发明名称 Method of integrating a security operations policy into a threat management vector
摘要 The invention relates to the integration of a security operations policy into a threat management vector. In one embodiment, a method according to the invention includes receiving at least one threat management vector (TMV) from a TMV generator, the TMV including a root vulnerability vector, at least one system vector, at least one system level vector, and a countermeasures payload including intrusion detection countermeasures (IDC), intrusion response countermeasures (IRC), and vulnerability remediation countermeasures (VRC); forwarding to the TMDC a TMV including only the root vulnerability vector, the at least one system vector, and the at least one system level vector; propagating the TMV through a hierarchy of policy mediation regions (PMRs), each PMR being operable to refine at least one of the IDC, the IRC, and the VRC; refining at least one of the IDC, the IRC, and the VRC to conform to a security operations policy of the PMR; forwarding the refined TMV to a threat management domain controller (TMDC); recording refinements made by each PMR to each of the IDC, the IRC, and the VRC; transferring the recorded refinements to a threat management control book (TMCB); and marking the refined TMV as having been refined by each PMR making a refinement.
申请公布号 US7770203(B2) 申请公布日期 2010.08.03
申请号 US20070736068 申请日期 2007.04.17
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 MCKENNA JOHN J.
分类号 H04L29/06;G06F21/00 主分类号 H04L29/06
代理机构 代理人
主权项
地址