发明授权
- 专利标题: Network intrusion detection with distributed correlation
- 专利标题(中): 网络入侵检测与分布式相关
-
申请号: US13941067申请日: 2013-07-12
-
公开(公告)号: US09560068B2公开(公告)日: 2017-01-31
- 发明人: Igal Figlin , Arthur Zavalkovsky , Lior Arzi , Efim Hudis , Jennifer R. Lemond , Robert Eric Fitzgerald , Khaja E. Ahmed , Jeffrey S. Williams , Edward W. Hardy
- 申请人: MICROSOFT TECHNOLOGY LICENSING LLC.
- 申请人地址: US WA Redmond
- 专利权人: MICROSOFT TECHNOLOGY LICENSING LLC.
- 当前专利权人: MICROSOFT TECHNOLOGY LICENSING LLC.
- 当前专利权人地址: US WA Redmond
- 代理商 Tim Churna; Dan Choi; Micky Minhas
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
A network security system employing multiple levels of processing to identify security threats. Multiple host machines may each contain an agent that detects possibilities of security threats based on raw data sensed locally at that host. The hosts may share information obtained from local analysis and each host may use information generated at one or more other hosts, in combination with information generated locally, to identify a security concern, indicating with greater certainty that a security threat exists. Based on security concerns generated by multiple hosts, a security threat may be to indicated and protective action may be taken.
公开/授权文献
- US20130305371A1 NETWORK INTRUSION DETECTION WITH DISTRIBUTED CORRELATION 公开/授权日:2013-11-14
信息查询