首页> 外国专利> Method and system for network access control based on traffic monitoring and vulnerability detection using process related information

Method and system for network access control based on traffic monitoring and vulnerability detection using process related information

机译:基于流量监控和漏洞检测的网络访问控制方法和系统使用过程相关信息

摘要

Disclosed are various embodiments of method and system for network access control. The method may involve traffic monitoring and vulnerability detection using process information. The system may analyze the vulnerability as a process malfunctioning where preventive action focuses on process blocking as opposed to host blocking, which can lead to improved performance and productivity of a network. Techniques may use process related information, connection information, and network packet information for network control. The information may be matched against a plurality of signatures to identify and detect a known vulnerability in network activities. On the basis of a match, a verification report may be established. Techniques may further check whether a verification report is applicable to a process associated with a network packet and allow or block the process running on the host based in the report.
机译:公开了网络访问控制方法和系统的各种实施例。该方法可以涉及使用进程信息涉及业务监控和漏洞检测。该系统可以分析漏洞作为过程发生故障的过程,其中预防动作侧重于进程阻塞,而不是主机阻塞,这可能导致网络的性能和生产率提高。技术可以使用用于网络控制的过程相关信息,连接信息和网络分组信息。该信息可以与多个签名匹配以识别和检测网络活动中的已知漏洞。在匹配的基础上,可以建立验证报告。技术可以进一步检查验证报告是否适用于与网络分组相关联的过程,并允许或阻止基于报告的主机上运行的进程。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号