Unlock instant, AI-driven research and patent intelligence for your innovation.

Event analyzing method and system

An analysis method and event technology, applied in the direction of instruments, etc., can solve the problems such as the lack of real-time analysis of threat events, the lack of timeliness of analysis results, and the occupation of large system resources, so as to achieve real-time analysis, improve timeliness, improve The effect of system performance

Inactive Publication Date: 2010-10-06
山东中创软件商用中间件股份有限公司
View PDF0 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] Through the research on the existing technology, the inventor found that: the user has many security facilities, and the business system is often subject to various threats from inside or outside the system, so various detection and protection facilities will learn and report a large number of threat events in real time, The analysis of all threat events will occupy a large amount of system resources, resulting in a decrease in system performance. At the same time, this one-by-one analysis method will prevent new threat events from being analyzed in real time, resulting in analysis results that are not time-sensitive.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Event analyzing method and system
  • Event analyzing method and system
  • Event analyzing method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0047] see figure 1 As shown, it is a schematic flow chart of an event analysis method provided by an embodiment of the present invention, and the method includes the following steps:

[0048] S101. Determine a trigger event of an analysis rule.

[0049] Analysis rules are similar to regular expressions in form, and are used to record specific events and corresponding analysis results. A rule of analysis can often be built from the co-occurrence of certain events that would imply a conclusion. The specific set of events is the input to the analysis rule, and the conclusion is the output of the analysis rule. The rule analysis module can use the established analysis rule library to automatically analyze threat events to find truly meaningful conclusion information from massive threat events.

[0050] The analysis rule must have a set of specific events as the input event group. Select an event from the input event group of the analysis rule as the trigger event of the analys...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The embodiment of the invention discloses an event analyzing method and an event analyzing system. The event analyzing method comprises the following steps of: determining a trigger event of an analysis rule; and if the trigger event happens, outputting an analysis conclusion of the analysis rule established in the corresponding analysis rule set of the trigger event. According to the technical scheme, the trigger event is determined for the analysis rule in an input event group of the analysis rule; only when the trigger event happens, a rule analysis module can be called to work and deduces a conclusion by analyzing a related rule of the trigger event. As the technical scheme only needs to analyze the trigger event among threatening events, the calling of the analysis module, the workload of the analysis module and the occupation of system resource are reduced, the system performance is improved, simultaneously the real-time analysis of the threatening events is realized, and the timeliness of the analyzed result is improved.

Description

technical field [0001] The invention relates to the field of business system security, in particular to an event analysis method and system. Background technique [0002] In order to improve the security of business systems, users often install and deploy various detection and protection facilities against various threats from outside and inside the system. When the business system is threatened, the detection and protection facilities will report the corresponding threat events. However, various security facilities usually only defend against one aspect of security threats. There is a lack of communication and cooperation between the facilities, and the management personnel receive a large amount of mutual information. Isolated threat events cannot extract effective information that users really care about. Therefore, the industry hopes to find a technology that can comprehensively analyze threat events reported by various security protection facilities and extract meaning...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06Q10/00
Inventor 石磊刘江宁
Owner 山东中创软件商用中间件股份有限公司
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More