发明名称 Network intrusion protection
摘要 Improved techniques are disclosed for use in an intrusion prevention system or the like. For example, a method comprises the following steps performed by a computing element of a network. A packet of a flow is received, the flow comprising a plurality of packets, wherein the plurality of packets represents data in the network. A network intrusion analysis cost-benefit value is determined representing a benefit for analyzing the received packet for intrusions in relation to a cost for analyzing the received packet for intrusions. The method compares the network intrusion analysis cost-benefit value to a network intrusion analysis cost-benefit threshold to determine whether analyzing the received packet for intrusions before forwarding the received packet is warranted. Responsive to a determination that analyzing the received packet for intrusions before forwarding the received packet is not warranted, the received packet is forwarded, an indication is made that subsequent packets of the flow should be forwarded, and a determination is made whether the received packet indicates an intrusion after forwarding the received packet.
申请公布号 US8677473(B2) 申请公布日期 2014.03.18
申请号 US20080273142 申请日期 2008.11.18
申请人 DENNERLINE DAVID ALLEN;FRANKE HUBERTUS;LAPOTIN DAVID PAUL;NELMS, II TERRY LEE;YU HAO;INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 DENNERLINE DAVID ALLEN;FRANKE HUBERTUS;LAPOTIN DAVID PAUL;NELMS, II TERRY LEE;YU HAO
分类号 G06F9/00;H04L29/06 主分类号 G06F9/00
代理机构 代理人
主权项
地址