发明名称 |
Monitoring network activity |
摘要 |
A system for analysing network traffic, particularly to detect suspect packets and identify attacks or potential attacks. Data packets which meet defined criteria are detected and their details forwarded to a database server where the details are stored so as to be accessible for use in analysis in conjunction with the details of other detected packets. Packet detection uses a tap and a packet factory which creates a packet for analysis consisting of the received packet and a unique identifier. A series of adapters are used to apply functions to different parts of the packets, to detect those meeting the criteria.
|
申请公布号 |
US7594009(B2) |
申请公布日期 |
2009.09.22 |
申请号 |
US20040380315 |
申请日期 |
2004.01.12 |
申请人 |
TRIULZI ARRIGO G B;JOUBERT ADRIAAN W |
发明人 |
TRIULZI ARRIGO G. B.;JOUBERT ADRIAAN W. |
分类号 |
G06F15/173;H04L12/26;H04L29/06 |
主分类号 |
G06F15/173 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|