发明授权
- 专利标题: Intrusion detection
- 专利标题(中): 入侵检测
-
申请号: US10605689申请日: 2003-10-17
-
公开(公告)号: US07565690B2公开(公告)日: 2009-07-21
- 发明人: James M. Doherty , Thomas Lee Adams , Stephen Mark Mueller
- 申请人: James M. Doherty , Thomas Lee Adams , Stephen Mark Mueller
- 申请人地址: US NV Reno
- 专利权人: AT&T Intellectual Property I, L.P.
- 当前专利权人: AT&T Intellectual Property I, L.P.
- 当前专利权人地址: US NV Reno
- 代理机构: Toler Law Group
- 主分类号: G06F7/04
- IPC分类号: G06F7/04 ; H04L9/00
摘要:
A system daemon starts through normal system startup procedures and reads its configuration file to determine which data entities (e.g., directories and files) are to be monitored. The monitoring includes a valid MD5 signature, correct permissions, ownership of the file, and an existence of the file. If any modification are made to the data entities, then the system daemon generates an alarm (intended for the administrator of the host) that an intrusion has taken place. Once an intrusion is detected, then the isolating steps or commands are issued in a real-time continuous manner to protect the host system from attack or intrusion.
公开/授权文献
- US20050033984A1 Intrusion Detection 公开/授权日:2005-02-10
信息查询