摘要 |
PROBLEM TO BE SOLVED: To realize an intrusion monitoring system and an intrusion monitoring method capable of surely performing an intrusion analysis with a small amount of data. SOLUTION: This present invention is obtained by improving an intrusion monitoring system for monitoring illegal intrusion to a network from the Internet. This system has a rotary storing part for storing a communication packet in a rotary, a data storing part for storing the communication packet, a logger for storing a network communication packet in the rotary storing part, a monitoring means for monitoring the network communication packet and detecting intrusion according to an intrusion pattern, and a transferring means for transferring the communication packet of the rotary storing part to the data storing part on the basis of detection of the monitoring means.
|