-
公开(公告)号:US11606334B2
公开(公告)日:2023-03-14
申请号:US17197413
申请日:2021-03-10
Inventor: Takuji Hiramoto , Tatsumi Oba
IPC: H04L29/06 , H04L29/12 , G06F21/45 , H04L9/40 , H04L61/103 , H04L101/622
Abstract: A communication security apparatus includes a communicator that receives a packet from a first device and transmits the received packet to a second device, a memory that retains address authentication information containing pairs of a physical address and a logical address of one or more devices, and a controller. After a learning period of receiving and transmitting packets, the controller determines whether a pair of a physical address and a logical address of the first device and the second device match any one of the pairs of the physical address and the logical address of the one or more devices in the packet, and discards the packet when the pair of the physical address and the logical address of the first device and the second device do not match any one of the pairs of the physical address and the logical address of the one or more devices.
-
公开(公告)号:US10979390B2
公开(公告)日:2021-04-13
申请号:US16047020
申请日:2018-07-27
Inventor: Takuji Hiramoto , Tatsumi Oba
Abstract: A secure hub as a communication security apparatus includes a port that receives a packet from a device and transmits the packet to another device. The secure hub also includes a storage area that retains address authentication information containing pairs of a physical address and a logical address of one or more devices. The secure hub further includes a transfer processing unit that determines whether the pair of the physical address and the logical address of the device, and the pair of the another device, each match any pair of the one or more devices when the address authentication information contains the physical address or the logical address of the device and the another device contained in the packet, and discards the packet when the pair of the device and the pair of the another device do not match any of the pairs of the one or more devices.
-
公开(公告)号:US10911466B2
公开(公告)日:2021-02-02
申请号:US16202926
申请日:2018-11-28
Inventor: Naoki Ochi , Takuji Hiramoto , Tomohiro Oda , Tatsumi Oba
IPC: H04L29/06 , H04L12/741 , H04L12/24 , H04L12/26
Abstract: A network protection device includes a packet capture unit which captures a network packet through an intelligent switch which performs connection in a communication network or across communication networks; a network analyzer which detects a threat in the network packet; a threat remover which removes the threat in the network packet; and a switch operator which changes from a first communication path, which connects a sender node to a receiver node without the threat remover, to a second communication path, which is different from the first communication path and connects the sender node to the receiver node through the threat remover when the threat is detected in the threat detector.
-
公开(公告)号:US10817394B2
公开(公告)日:2020-10-27
申请号:US16136408
申请日:2018-09-20
Inventor: Tatsumi Oba
Abstract: There is provided an anomaly diagnosis method performed by an anomaly diagnosis apparatus that diagnosis to determine whether an observed value composed of values of variables representing a state of a monitoring target obtained by observing the monitoring target is anomalous. The anomaly diagnosis apparatus includes a processor and a memory. The memory stores an anomaly detection model generated by learning using observed values. The processor acquires group information indicating one or more groups each constituted by a combination of at least two mutually-related variables, acquires the observed value, determines whether the observed value is anomalous by employing the anomaly detection model read from the memory, and in a case where the observed value is determined to be anomalous, identifies a group causing an anomaly among the one or more groups in the observed value.
-
-
-