- 专利标题: Event detection/anomaly correlation heuristics
-
申请号: US10701376申请日: 2003-11-03
-
公开(公告)号: US20060173992A1公开(公告)日: 2006-08-03
- 发明人: Daniel Weber , Prem Gopalan , Massimiliano Poletto
- 申请人: Daniel Weber , Prem Gopalan , Massimiliano Poletto
- 主分类号: G06F15/173
- IPC分类号: G06F15/173
摘要:
A system for detecting network intrusions and other conditions in a network is described. The system includes a plurality of collector devices that are disposed to collect data and statistical information on packets that are sent between nodes on a network. An aggregator device is disposed to receive data and statistical information from the plurality of collector devices. The aggregator device produces a connection table that maps each node on the network to a record that stores information about traffic to or from the node. The aggregator runs processes that determine network events from aggregating of anomalies into network events.
公开/授权文献
- US07363656B2 Event detection/anomaly correlation heuristics 公开/授权日:2008-04-22
信息查询