首页> 外国专利> Verfahren zur Ermittlung eines Kriteriums zur Unterscheidung von Angriffspaketen und legitimen Paketen

Verfahren zur Ermittlung eines Kriteriums zur Unterscheidung von Angriffspaketen und legitimen Paketen

机译:确定区分攻击包和合法包的标准的方法

摘要

The method involves characterizing packets of a sample by respective vectors whose components correspond to variables calculated from fields of the packets, where the fields are chosen from fields of a packet header. An axis representing a dispersion of the packets of the sample is determined from the vectors characterizing the packets by applying a principal component analysis method. A region of an axis representing attack packets is identified, where the region represents discrimination criteria of the attack packets and legitimate packets. Independent claims are also included for the following: (1) a method for discriminating attack packets and legitimate packets belonging to a stream of packets (2) a device for establishing a discrimination criteria of attack packets and legitimate packets belonging to a stream of packets (3) a device for discriminating attack packets and legitimate packets belonging to a stream of packets (4) a computer program comprising code portions for executing a discrimination criteria establishing method (5) a data storage unit comprising software program code instructions for executing a discrimination criteria establishing method (6) a computer program comprising code portions for executing an attack packet and legitimate packet discriminating method (7) a data storage unit comprising software program code instructions for executing an attack packet and legitimate packet discriminating method.
机译:该方法涉及通过各个向量来表征样本的分组,各个向量的分量对应于从分组的字段计算出的变量,其中,这些字段是从分组报头的字段中选择的。通过应用主成分分析方法,根据表征包的矢量来确定表示样品的包的分散的轴。确定代表攻击包的轴的区域,其中该区域代表攻击包和合法包的判别标准。还包括以下方面的独立权利要求:(1)一种用于区分属于数据包流的攻击数据包和合法数据包的方法(2)一种用于建立属于数据包流的攻击数据包和合法数据包的判别标准的设备( 3)用于区分属于分组流的攻击分组和合法分组的设备(4)包括用于执行区分标准的代码部分的计算机程序建立方法(5)包括用于执行区分标准的软件程序代码指令的数据存储单元建立方法(6)包括用于执行攻击包的代码部分的计算机程序和合法包判别方法(7)包括用于执行攻击包的软件程序代码指令的数据存储单元和合法包判别方法。

著录项

  • 公开/公告号EP2075977A1

    专利类型

  • 公开/公告日2009-07-01

    原文格式PDF

  • 申请/专利权人 FRANCE TELECOM;

    申请/专利号EP20080172873

  • 发明设计人 ANSEL PIERRE;BESSON EMMANUEL;

    申请日2008-12-23

  • 分类号H04L29/06;

  • 国家 EP

  • 入库时间 2022-08-21 19:15:19

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号