发明授权
- 专利标题: Method and apparatus for port scan detection in a network
- 专利标题(中): 网络中端口扫描检测的方法和装置
-
申请号: US11316273申请日: 2005-12-22
-
公开(公告)号: US08516573B1公开(公告)日: 2013-08-20
- 发明人: Philip E. Brown , Jeanette LaRosa , Chaim Spielman
- 申请人: Philip E. Brown , Jeanette LaRosa , Chaim Spielman
- 申请人地址: US GA Atlanta
- 专利权人: AT&T Intellectual Property II, L.P.
- 当前专利权人: AT&T Intellectual Property II, L.P.
- 当前专利权人地址: US GA Atlanta
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
Method and apparatus for port sweep detection in a network is described. In one example, log data is obtained for a period of time. The log data is associated with a plurality of devices in the network. The log data is processed to identify connection requests from a source key for a port at a number of target internet protocol (IP) addresses. An alarm is generated if the number of target IP addresses associated with the connection requests from the source key exceeds a threshold.
信息查询