发明名称 Methods and systems for anomaly detection using internet protocol (IP) traffic conversation data
摘要 A computer-based method for detecting anomalies in the traffic passing through an internet protocol (IP) network is described. The method includes extracting, from a database, a single instance of each unique packet header associated with a plurality of IP-to-IP packets, the IP-to-IP packets having been transmitted across the IP network over a predefined period of time, analyzing the packet headers to identify anomalous conversations based on at least one of a conversation uniqueness, a time of week uniqueness, and a data quantity uniqueness, and providing alerts corresponding to detected anomalous conversations.
申请公布号 US7903566(B2) 申请公布日期 2011.03.08
申请号 US20080195333 申请日期 2008.08.20
申请人 THE BOEING COMPANY 发明人 KNAPP STEPHEN;ALDRICH TIMOTHY MARK
分类号 G06F11/30 主分类号 G06F11/30
代理机构 代理人
主权项
地址