PARTITIONED INTRUSION DETECTION
    2.
    发明申请

    公开(公告)号:US20210185006A1

    公开(公告)日:2021-06-17

    申请号:US16711101

    申请日:2019-12-11

    Abstract: This disclosure describes methods to distribute intrusion detection in a network across multiple devices in the network, such as across routing/switching or other infrastructure devices. For example, as a packet is routed through a network infrastructure, an overlay mechanism may be utilized to indicate which of a total set of intrusion detection rules have been applied to the packet. Each infrastructure device may evaluate which rules have already been applied to the packet, using a result of the evaluation to determine where to route the packet in the network infrastructure for application of additional intrusion detection rules. Additionally, each infrastructure device may record a result of its application of the portion of intrusion detection rules directly into the packet.

Patent Agency Ranking