| CPC H04L 63/0209 (2013.01) [G16Y 10/75 (2020.01); G16Y 30/10 (2020.01); H04L 43/08 (2013.01); H04L 63/10 (2013.01)] | 20 Claims |

|
1. A network security method, comprising the steps of:
receiving a first plurality of network flows in an initial communication from a first electronic device;
generating a first device communication model for the first electronic device based on the received first plurality of network flows;
obtaining one or more additional communications from the first electronic device, wherein the one or more additional communications includes a received second plurality of network flows;
categorizing the received second plurality of network flows based on the generated first device communication model; and
controlling access of the first electronic device to an external electronic network according to a result from the step of categorizing,
wherein each network flow of the first and second plurality of network flows includes a sequence of packets, and
wherein each packet of the sequence of packets has the same tuple as other packets within the sequence of packets.
|