Patents Assigned to Liquidware Labs, Inc.
  • Patent number: 7823194
    Abstract: A method and system for managing and tracking communications within a computer network. A unique user identifier and unique system identifier are assigned to each authorized user and each authorized computer, respectively, within a computer network. The unique user and system identifiers are inserted into the headers of packets for packet communications and transmissions within the network. Subsequently, the unique user and system identifiers are extracted from the headers of the packets and then recorded and logged in a database and associated in the database with the corresponding communication.
    Type: Grant
    Filed: August 13, 2003
    Date of Patent: October 26, 2010
    Assignee: Liquidware Labs, Inc.
    Inventor: A. David Shay
  • Patent number: 7660980
    Abstract: Methods and systems for establishing secure TCP/IP communications for individual network connections include the steps of intercepting a conventional TCP SYN packet prior to transmission from a source node to a destination node, embedding unique identifiers into standard fields of the packet header, wherein the unique identifiers are associated with the specific connection attempt and wherein the unique identifiers identify the user account and/or the computer hardware initiating the communication attempt, then forwarding the modified TCP SYN packet to the destination node and intercepting the modified TCP SYN packet prior to arrival, determining whether secure communications are required based on the unique identifiers extracted from the packet headers, based on other TCP/IP information, and based on predefined rules associated with the same. If secure communications are required, such requirement is communicated within either an RST or a SYN-ACK back to the source node.
    Type: Grant
    Filed: March 23, 2007
    Date of Patent: February 9, 2010
    Assignee: Liquidware Labs, Inc.
    Inventors: A. David Shay, Joubert Berger, Patricia Joy Leima, Jonathan Alexander, Chaoting Xuan
  • Patent number: 7591001
    Abstract: The disclosed system, apparatuses, methods, and computer-readable media can be used by a computer to establish the security status of another computer before establishing a network connection to it. Responsive to a request message, security state data indicating this status can be incorporated into a response message as one of the first few packets exchanged by computers to establish a network connection. This enables a computer to determine whether the other computer's security status is compliant with its security policy before establishing the network connection, reducing risk of infection by a virus, worm, or the like.
    Type: Grant
    Filed: May 5, 2005
    Date of Patent: September 15, 2009
    Assignee: Liquidware Labs, Inc.
    Inventor: A. David Shay
  • Patent number: 7552323
    Abstract: Methods, systems and computer-readable data storage media for authentication and/or access authorization in a communications network. A source node initiates a request for network services, such as session establishment, database access, or application access. Known network resources, authorized user, and/or source information are stored in a database at a network portal along with access policy rules that can be device and/or user dependent. A source node can construct a packet header including a user identifier indicating the user originating the request, and/or a source identifier indicating the hardware from which the request is originated. At least one of these identifiers are included with a synchronization packet for transmission to a destination node. An appliance or firewall in the communications network receives, authenticates, and determines whether resource access is authorized before releasing the packet to its intended destination.
    Type: Grant
    Filed: August 19, 2003
    Date of Patent: June 23, 2009
    Assignee: Liquidware Labs, Inc.
    Inventor: A. David Shay
  • Patent number: 7549159
    Abstract: A system of the invention comprises first and second computers. The first computer retrieves and incorporates its security state data in a message requesting a network connection with the second computer. The second computer receives the message and determines whether its security policy data permits connection with the first computer given the security state of the first computer as indicated by its security state data. The security state data can comprise data indicating whether an anti-virus application, firewall application, or operating system are running on the first computer, and are up-to-date. If so, the second computer permits the network connection to proceed. If not, then the second computer either drops the connection request or terminates the connection request by transmitting a disconnection message to the first computer. The invention also comprises related apparatuses, methods, and computer-readable media.
    Type: Grant
    Filed: May 5, 2005
    Date of Patent: June 16, 2009
    Assignee: Liquidware Labs, Inc.
    Inventor: A. David Shay