Distributed self-optimized intrusion detection alarm associated system
An intrusion detection system and intrusion detection technology, applied in the field of network security, can solve problems such as low efficiency, poor reliability, and inability to automatically optimize, and achieve the effect of multi-response time, lowering the threshold of use, and improving the accuracy of evaluation
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0047] The present invention will be further described in detail below in conjunction with the accompanying drawings.
[0048] The present invention introduces three feedback loops to realize the automatic optimization of the network, eliminate potential misconfigurations, and automatically improve the association knowledge and association rules; the hierarchical alarm association framework is used to flexibly support the distributed application environment, and multiple technologies are integrated to ensure that In a distributed environment, the system can efficiently implement alarm correlation analysis. Divided from functions and working principles, the system of the present invention includes an alarm library 5, a monitored system information library 6, an intrusion detection system characteristic library 7, an associated knowledge library 8, a local alarm associated analysis module 9, a system response component 10, and alarm acceptance weight information Library 11, intr...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap