作者: Lam Ho Yu , Ettema Taylor , Ashley Robert Earle , Li Qiuming , Mathison Paul Theodore
DOI:
关键词:
摘要: Techniques for outbound/inbound lateral traffic punting based upon process risk are disclosed. In some embodiments, a system/process/computer program product includes receiving, at network device on an enterprise network, identification (ID) information from endpoint (EP) agent executed EP device, in which the ID identifies that is associated with outbound or inbound session and selected to inspection; monitoring communications identify application (APP ID) session; performing action security policy using APP ID.