发明名称 |
TWO-TIER DEEP ANALYSIS OF HTML TRAFFIC |
摘要 |
An illustrative embodiment of a computer-implemented process for two-tier deep analysis of hypertext transport protocol data, monitors Web traffic, receives a packet of Web traffic from a network to form a received packet, wherein the received packet represents Web traffic, and stores the Web traffic temporarily to form stored Web traffic. The computer-implemented process further determines whether the Web traffic is suspicious using a first tier analysis and responsive to a determination that the Web traffic is suspicious, consumes the stored Web traffic using a deep analysis module. The computer-implemented process further determines whether the stored Web traffic is a case of misuse using a second tier analysis and responsive to a determination that the stored Web traffic is a case of misuse, feeding back data about a malicious connection to an intrusion protection system before returning to monitor the Web traffic.
|
申请公布号 |
CA2712542(C) |
申请公布日期 |
2012.09.11 |
申请号 |
CA20102712542 |
申请日期 |
2010.08.25 |
申请人 |
IBM CANADA LIMITED - IBM CANADA LIMITEE |
发明人 |
ONUT, IOSIF VIOREL;PODJARNY, GUY;CONBOY, CRAIG RONALD EARL;ALY, HOSAM |
分类号 |
H04L12/26;G06F21/00 |
主分类号 |
H04L12/26 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|