Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

An event processing system and method of network central management platform

A technology of event processing and centralized management, which is applied in the field of establishing a centralized management platform software event filtering rule management system in network security, and can solve problems such as consuming a lot of time and requiring high flexibility in rule processing

Active Publication Date: 2007-10-17
奇安信网神信息技术(北京)股份有限公司 +1
View PDF0 Cites 11 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Interpreting the rules each time often consumes a lot of time
[0007] Secondly, the devices in the network change and update quickly, which requires high flexibility in rule processing. In the past, the judgment of rules can only meet the judgment of certain types of device events, that is, the interpretation range of certain rule conditions is fixed. , when it is necessary to support new event analysis, it is necessary to make major changes to the rule engine to meet the requirements

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • An event processing system and method of network central management platform
  • An event processing system and method of network central management platform
  • An event processing system and method of network central management platform

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0056] The technical scheme of the present invention will be described in further detail below in conjunction with accompanying drawing and embodiment:

[0057] As shown in Figure 1, in a typical enterprise environment, in the course of using the network, the security management platform server 18 is installed on a windows mainframe 15, and has been started as a process, the network of the present invention The event processing system on the centralized management platform is ready as a service on the server of the security management platform. It starts a network listening port 19 and is ready to receive various device events in the network at any time. The network host 15 is connected to a switch, and the switch is also connected to other hosts, firewalls 17, and IDS16. This is a typical office network environment. At the same time, settings have been made on the switch to make its SNMP trap sending destination point to the host computer 15 where the security management pla...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention is an event processing system and method for network integrated management platform, this system adopts the flexible rule engine structure, not the mode for interpreting the execution rule, but process the rule in the pre-compiling mode, just at the time of creating the rule, compile it into the memory structure suitable for direct logic decision and put it in the system rule buffer memory, during the processing of events, directly calculate the value of logic expression, so as to save the time expensed for analyzing the text rule contents each time.

Description

technical field [0001] The invention relates to an event processing system and method on a network centralized management platform, relates to computer system integration and application technology, and relates to the establishment of a centralized management platform software event filtering rule management system in network security. Background technique [0002] With the increasing scale of the network environment, the number of various devices in the network has also increased dramatically, including various routing and switching devices, storage devices and numerous security devices, such as firewalls, IDS and so on. [0003] Unified management of numerous security devices is an efficient means to achieve the security of the entire network. An important link involved in this is the analysis of various events in the entire network. The main way of analysis is to pass the rule inspection of the security management platform Make judgments on received events to discover pro...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L12/24H04L29/02
Inventor 朱震文华王新华
Owner 奇安信网神信息技术(北京)股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products