发明名称 Network intrusion detection and prevention system and method thereof
摘要 The present invention relates to a network intrusion detection and prevention system. The system includes: a signature based detecting device; an anomaly behavior based detecting device; and a new signature creating and verifying device disposed between the signature based detecting device and the anomaly behavior based detecting device, wherein if the anomaly behavior based detecting device detects network-attack-suspicious packets, the new signature creating and verifying device collects and searches the detected suspicious packets for common information, and then creates a new signature on the basis of the searched common information and at the same time, verifies whether or not the created new signature is applicable to the signature based detecting device, and then registers the created new signature to the signature based detecting device if it is determined that the created new signature is applicable.
申请公布号 US7565693(B2) 申请公布日期 2009.07.21
申请号 US20040023384 申请日期 2004.12.29
申请人 ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE 发明人 SHIN SEUNG WON;OH JINTAE;KIM KI YOUNG;JANG JONG SOO;SOHN SUNG WON
分类号 G06F11/00 主分类号 G06F11/00
代理机构 代理人
主权项
地址