发明名称 Signature-free intrusion detection
摘要 An apparatus and method are disclosed for detecting intrusions in Voice over Internet Protocol systems, without the use of an attack signature database. In particular, the illustrative embodiment is based on the observation that some VoIP-related protocols (e.g., the Session Initiation Protocol [SIP], etc .) are simple enough to be represented by a finite-state machine (FSM) of compact size. A finite-state machine is maintained for each session/node/protocol combination, and any illegal state or state transition - which might be the result of a malicious attack - is flagged as a potential intrusion.
申请公布号 EP2037656(A3) 申请公布日期 2010.12.29
申请号 EP20080163848 申请日期 2008.09.08
申请人 AVAYA, INC. 发明人 GARG, SACHIN;SINGH, NAVJOT
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址