首页> 外国专利> METHODS AND SYSTEMS FOR ANOMALY DETECTION USING INTERNET PROTOCOL (IP) TRAFFIC CONVERSATION DATA

METHODS AND SYSTEMS FOR ANOMALY DETECTION USING INTERNET PROTOCOL (IP) TRAFFIC CONVERSATION DATA

机译:利用互联网协议(ip)流量对话数据进行异常检测的方法和系统

摘要

A computer-based method for detecting anomalies in the traffic passing through an internet protocol (IP) network is described. The method includes extracting, from a database, a single instance of each unique packet header associated with a plurality of IP-to-IP packets, the IP-to-IP packets having been transmitted across the IP network over a predefined period of time, analyzing the packet headers to identify anomalous conversations based on at least one of a conversation uniqueness, a time of week uniqueness, and a data quantity uniqueness, and providing alerts corresponding to detected anomalous conversations.
机译:描述了一种基于计算机的方法,用于检测通过互联网协议(IP)网络的流量中的异常情况。该方法包括从数据库中提取与多个IP到IP数据包相关联的每个唯一数据包头的单个实例,该IP到IP数据包已经在预定的时间段内通过IP网络传输,基于会话唯一性,一周中的时间唯一性和数据量唯一性中的至少一项来分析分组报头以识别异常会话,并提供与检测到的异常会话相对应的警报。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号