首页> 外国专利> APPLICATION-AWARE INTRUSION DETECTION SYSTEM

APPLICATION-AWARE INTRUSION DETECTION SYSTEM

机译:应用感知入侵检测系统

摘要

In one embodiment, activity of a plurality of applications in a computer network is monitored, and a plurality of individual business transactions occurring within the plurality of applications may be identified. Additionally network traffic details associated with each particular business transaction of the plurality of individual business transactions may be determined. In response to detecting a network-based threat on a particular network flow within the computer network, the techniques herein may correlate the particular network flow to a corresponding business transaction of the plurality of individual business transactions based on the associated network traffic details of the corresponding business transaction. Accordingly, threat mitigation may be initiated specific to the corresponding business transaction in response to the detected network-based threat being correlated to the corresponding business transaction.
机译:在一个实施例中,监视计算机网络中多个应用程序的活动,并且可以识别在多个应用程序内发生的多个单独的商业交易。另外,可以确定与多个单独的商业交易中的每个特定商业交易相关的网络流量细节。响应于在计算机网络内的特定网络流上检测到基于网络的威胁,本文中的技术可以基于对应的相关网络流量详细信息,将该特定网络流与多个单个业务交易中的相应业务交易相关联。商业交易。因此,响应于检测到的基于网络的威胁与对应的商业交易相关,可以针对特定的商业交易发起威胁缓解。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号