首页> 外国专利> System for real-time network-based vulnerability assessment of a host/device via real-time tracking, vulnerability assessment of services and a method thereof

System for real-time network-based vulnerability assessment of a host/device via real-time tracking, vulnerability assessment of services and a method thereof

机译:通过实时跟踪,服务的漏洞评估对主机/设备进行基于网络的实时漏洞评估的系统及其方法

摘要

A system for real-time vulnerability assessment of a host/device, said system comprising an agent running on the host/device. The agent includes a a first data structure for storing the status of interfaces and ports on the interfaces of the host/device. An n executable agent module is coupled to the first data structure to track the status of interfaces and ports on the interfaces of the host/device and to store the information, as entries in said first data structure. The executable agent module compares the entries to determine a change in the status of interfaces and/or of ports on the interfaces of the host/device. A remote destination server is provided that includes a second data structure for storing the status of interfaces and the ports on the interfaces of the host/device. An executable server module is coupled to the second data structure to receive the information communicated by the agent executable module of the agent on the host/device. The executable server module stores the received information as entries in the second data structure wherein the entries indicate the state of each of the ports on each of the active interfaces of the host/device as received. The executable server module compares the entries in said data structures to determine the change in the status of interfaces and ports on the interfaces of the host/device. The executable server module runs vulnerability assessment tests on the host/device in the event of a change in the status of interface/ports.
机译:一种用于主机/设备的实时漏洞评估的系统,所述系统包括在主机/设备上运行的代理。该代理包括用于存储主机/设备的接口上的接口和端口的状态的第一数据结构。 n可执行代理模块耦合到第一数据结构,以跟踪主机/设备的接口上的接口和端口的状态,并将信息存储为所述第一数据结构中的条目。可执行代理模块比较条目以确定主机/设备的接口和/或端口状态的变化。提供了包括第二数据结构的远程目的地服务器,该第二数据结构用于存储接口的状态以及主机/设备的接口上的端口。可执行服务器模块耦合到第二数据结构,以接收由主机/设备上的代理的代理可执行模块传送的信息。可执行服务器模块将接收到的信息作为条目存储在第二数据结构中,其中条目指示接收到的主机/设备的每个活动接口上的每个端口的状态。可执行服务器模块比较所述数据结构中的条目,以确定主机/设备的接口上的接口和端口的状态的改变。如果接口/端口的状态发生更改,可执行服务器模块将在主机/设备上运行漏洞评估测试。

著录项

  • 公开/公告号US2005005169A1

    专利类型

  • 公开/公告日2005-01-06

    原文格式PDF

  • 申请/专利权人 SAMIR GURUNATH KELEKAR;

    申请/专利号US20040820790

  • 发明设计人 SAMIR GURUNATH KELEKAR;

    申请日2004-04-09

  • 分类号H04L9/00;

  • 国家 US

  • 入库时间 2022-08-21 22:19:41

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号