发明名称 Tiered network flow analysis
摘要 The effects on networking systems of attacks on vulnerabilities, such as vulnerable modules in a webserver, SYN flooding, etc, can be devastating to a network environment. In various embodiments, a first, quick, or inexpensive analysis is performed on incoming network flows. If an intrusion issue or other problem is suspected based on the first, rapid, or an inexpensive analysis, then the flow can be flagged for redirection to another process, virtual machine, or physical computer module that will perform a deeper, more expensive analysis on the network flow. If there are no issues detected in the second, deeper analysis, then the network flow can be forwarded to its intended recipient. If an issue is detected in the second, deeper analysis, then the network flow can be throttled, quarantined, ignored, sent to an un-trusted portion of the system, sent for more analysis, or otherwise handled or flagged.
申请公布号 US8510821(B1) 申请公布日期 2013.08.13
申请号 US20100825718 申请日期 2010.06.29
申请人 BRANDWINE ERIC JASON;SIVASUBRAMANIAN SWAMINATHAN;MARSHALL BRADLEY E.;CERTAIN TATE ANDREW;AMAZON TECHNOLOGIES, INC. 发明人 BRANDWINE ERIC JASON;SIVASUBRAMANIAN SWAMINATHAN;MARSHALL BRADLEY E.;CERTAIN TATE ANDREW
分类号 G06F15/16;G06F11/00;G06F11/30 主分类号 G06F15/16
代理机构 代理人
主权项
地址