首页> 外国专利> Intrusion detection system and method having dynamically loaded signatures

Intrusion detection system and method having dynamically loaded signatures

机译:具有动态加载签名的入侵检测系统和方法

摘要

An intrusion detection system and method for detecting unauthorized or malicious use of network resources includes an intrusion detection analysis engine that instanciates one or more analysis objects to detect signatures associated with attacks on network vulnerabilities. As new network vulnerabilities are identified, new analysis objects can be dynamically interfaced on a runtime basis with the intrusion detection analysis engine to detect signatures associated with the new network vulnerabilities. A signature application programming interface supports communication between the intrusion detection analysis engine and the analysis objects. When the instance of an analysis object indicates that an associated signature exists in network data, the intrusion detection analysis engine can provide an alarm.
机译:一种用于检测未经授权或恶意使用网络资源的入侵检测系统和方法,包括入侵检测分析引擎,该引擎实例化一个或多个分析对象以检测与网络漏洞攻击相关的签名。识别出新的网络漏洞后,可以在运行时基础上将新的分析对象与入侵检测分析引擎动态连接,以检测与新的网络漏洞相关的签名。签名应用程序编程接口支持入侵检测分析引擎与分析对象之间的通信。当分析对象的实例指示网络数据中存在关联的签名时,入侵检测分析引擎可以提供警报。

著录项

  • 公开/公告号US6785821B1

    专利类型

  • 公开/公告日2004-08-31

    原文格式PDF

  • 申请/专利权人 CISCO TECHNOLOGY INC.;

    申请/专利号US20020288660

  • 发明设计人 DANIEL M. TEAL;

    申请日2002-11-04

  • 分类号H04L90/00;

  • 国家 US

  • 入库时间 2022-08-21 23:18:05

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号