发明名称 |
ACTIVE NETWORK DEFENSE SYSTEM AND METHOD |
摘要 |
PROBLEM TO BE SOLVED: To provide an active network defense system which monitors and blocks traffic automatically. SOLUTION: The system is set up in an in-line state with respect to a packet traffic data flow as a part of a network infrastructure. In the configuration, all passing packets are inspected and processed. An algorithmic filter operation applies statistical threshold filtering to the data flow in order to identify a threat existing across many sessions. A trigger filtering operation applies header and content match filtering to the data flow in order to identify a threat existing within each session. Threatening packet traffic is blocked and threatening session is terminated. Suspicious traffic is extracted from the data flow and receives more comprehensive content matching examination and asset risk analyzing examination further. COPYRIGHT: (C)2011,JPO&INPIT
|
申请公布号 |
JP2010268483(A) |
申请公布日期 |
2010.11.25 |
申请号 |
JP20100141647 |
申请日期 |
2010.06.22 |
申请人 |
TIPPINGPOINT TECHNOLOGIES INC |
发明人 |
CANTRELL CRAIG;WILLEBEEK-LEMAIR MARC;COX DENNIS;MCHALE JOHN;SMITH BRIAN;KOLBLY DONOVAN |
分类号 |
H04L12/66;G06F13/00;H04L12/26;H04L12/56;H04L29/06 |
主分类号 |
H04L12/66 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|