首页> 外国专利> Method, computer readable medium, and node for a three-layered intrusion prevention system for detecting network exploits

Method, computer readable medium, and node for a three-layered intrusion prevention system for detecting network exploits

机译:用于检测网络漏洞的三层入侵防御系统的方法,计算机可读介质和节点

摘要

A method of preventing intrusions on a node of a network comprising monitoring, by a first layer of an intrusion prevention system, application data of applications running at on the node, monitoring, by a second layer of the intrusion prevention system, transport layer data of the node, and monitoring, by a third layer of the intrusion prevention system, network layer data of the node is provided. A computer-readable medium having stored thereon a set of instructions to be executed, the set of instructions, when executed by a processor, cause the processor to perform a computer method of monitoring application layer data, by a first layer of an intrusion prevention system comprised of the instructions, of a node of a network, the node comprising the processor, monitoring transport layer data, by a second layer of the intrusion prevention system, of the node of the network; and monitoring network layer data, by a third layer of an intrusion prevention system, of the node of the network is provided. A node of a network, comprising a central processing unit, a memory module for storing data in machine readable format for retrieval and execution by the central processing unit, and an operating system comprising a network stack comprising a protocol driver, a media access control driver, the memory module storing an instance of an intrusion protection system application operable to monitor application layer data and an intrusion prevention system transport service provider layer, and the operating system having an intrusion prevention system network filter service provider bound to the media access control driver and the protocol driver is provided.
机译:一种防止网络节点上的入侵的方法,包括:通过入侵防御系统的第一层监视在该节点上运行的应用程序的应用程序数据,通过入侵防御系统的第二层监视网络的传输层数据。该节点,并由入侵防御系统的第三层监视该节点的网络层数据。一种其上存储有要执行的指令集的计算机可读介质,该指令集在由处理器执行时使处理器通过入侵防御系统的第一层执行监视应用程序层数据的计算机方法。包括网络节点的指令,该节点包括处理器,该处理器通过入侵防御系统的第二层监视网络节点的传输层数据;通过入侵防御系统的第三层,提供对网络节点的网络层数据的监控。网络的节点,包括中央处理单元,用于以机器可读格式存储数据以供中央处理单元检索和执行的存储器模块,以及包括网络堆栈的操作系统,该网络堆栈包括协议驱动器,媒体访问控制驱动器存储器模块存储可操作以监视应用程序层数据和入侵防御系统传输服务提供者层的入侵保护系统应用程序的实例,以及具有绑定到媒体访问控制驱动器和网络的入侵防御系统网络过滤器服务提供者的操作系统提供了协议驱动程序。

著录项

  • 公开/公告号US7197762B2

    专利类型

  • 公开/公告日2007-03-27

    原文格式PDF

  • 申请/专利权人 RICHARD PAUL TARQUINI;

    申请/专利号US20010003747

  • 发明设计人 RICHARD PAUL TARQUINI;

    申请日2001-10-31

  • 分类号H04L29/08;H04L29/02;H04L29/06;

  • 国家 US

  • 入库时间 2022-08-21 21:01:10

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号