- 专利标题: Intrusion prevention device, intrusion prevention method, and program
-
申请号: US16636390申请日: 2018-07-20
-
公开(公告)号: US11468165B2公开(公告)日: 2022-10-11
- 发明人: Keiichi Okabe , Hiroki Itoh
- 申请人: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
- 申请人地址: JP Chiyoda-ku
- 专利权人: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
- 当前专利权人: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
- 当前专利权人地址: JP Chiyoda-ku
- 代理机构: Oblon, McClelland, Maier & Neustadt, L.L.P.
- 优先权: JPJP2017-158089 20170818
- 国际申请: PCT/JP2018/027212 WO 20180720
- 国际公布: WO2019/035313 WO 20190221
- 主分类号: G06F21/55
- IPC分类号: G06F21/55 ; H04L9/40
摘要:
The present invention reduces the time required for inspecting packets and detecting unauthorized commands. An intrusion prevention device (3) is connected to a communication network (9-1) in which a packet including a command for a device to be controlled is transmitted according to a predetermined rule. An analysis table storage part (34) stores an analysis table comprised of a predetermined number of slots for storing a predetermined number of commands together with time information. An input part (31) extracts the command from the packet detected from the communication network (9-1). A parse part (32) inserts the command into the analysis table. An analysis part (33) analyzes whether or not the plurality of commands stored in the respective slots of the analysis table follow the predetermined rule. A notification part (35) outputs an alarm when an analysis result indicates an abnormality. An output part (36) determines whether to pass or discard the packet according to the analysis result.
公开/授权文献
信息查询