首页> 外国专利> INFORMATION MODEL FOR SECURITY POLICY IN POLICY-BASED NETWORK SECURITY SYSTEM

INFORMATION MODEL FOR SECURITY POLICY IN POLICY-BASED NETWORK SECURITY SYSTEM

机译:基于策略的网络安全系统中的安全策略信息模型

摘要

PURPOSE: An information model for a security policy of a policy-based network security system is provided to accept a detection policy, a cut-off policy, a sensing policy, an IP security policy and an alarm control policy by defining a policy information model. CONSTITUTION: A policy client system(120) analyzes packets accessing an internal network, detects an attack and transmits an alarm message to a policy server(110). The policy server(110) generates a systematical policy to cope with a possible attack through collective analysis by using traffic information, log information and alarm information received from multiple policy client systems(120). A policy storing unit(140) stores policies generated by the policy server(110). A policy determining module(112) transfers the policies of the policy storing unit(140) to the policy client system(120), and if a problem arises during performing a policy, the policy determining module(112) transfers it to a viewer(160). An alarm management module(114) stores alarm data transferred from the policy client system(120) in an alarm database(150) and transfers the alarm data and a result obtained by analyzing the alarm data to the viewer(160).
机译:目的:提供用于基于策略的网络安全系统的安全策略的信息模型,以通过定义策略信息模型来接受检测策略,切断策略,感知策略,IP安全策略和警报控制策略。构成:策略客户端系统(120)分析访问内部网络的分组,检测攻击并将警报消息发送到策略服务器(110)。策略服务器(110)通过使用从多个策略客户端系统(120)接收的交通信息,日志信息和警报信息,通过集体分析来生成系统策略来应对可能的攻击。策略存储单元(140)存储由策略服务器(110)生成的策略。策略确定模块(112)将策略存储单元(140)的策略传输到策略客户端系统(120),并且如果在执行策略期间出现问题,则策略确定模块(112)将其传输给查看者( 160)。警报管理模块(114)将从策略客户端系统(120)传送来的警报数据存储在警报数据库(150)中,并将该警报数据和通过分析该警报数据而获得的结果传送给查看器(160)。

著录项

  • 公开/公告号KR100490728B1

    专利类型

  • 公开/公告日2005-05-24

    原文格式PDF

  • 申请/专利权人

    申请/专利号KR20020082207

  • 发明设计人 김건량;장종수;김기영;

    申请日2002-12-21

  • 分类号H04L12/22;

  • 国家 KR

  • 入库时间 2022-08-21 22:03:48

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号