发明名称 METHOD FOR ADAPTING SECURITY POLICIES OF AN INFORMATION SYSTEM INFRASTRUCTURE
摘要 <p>The present invention refers to a method for adapting security policies of an information system infrastructure in function of attacks wherein it comprises the steps of: - storing potential attacks and their associated risks in a data repository (126); - storing curative security policies (128) in response of the potential attacks in a data repository; - monitoring (101) entering contents representing data streams of the information system; - detecting (129) at least one attack in the information system; - assessing a success probability parameter (132) of the at least one detected attack and its associated cost impact parameter (136); - assessing an activation impact parameter of at least one curative security policy in response to the at least one detected attack and its associated cost impact parameter; - deciding of the activation or deactivation (134) of a curative security policy in function of the success probability parameter of the, at least one, detected attack, of the activation impact parameter of at least one curative security policy and of the cost impact parameters of both the detected at least one attack and the at least one curative security policy.</p>
申请公布号 WO2011138417(A1) 申请公布日期 2011.11.10
申请号 WO2011EP57252 申请日期 2011.05.05
申请人 ALCATEL LUCENT;KANOUN, WAEL;DUBUS, SAMUEL;CUPPENS, NORA;CUPPENS, FREDERIC;INSTITUT TELECOM-TELECOM BRETAGNE 发明人 KANOUN, WAEL;DUBUS, SAMUEL;CUPPENS, NORA;CUPPENS, FREDERIC
分类号 H04L29/06;G06F21/57 主分类号 H04L29/06
代理机构 代理人
主权项
地址