发明名称 |
Communications monitoring, processing and intrusion detection |
摘要 |
Systems, apparatus and methods to monitor communications conducted via a host computer placed under the management of security measures such as firewalls or routers' filtering capabilities. A communications monitoring system which includes a packet input means for connecting to predetermined points on a network via a network interface and receiving communications packets flowing at the points; and matching means for performing real-time matching between two packet streams composed of received communications packets each time a communications packet is received. If the two packet streams are highly similar, it is highly likely that an attack or intrusion is being made and an alert is issued.
|
申请公布号 |
US2004123155(A1) |
申请公布日期 |
2004.06.24 |
申请号 |
US20030672342 |
申请日期 |
2003.09.26 |
申请人 |
INTERNATIONAL BUSINESS MACHINES CORPORATION |
发明人 |
ETOH HIROAKI;YODA KUNIKAZU |
分类号 |
G06F13/00;H04L12/56;H04L29/06;(IPC1-7):G06F11/30;G06F15/173 |
主分类号 |
G06F13/00 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|