首页> 外国专利> Vulnerability analysis and segmentation of bring-your-own IoT devices

Vulnerability analysis and segmentation of bring-your-own IoT devices

机译:自带物联网设备的漏洞分析和细分

摘要

In one embodiment, a security device maintains a plurality of security enclaves for a computer network, each associated with a given level of security policies. After detecting a given device joining the computer network, the security device places the given device in a strictest security enclave of the plurality of security enclaves in response to joining the computer network. The security device then subjects the given device to joint adversarial training, where a control agent representing behavior of the given device is trained against an inciting agent, and where the inciting agent attempts to force the control agent to misbehave by applying destabilizing policies. Accordingly, the security device may determine control agent behavior during the joint adversarial training, and promotes the given device to a less strict security enclave of the plurality of enclaves in response to the control agent being robust against the attempts by the inciting agent.
机译:在一个实施例中,安全设备维护用于计算机网络的多个安全区域,每个安全区域与给定级别的安全策略相关联。在检测到给定设备加入计算机网络之后,安全设备响应于加入计算机网络将给定设备放置在多个安全区域中最严格的安全区域中。然后,安全设备对给定设备进行联合对抗训练,在该对抗性训练中,针对给定设备的行为的控制代理针对煽动者进行了训练,并且在该煽动代理试图通过应用不稳定策略来迫使控制代理行为异常。因此,安全装置可以在联合对抗训练期间确定控制代理人的行为,并且响应于控制代理人对煽动者的企图是鲁棒的,将给定的设备提升到多个安全地带中较不严格的安全地带。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号