发明名称 NETWORK INTRUSION DETECTION SYSTEM
摘要 PROBLEM TO BE SOLVED: To perform intrusion suspicion level determination on the basis of filter policy and configuration information in a plurality of sites, and to easily perform central analysis of log information by a log analysis means. SOLUTION: Each the site that is a monitoring target has: a log filter policy storage means storing the log filter policy for filtering the log information stored in an intrusion detection means; a configuration information storage means storing the configuration information inside the site; an illegal intrusion suspicion level determination means comparing the log filter policy stored in the log filter policy storage means, the configuration information stored in a configuration information setting means, and the log information stored by the intrusion detection means to determine an illegal intrusion suspicion level; and a log information transfer means arranging the log information having the illegal intrusion suspicion level determined by the illegal intrusion suspicion level determination means of a prescribed level or above in each the illegal intrusion suspicion level, adding site identification information, and transferring it to the log analysis means. COPYRIGHT: (C)2005,JPO&NCIPI
申请公布号 JP2005189996(A) 申请公布日期 2005.07.14
申请号 JP20030428010 申请日期 2003.12.24
申请人 FUJI ELECTRIC HOLDINGS CO LTD 发明人 NISHIDA KOJI
分类号 G06F21/20;G06F13/00;G06F15/00;(IPC1-7):G06F15/00 主分类号 G06F21/20
代理机构 代理人
主权项
地址