发明授权
US09560068B2 Network intrusion detection with distributed correlation 有权
网络入侵检测与分布式相关

Network intrusion detection with distributed correlation
摘要:
A network security system employing multiple levels of processing to identify security threats. Multiple host machines may each contain an agent that detects possibilities of security threats based on raw data sensed locally at that host. The hosts may share information obtained from local analysis and each host may use information generated at one or more other hosts, in combination with information generated locally, to identify a security concern, indicating with greater certainty that a security threat exists. Based on security concerns generated by multiple hosts, a security threat may be to indicated and protective action may be taken.
公开/授权文献
信息查询
0/0