to said original sender;

submit said bounced message to one or more specified administrative addresses in said member network;

delete said bounced message; and

store said bounced message for later retrieval.

5. The private network processing hub as recited in claim 1 , wherein said bounce management module further filters said authenticated bounced message to obtain data indicative of a reason for bouncing.

6. The private network processing hub as recited in claim 5 , wherein said bounce management module further generates a report indicating said reason for said bounced message.

7. The private network processing hub as recited in claim 6 , wherein said bounce management module further aggregates a plurality of reports related to all bounced messages received in a specified period.

8. A method for handling bounced messages using a private network processing hub, said private network processing hub receiving and processing messages submitted by a plurality of member network that are registered with said private network processing hub, said private network processing hub and said plurality of member networks combining to form a private network, said method comprising:

receiving an original message from a member network of said plurality of member networks at said private network processing hub, said original message being sent from an original sender to a recipient;

generating a tracking identifier by said private network processing hub that indicates that said original message was routed through said private network processing hub;

inserting said tracking identifier into said original message by said private network processing hub prior to sending said original message to said recipient;

receiving a second message at said private network processing hub from one of said member networks of said plurality of member networks or from an unregistered network;

determining by said private network processing hub that said second message is a bounced message;

examining said bounced message by said private network processing hub to ascertain if said bounced message includes said tracking identifier;

determining by said private network processing hub whether said bounced message is an authenticated bounced message or a malicious message such that said bounced message is an authenticated bounced message that was generated in response to said original message if said bounced message includes said tracking identifier and said bounced message is considered a malicious message if said bounced message does not include said tracking identifier then said bounced message;

delivering from said private network processing hub to said member network said authenticated bounced message if said bounced message is determined to be said authenticated bounced message;

rejecting said malicious message by said private network processing hub and not delivering said malicious message from said private network hub to said member network if said bounced message is determined to be said malicious message, wherein the tracking identifier is inserted into the original message by rewriting a MAIL FROM field in the original message, wherein the MAIL FROM field is rewritten by replacing a domain name in the MAIL FROM field with a Variable Envelope Return Path (VERP) address that includes the tracking identifier, and wherein the VERP address is used to filter incoming messages; and

determining an action to take responsive to the authenticated bounced message, wherein the action is specified in a policy associated with the member network of the original sender.

9. The method as recited in claim 8 , wherein determining by said private network processing hub whether said bounced message is an authenticated bounced message or a malicious message further comprises searching by said private network processing hub for said tracking identifier in a memory containing a plurality of tracking identifiers.

10. The method as recited in claim 7 , further comprising said private network processing hub utilizing content of said bounced message to determine a reputation metric related to a source of said bounced message.

11. The method as recited in claim 10 , wherein said reputation metric is a measure of said source's reputation for generating spam.

12. The method as recited in claim 11 , further comprising said private network processing hub using content of said bounced message to derive a spam signature.

13. The method as recited in claim 8 , further comprising determining by said private network processing hub a disposition for said bounced message if said tracking identifier is found.

14. The method as recited in claim 8 , wherein said action is selected from a group consisting of:

send said bounced message to said original sender;

send said bounced message to a specified administrator address in said member network;

delete said bounced message; and

store said bounced message for later analysis.

15. The method as recited in claim 13 further comprising said private network processing hub filtering said bounced message to obtain information indicative of a reason that said bounced message was generated.

16. The method as recited in claim 13 , further comprising said private network processing hub filtering said bounced message to obtain information indicative of a reason that said bounced message was generated.

17. A non-transitory machine-readable storage medium that stores instructions for a private network processing hub to perform processes to handle bounced messages, said private network processing hub receiving and processing messages submitted by a plurality of member networks that are registered with said private network processing hub, said private network processing hub and said plurality of member networks combining to form a private network, said processes comprising:

receiving an original message from a member network of said plurality of member networks at said private network processing hub, said original message being sent from an original sender to a recipient;

generating a tracking identifier that indicates that said original message was routed through said private network processing hub;

inserting said tracking identifier into said original message prior to sending said original message to said recipient;

receiving a second message at said private network processing hub from one of said member networks of said plurality of member networks or from an unregistered network;

determining that said second message is a bounced message;

examining said bounced message to ascertain if said bounced message includes said tracking identifier;

determining whether said bounced message is an authenticated bounced message or a malicious message such that said bounced message is an authenticated bounced message that was generated in response to said original message if said bounced message includes said tracking identifier and said bounced message is considered a malicious message if said bounced message does not include said tracking identifier then said bounced message;

delivering from said private network processing hub to said member network said authenticated bounced message if said bounced message is determined to be said authenticated bounced message;

rejecting said malicious message and not delivering said malicious message from said private network hub to said member network if said bounced message is determined to be said malicious message, wherein the tracking identifier is inserted into the original message by rewriting a MAIL FROM field in the original message, wherein the MAIL FROM field is rewritten by replacing a domain name in the MAIL FROM field with a Variable Envelope Return Path (VERP) address that includes the tracking identifier, and wherein the VERP address is used to filter incoming messages; and

determining an action to take responsive to the authenticated bounced message, wherein the action is specified in a policy associated with the member network of the original sender.

18. The non-transitory machine-readable storage medium as recited in claim 17 , wherein said process of determining whether said bounced message is an authenticated bounced message or a malicious message further comprises searching for said tracking identifier in a memory containing a plurality of tracking identifiers.

Assignments (19)
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2024
From: STG PARTNERS, LLC
To: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
Reel/Frame 068671/0435 →
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 057453, FRAME 0053 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0413 →
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 056990, FRAME 0960 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0430 →
INTELLECTUAL PROPERTY ASSIGNMENT AGREEMENT Recorded Aug 15, 2024
From: MUSARUBRA US LLC
To: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
Reel/Frame 068656/0098 →
INTELLECTUAL PROPERTY ASSIGNMENT AGREEMENT Recorded Aug 15, 2024
From: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
To: MAGENTA SECURITY HOLDINGS LLC
Reel/Frame 068656/0920 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Aug 15, 2024
From: MAGENTA SECURITY HOLDINGS LLC; SKYHIGH SECURITY LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 068657/0666 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 15, 2024
From: MUSARUBRA US LLC
To: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
Reel/Frame 068657/0764 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 15, 2024
From: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
To: MAGENTA SECURITY HOLDINGS LLC
Reel/Frame 068657/0843 →
SECURITY INTEREST Recorded Aug 1, 2024
From: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
To: STG PARTNERS, LLC
Reel/Frame 068324/0731 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 061007/0124 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 057315 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 11, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 060878/0126 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 056990/0960 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 057453/0053 →
RELEASE OF SECURITY INTEREST Recorded Jul 26, 2021
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: MCAFEE, LLC; SKYHIGH NETWORKS, LLC
Reel/Frame 057620/0102 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →