首页> 外国专利> SYSTEMS AND METHODS FOR IDENTIFYING UNKNOWN PROTOCOLS ASSOCIATED WITH INDUSTRIAL CONTROL SYSTEMS

SYSTEMS AND METHODS FOR IDENTIFYING UNKNOWN PROTOCOLS ASSOCIATED WITH INDUSTRIAL CONTROL SYSTEMS

机译:用于识别与工业控制系统相关联的未知协议的系统和方法

摘要

A device may receive a hash table that includes lists of protocol detectors, wherein the hash table is generated based on historical process data identifying potential process variables associated with an industrial control system. The device may receive a packet identifying potential process variables associated with the industrial control system, and may extract, from the packet, packet data identifying a source address, a destination address, a port, and a transport protocol. The device may compare the packet data with data in the hash table to identify a set of lists of protocol detectors, and may process the packet data, with the set of lists of protocol detectors, to determine a matching protocol, no matching protocol, or a potential matching protocol for the packet. The device may perform one or more actions based on determining the matching protocol, no matching protocol, or the potential matching protocol for the packet.
机译:设备可以接收包括协议检测器列表的哈希表,其中基于识别与工业控制系统相关联的潜在处理变量的历史过程数据生成哈希表。该设备可以接收识别与工业控制系统相关联的潜在处理变量的分组,并且可以从识别源地址,目的地地址,端口和传输协议的分组数据中提取。该设备可以将分组数据与哈希表中的数据进行比较,以识别一组协议检测器列表,并且可以利用该组协议检测器列表设置分组数据以确定匹配协议,无匹配协议或数据包的潜在匹配协议。该设备可以基于确定匹配协议,无匹配协议或分组的潜在匹配协议来执行一个或多个动作。

著录项

  • 公开/公告号US2021133601A1

    专利类型

  • 公开/公告日2021-05-06

    原文格式PDF

  • 申请/专利权人 VERIZON PATENT AND LICENSING INC.;

    申请/专利号US201916671928

  • 发明设计人 RICHARD L. WELCH;

    申请日2019-11-01

  • 分类号G06N5/04;G06N20;G06F16/22;

  • 国家 US

  • 入库时间 2022-08-24 18:34:42

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号