发明名称 TWO-TIER DEEP ANALYSIS OF HTML TRAFFIC
摘要 An illustrative embodiment of a computer-implemented process for two-tier deep analysis of hypertext transport protocol data, monitors Web traffic, receives a packet of Web traffic from a network to form a received packet, wherein the received packet represents Web traffic, and stores the Web traffic temporarily to form stored Web traffic. The computer-implemented process further determines whether the Web traffic is suspicious using a first tier analysis and responsive to a determination that the Web traffic is suspicious, consumes the stored Web traffic using a deep analysis module. The computer-implemented process further determines whether the stored Web traffic is a case of misuse using a second tier analysis and responsive to a determination that the stored Web traffic is a case of misuse, feeding back data about a malicious connection to an intrusion protection system before returning to monitor the Web traffic.
申请公布号 CA2712542(C) 申请公布日期 2012.09.11
申请号 CA20102712542 申请日期 2010.08.25
申请人 IBM CANADA LIMITED - IBM CANADA LIMITEE 发明人 ONUT, IOSIF VIOREL;PODJARNY, GUY;CONBOY, CRAIG RONALD EARL;ALY, HOSAM
分类号 H04L12/26;G06F21/00 主分类号 H04L12/26
代理机构 代理人
主权项
地址