发明名称 EVENT ANALYSIS OF IDS AND WARNING SYSTEM
摘要 PROBLEM TO BE SOLVED: To prevent an event analysis of IDS and warning system capable of analyzing event data when unauthorized access generation or the like occurs in a network including the case in which there exists an attacker in the network, detecting the unauthorized access quickly after the communication event, issuing an appropriate alert, treating unauthorized accesses appropriately, and suppressing secondary damage. SOLUTION: In the system, a processing control unit 30 analyzes event data and acquires total numerical information totaling the number of communication event occurrences common in content in one or a plurality of data entry contents of the event data, and an unauthorized access detection part 40 checks whether or not event data content or total numerical value information coincides with specified detection conditions to determine whether or not the access is unauthorized access. Thus, abnormality occurring within the network can be identified and detected on the basis of total numerical value information, unauthorized access states can be detected regardless of whether the attacker is outside or inside, and it can be notified as an appropriate alert. COPYRIGHT: (C)2007,JPO&INPIT
申请公布号 JP2007094997(A) 申请公布日期 2007.04.12
申请号 JP20050286930 申请日期 2005.09.30
申请人 FUJITSU LTD 发明人 TAKAHASHI MASAKAZU;ARAKANE YOSUKE
分类号 G06F21/20;G06F13/00;H04L12/66 主分类号 G06F21/20
代理机构 代理人
主权项
地址