首页> 外国专利> Enterprise security assessment sharing

Enterprise security assessment sharing

机译:企业安全评估共享

摘要

An enterprise-wide sharing arrangement uses a semantic abstraction, called a security assessment, to share security-related information between different security products, called endpoints. A security assessment is defined as a tentative assignment by an endpoint of broader contextual meaning to information that is collected about an object of interest. Its tentative nature is reflected in two of its components: a fidelity field used to express the level of confidence in the assessment, and a time-to-live field for an estimated time period for which the assessment is valid. Endpoints may publish security assessments onto a security assessment channel, as well as subscribe to a subset of security assessments published by other endpoints. A specialized endpoint is coupled to the channel that performs as a centralized audit point by subscribing to all security assessments, logging the security assessments, and also logging the local actions taken by endpoints in response to security threats.
机译:企业范围内的共享安排使用语义抽象(称为安全评估)在不同的安全产品(称为端点)之间共享与安全相关的信息。安全评估被定义为由具有广泛上下文意义的端点对所收集的有关感兴趣对象的信息的尝试性分配。它的暂定性质体现在其两个组成部分中:一个用于表示评估可信度的保真度字段,以及一个对评估有效的估计时间段的生存时间字段。端点可以将安全评估发布到安全评估通道上,也可以订阅其他端点发布的安全评估的子集。通过订阅所有安全评估,记录安全评估以及还记录端点响应安全威胁而采取的本地操作,将专用端点耦合到充当集中审核点的通道。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号