Patents by Inventor Stephen Schwab

Stephen Schwab has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 7424744
    Abstract: A signature based intrusion detection method and system are disclosed. A method for detecting intrusions on a network generally comprises storing signature profiles identifying patterns associated with network intrusions in a signature database and generating classification rules based on the signature profiles. Data packets transmitted on the network and having corresponding classification rules are classified according to generated classification rules. Classified packets are forwarded to a signature engine for comparison with signature profiles.
    Type: Grant
    Filed: March 5, 2002
    Date of Patent: September 9, 2008
    Assignee: McAfee, Inc.
    Inventors: Handong Wu, Stephen Schwab, Robert Lom Peckham
  • Patent number: 6950947
    Abstract: Two or more computers acting as firewalls share network state data to enhance throughput performance. A firewall creates a separate common TCP control block (CCB) for each group of TCP connections through the firewall having common endpoints. The CCB is a shared data structure comprising a single microstate shared across the group of TCP connections. Each such individual TCP connection has a TCP control block, which instead of a microstate, contains a pointer to the appropriate CCB. Preferably, each firewall receives CCBs from its peers and stores them. Each firewall preferably adjusts data traffic passing through it based on the CCBs stored within it. By adjusting traffic to reduce or eliminate congestion, throughput is enhanced.
    Type: Grant
    Filed: June 20, 2000
    Date of Patent: September 27, 2005
    Assignee: Networks Associates Technology, Inc.
    Inventors: Andrew Purtell, Roger Knobbe, Stephen Schwab
  • Patent number: 6920493
    Abstract: A system and a method for communicating coalesced rule parameters in a distributed computing environment are described. A plurality of packet validation devices are communicatively interposed between network routing points within the distributed computing environment. The packet validation devices apply parameterized rules to transiting network packet traffic. A plurality of processing tree nodes are configured into a concast tree. In a lowermost layer of the concast tree, each processing tree node collects and coalesces rule parameters from at least one packet validation device. In each successive layer of the concast tree, each processing tree node collects and coalesce the rule parameters from at least one processing tree node in a next lower layer of the concast tree. A control center assembles the coalesced rule parameters from each packet validation device in an uppermost layer of the concast tree.
    Type: Grant
    Filed: March 19, 2001
    Date of Patent: July 19, 2005
    Assignee: Networks Associates Technology, Inc.
    Inventor: Stephen A. Schwab
  • Patent number: 6868069
    Abstract: A device that passively monitors arriving and departing data packets on one or more networks, correlates arriving data packets with departing data packets, and calculates a latency estimate based on the confidence of the correlation. The device detects and copies data packets arriving at a network device and the data packets departing from the same network device. A timestamp is stored for each arriving or departing data packet. Latency across a network device can be determined based on the timestamps for correlating data packets. Additionally, latency across a network device per protocol layer can also be calculated. Varying levels of confidence of a latency estimation depend on the operation necessarily performed on the data packet by the network device and the protocol level at which correlation between the arriving and departing data packets can be achieved.
    Type: Grant
    Filed: January 16, 2001
    Date of Patent: March 15, 2005
    Assignee: Networks Associates Technology, Inc.
    Inventors: Roger Knobbe, Stephen Schwab, Andrew Purtell
  • Publication number: 20020093917
    Abstract: A device that passively monitors arriving and departing data packets on one or more networks, correlates arriving data packets with departing data packets, and calculates a latency estimate based on the confidence of the correlation. The device detects and copies data packets arriving at a network device and the data packets departing from the same network device. A timestamp is stored for each arriving or departing data packet. Latency across a network device can be determined based on the timestamps for correlating data packets. Additionally, latency across a network device per protocol layer can also be calculated. Varying levels of confidence of a latency estimation depend on the operation necessarily performed on the data packet by the network device and the protocol level at which correlation between the arriving and departing data packets can be achieved.
    Type: Application
    Filed: January 16, 2001
    Publication date: July 18, 2002
    Applicant: Networks Associates,Inc. d/b/a Network Associates, Inc.
    Inventors: Roger Knobbe, Stephen Schwab, Andrew Purtell