首页> 外国专利> Method of managing alerts issued by intrusion detection sensors of an information security system

Method of managing alerts issued by intrusion detection sensors of an information security system

机译:管理信息安全系统的入侵检测传感器发出的警报的方法

摘要

A method of managing alerts issued by intrusion detection sensors (11a, 11b, 11c) of an information security system (1) including an alert management system (13), each alert being defined by an alert identifier and an alert content. Each of the alerts issued by the intrusion detection sensors (11a, 11b, 11c) is associated with a description including a conjunction of valued attributes belonging to attribute domains. The valued attributes belonging to each attribute domain are organized into a taxonomic structure defining generalization relationships between said valued attributes, the plurality of attribute domains thus forming a plurality of taxonomic structures. The description of each of said alerts is completed with sets of values induced by the taxonomic structures on the basis of the valued attributes of said alerts to form complete alerts. The complete alerts are stored in a logic file system (21) to enable them to be consulted.
机译:管理由入侵检测传感器( 11 a, 11 b, 11 <包含警报管理系统( 13 )的信息安全系统( 1 )的/ B> c ),每个警报由警报定义标识符和警报内容。入侵检测传感器( 11 a, 11 b, 11 < / B> c )与描述相关联,该描述包含属于属性域的有价属性的并集。属于每个属性域的有价属性被组织成分类结构,该分类结构定义了所述有价属性之间的概括关系,因此多个属性域形成了多个分类结构。基于所述警报的值属性,利用分类结构导出的一组值来完成对每个所述警报的描述,以形成完整的警报。完整的警报存储在逻辑文件系统( 21 )中,以便对其进行查询。

著录项

  • 公开/公告号US7810157B2

    专利类型

  • 公开/公告日2010-10-05

    原文格式PDF

  • 申请/专利权人 BENJAMIN MORIN;HERVÉ DEBAR;

    申请/专利号US20040583586

  • 发明设计人 HERVÉ DEBAR;BENJAMIN MORIN;

    申请日2004-12-16

  • 分类号G06F11/00;G08B23/00;H04L29/06;G06F11/30;G06F15/177;

  • 国家 US

  • 入库时间 2022-08-21 18:48:32

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号