首页> 外国专利> SYSTEM AND OPERATING METHOD OF DETECTING HACKING HAPPENING FOR COMPLEMENTARY SECURITY MANAGEMENT SYSTEM

SYSTEM AND OPERATING METHOD OF DETECTING HACKING HAPPENING FOR COMPLEMENTARY SECURITY MANAGEMENT SYSTEM

机译:互补安全管理系统中检测黑客事件的系统和操作方法

摘要

An integrated security management system for detecting hacking and an operating method are provided to monitor a hacking infringement of a server in real time through correlation analysis of plural solutions and automatically provide an optimum countermeasure suitable for information properties environment, thereby quickly dealing with and alarming a hacking infringement accident. An integrated hacking security management system of a data server comprises a solution unit(10), a log collecting unit(20), a security management unit(30), an infringement accident dealing unit(40), and an integrated circumstance unit(50). The security management unit analyzes risk information and infringement information from security events, threat information and harmful information collected by the log collecting unit. The infringement accident dealing unit presents an optimum countermeasure by analyzing a risk and infringement through frequency analysis, cross analysis and correlation analysis from the risk information and the infringement information provided by the security management unit. The infringement accident dealing unit manages external infringement accident receipt, history and present condition information. The security management unit comprises an event management unit, a traffic management unit, an operation management unit and an information collecting unit. The event management unit performs real time management of infringement events of information properties through performance monitoring and event monitoring and configuration. The event management unit searches log information, and analyzes transition and information by correlation.
机译:提供了一种用于检测黑客攻击的集成安全管理系统和一种操作方法,以通过对多个解决方案进行相关分析来实时监视服务器的黑客入侵,并自动提供适合信息属性环境的最佳对策,从而快速处理和报警。骇客侵权事故。数据服务器的综合黑客安全管理系统,包括解决方案单元(10),日志收集单元(20),安全管理单元(30),侵权事故处理单元(40)和综合情况单元(50)。 )。安全管理单元从日志收集单元收集的安全事件,威胁信息和有害信息中分析风险信息和侵权信息。侵权事故处理单元通过从安全管理单元提供的风险信息和侵权信息中通过频率分析,交叉分析和相关性分析对风险和侵权进行分析,提出最佳对策。侵权事故处理单元管理外部侵权事故的接收,历史和当前状态信息。安全管理单元包括事件管理单元,交通管理单元,操作管理单元和信息收集单元。事件管理单元通过性能监视以及事件监视和配置对信息属性的侵权事件进行实时管理。事件管理单元搜索日志信息,并通过相关性分析过渡和信息。

著录项

  • 公开/公告号KR100838799B1

    专利类型

  • 公开/公告日2008-06-17

    原文格式PDF

  • 申请/专利权人 SK TELECOM CO. LTD.;

    申请/专利号KR20070023424

  • 发明设计人 LEE SANG HOON;

    申请日2007-03-09

  • 分类号H04L12/22;H04L9/32;

  • 国家 KR

  • 入库时间 2022-08-21 19:51:56

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号