首页> 外国专利> Security Rule Generation Based on Cognitive and Industry Analysis

Security Rule Generation Based on Cognitive and Industry Analysis

机译:基于认知和行业分析的安全规则生成

摘要

Security rules management mechanisms are provided. A cognitive computing system of the security rules management system ingests natural language content, from one or more corpora, describing features of security attacks, and ingests security event log data from a monitored computing environment. The cognitive computing system processes the natural language content from the one or more corpora and the security event log data to identify attack characteristics applicable to the security event log data. A security rule query engine evaluates existing security rules present in a security rules database to determine if any existing security rule addresses the attack characteristics. In response to the evaluation indicating that no existing security rule addresses the attack characteristics, a security rule generator automatically generates a new security rule based on the attack characteristics, which is then deployed to the monitored computing environment.
机译:提供了安全规则管理机制。安全规则管理系统的认知计算系统从一个或多个语料库中获取自然语言内容,描述安全攻击的特征,并从受监视的计算环境中获取安全事件日志数据。认知计算系统处理来自一个或多个语料库的自然语言内容以及安全事件日志数据,以识别适用于安全事件日志数据的攻击特征。安全规则查询引擎评估安全规则数据库中存在的现有安全规则,以确定是否有任何现有安全规则解决了攻击特征。响应于评估表明没有现有安全规则解决攻击特征,安全规则生成器基于攻击特征自动生成新的安全规则,然后将其部署到受监视的计算环境。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号