发明名称 METHOD FOR AUTOMATIC INTRUSION DETECTION AND DEFLECTION IN A NETWORK
摘要 A method and a system for providing security to a network (12) by at least identifying and unauthorized user (20) who is attempting to gain access to a node (16) on the network (12), and preferably by then actively blocking that unauthorized user (20) from further activities. Detection is facilitated by the unauthorized user (20) providing "earmark", or specially crafted false data, which the unauthorized user (20) gathers during the information collection stage performed before an attack. The earmark is designed such that any attempt by the unauthorized user (20) to use such false data results in the immediate identification of the unauthorized user (20) as hostile, and indicates that an intrusion of the network (12) is being attempted. Preferably, further access to the network (12) is then blocked by diverting traffic from the unauthorized user (20) to a secure zone (32), where the activities of the unauthorized user can be contained without damage to the network (12).
申请公布号 WO0139379(A9) 申请公布日期 2002.09.12
申请号 WO2000IL00801 申请日期 2000.11.29
申请人 FORESCOUT TECHNOLOGIES INC.;COMAY, ODED;SHIKMONI, DORON;YESHURUN, YEHEZKEL;AMIR, ODED 发明人 COMAY, ODED;SHIKMONI, DORON;YESHURUN, YEHEZKEL;AMIR, ODED
分类号 G06F21/20;G06F13/00;H04L12/24;H04L12/56;H04L29/06;(IPC1-7):G06F11/20;G06F12/14;G06F15/173;G06F15/16;H04L9/00;H04L9/32 主分类号 G06F21/20
代理机构 代理人
主权项
地址