Invention Grant
US09398040B2 Intrusion detection system false positive detection apparatus and method 有权
入侵检测系统假阳性检测装置及方法

Intrusion detection system false positive detection apparatus and method
Abstract:
Disclosed herein is an Intrusion Detection System (IDS) false positive detection apparatus and method. An IDS false positive detection apparatus includes a payload extraction unit for extracting payloads by dividing each packet corresponding to an IDS detection rule into a header and a payload. A false positive payload information generation unit generates false positive payload information required to identify a false positive payload by extracting a payload of a false positive packet based on results of packet analysis received from a manager. A false positive payload determination unit transmits results of a determination of whether each payload extracted by the payload extraction unit corresponds to a false positive payload, based on the false positive payload information, to the manager.
Information query
Patent Agency Ranking
0/0