首页> 外国专利> A Method and system for network access control based on traffic monitoring and vulnerability detection using process related information

A Method and system for network access control based on traffic monitoring and vulnerability detection using process related information

机译:一种基于流量监控和漏洞检测并利用过程相关信息进行网络访问控制的方法和系统

摘要

Disclosed are various embodiments of method and system for network access control. The method may involve traffic monitoring and vulnerability detection using process information. The system may analyze the vulnerability as a process malfunctioning where preventive action focuses on process blocking as opposed to host blocking, which can lead to improved performance and productivity of a network. Techniques may use process related information, connection information, and network packet information for network control. The information may be matched against a plurality of signatures to identify and detect a known vulnerability in network activities. On the basis of a match, a verification report may be established. Techniques may further check whether a verification report is applicable to a process associated with a network packet and allow or block the process running on the host based in the report.
机译:公开了用于网络访问控制的方法和系统的各种实施例。该方法可以涉及使用过程信息进行流量监视和漏洞检测。系统可以将漏洞分析为进程故障,其中,预防措施的重点是进程阻止而不是主机阻止,这可以导致网络的性能和生产率提高。技术可以将与过程有关的信息,连接信息和网络分组信息用于网络控制。该信息可以与多个签名匹配,以识别和检测网络活动中的已知漏洞。基于匹配,可以建立验证报告。技术可以进一步检查验证报告是否适用于与网络数据包关联的进程,并基于该报告允许或阻止在主机上运行的进程。

著录项

  • 公开/公告号GB201708089D0

    专利类型

  • 公开/公告日2017-07-05

    原文格式PDF

  • 申请/专利权人 SOPHOS LIMITED;

    申请/专利号GB20170008089

  • 发明设计人

    申请日2015-12-18

  • 分类号H04L29/06;G06F21/54;G06F21/56;

  • 国家 GB

  • 入库时间 2022-08-21 13:20:52

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号