Dynamic Micro-Segmentation via Website Access Variance

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current computer security systems face challenges in effectively applying micro-segmentation to devices with complex website access patterns, as they are typically limited to devices with simple access patterns, failing to provide adequate protection for devices with varying and dynamic website usage.

Innovation Solution

A method and system for micro-segmenting devices by dynamically measuring the variance in website access patterns over time and applying a security profile that limits access to previously accessed unique domains, categories, or security risk levels, thereby defining a set of whitelisted websites based on observed patterns.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If micro-segmentation is applied to devices with simple website access patterns, then security protection is improved, but the scope of protected devices is limited and excludes devices with complex access patterns

Engineering Contradiction:
Improvesecurity protectionVSAvoidscope of protected devices
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamic micro-segmentation by continuously monitoring website access patterns and automatically adjusting security profiles based on observed behavior. The system transitions from static, pre-defined segmentation rules to dynamic, behavior-based segmentation that adapts to each device's actual usage patterns, thereby extending protection to devices with complex and varying access patterns while maintaining security effectiveness

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes the parameter of segmentation criteria from fixed, simple rules (e.g., allowing only 5 specific domains) to flexible, measured variance thresholds. By monitoring the variance in website access patterns and comparing against threshold levels, the system can determine whether a device exhibits simple or complex patterns and apply appropriate security profiles, thus expanding adaptability while maintaining reliability

Inventive Principle:
Principle #35Parameter changes

2Reliability

If strict micro-segmentation rules are applied to limit device access, then security protection is improved, but device functionality may be hindered

Engineering Contradiction:
Improvesecurity protectionVSAvoiddevice functionality
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary monitoring and profiling of website access patterns before applying restrictive security rules. By observing devices during an initial period and establishing their normal behavior baselines, the system can then apply micro-segmentation rules that are tailored to each device's actual usage patterns, preventing false restrictions that would hinder functionality while maintaining security

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements continuous feedback loops where website access patterns are monitored, variance is measured, and security profiles are adjusted based on observed behavior. This feedback mechanism ensures that segmentation rules remain aligned with actual device needs, automatically relaxing restrictions when legitimate access patterns are detected while maintaining protection against anomalies, thus preserving device functionality

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10972477B1Systems and methods for performing micro-segmenting
Publication Date: 2021.04.06 GEN DIGITAL INC
  • US10972477B1 patent drawing
  • US10972477B1 patent drawing
  • US10972477B1 patent drawing

AI summary

The disclosed computer-implemented method for performing micro-segmenting may include (i) identifying at least a portion of a device, (ii) measuring a variance value that indicates a level of variance in terms of websites accessed by the portion of the device over a period of time, and (iii) locking, in response to determining that the variance value satisfies a threshold level of simplicity, the portion of the device by applying a security profile to the portion of the device that limits the portion of the device to accessing a set of websites that is defined in terms of the websites accessed by the portion of the device over the period of time. Various other methods, systems, and computer-readable media are also disclosed.