发明名称 COMPUTER NETWORK INTRUSION DETECTION SYSTEM AND METHOD
摘要 A method for identifying a device attempting an intrusion into a TCP/IP protocol based network is disclosed. The present invention allows creating links between two independent information levels, the TCP/IP stack information on one side and the Windows Security Event Log information on the other side. The method allows establishing the relationship between the computer name of the attacker device as stored in the Security Event Log and the TCP/IP information related to this computer name.
申请公布号 CA2610350(A1) 申请公布日期 2006.12.14
申请号 CA20062610350 申请日期 2006.05.31
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 DEQUEVY, JEAN-JACQUES
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址