发明申请
- 专利标题: SYSTEM AND PROCESS FOR DETECTING ANOMALOUS NETWORK TRAFFIC
- 专利标题(中): 用于检测异常网络流量的系统和过程
-
申请号: US12513501申请日: 2007-11-02
-
公开(公告)号: US20100138919A1公开(公告)日: 2010-06-03
- 发明人: Tao Peng , Christopher Andrew Leckie , Ramamohanarao Kotagiri
- 申请人: Tao Peng , Christopher Andrew Leckie , Ramamohanarao Kotagiri
- 国际申请: PCT/AU2007/001690 WO 20071102
- 主分类号: G06F21/00
- IPC分类号: G06F21/00 ; G06F15/173
摘要:
A process for detecting anomalous network traffic in a communications network, the process including: generating reference address distribution data representing a statistical distribution of source addresses of packets received over a first time period, the received packets being considered to represent normal network traffic; generating second address distribution data representing a statistical distribution of source addresses of packets received over a second time period; and determining whether the packets received over the second time period represent normal network traffic on the basis of a comparison of the second address distribution data and the reference address distribution data.
信息查询