发明名称 Specification-based anomaly detection
摘要 A method for network intrusion detection on a network comprising a plurality of state machines for passing a plurality of network packets comprises determining frequency distributions for each transition within each state machine, determining the distributions of values of each state machine on each transition, and comparing the distributions to observed statistics in the network, and upon determining that the observed statistics are outside defined limits, detecting an anomaly.
申请公布号 US2004098617(A1) 申请公布日期 2004.05.20
申请号 US20020298826 申请日期 2002.11.18
申请人 RESEARCH FOUNDATION OF THE STATE UNIVERSITY OF NEW YORK 发明人 SEKAR RAMASUBRAMANIAN
分类号 H04L12/26;H04L29/06;(IPC1-7):G06F11/30;G06F15/173 主分类号 H04L12/26
代理机构 代理人
主权项
地址