Event processing method and system based on risk level

An event processing and risk level technology, applied in transmission systems, electrical components, etc., to solve problems such as inability to make judgments about the relevance of things

Inactive Publication Date: 2012-09-19
BEIJING ANTIY NETWORK SAFETY TECH CO LTD
View PDF6 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

It is because of the neglect of these low-risk events that some more advanced events may be blocked. At t...

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Event processing method and system based on risk level
  • Event processing method and system based on risk level
  • Event processing method and system based on risk level

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0047] In order to enable those skilled in the art to better understand the technical solutions in the embodiments of the present invention, and to make the above-mentioned purposes, features and advantages of the present invention more obvious and easy to understand, the technical solutions in the present invention will be further detailed below in conjunction with the accompanying drawings illustrate.

[0048] An approach to event handling based on risk level, such as figure 1 shown, including:

[0049] S101 Establish a state automaton according to the event state, wherein the state automaton includes: a state collection, an event table, and a state transition table;

[0050] S102 receives the event sent by the client and extracts the event status;

[0051] S103 queries whether the event is in the event table,

[0052] If it is in the event table, then execute step S104 to find the state transition table corresponding to the event and store the event and event state in th...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides an event processing method and an event processing system based on the risk level; a state automation machine is established by extracting the state of an event; the state automation machine processes the input event, and the method comprises steps of quickly judging whether the input event is in an event list or not, finding a corresponding state transfer function if the input event is in the event list, judging whether the event is a risky event or not through the state transfer function and feeding back to a client terminal; the system comprises a receiving module, an establishing module, an inquiry module and a judging module; the state of the event is extracted through the receiving module and the state automation machine is established by the establishing module; and the inquiry module determines whether the input event is in the event list in the station automation machine and carries out corresponding operation; the judging module determines whether a current file is a timeout file or not and processes correspondingly; and finally a processing module analyzes which events need to be sent to the client terminal.

Description

technical field [0001] The invention relates to the technical field of computer network security, in particular to a method and system for event processing based on risk levels. Background technique [0002] In the current network security processing system we use, a corresponding risk level is configured for each event. After the occurrence of the event is detected, it only needs to look up the table to obtain the risk level of the event. When users view event records, they often ignore some events, that is, risk events that users think are of low risk level, and users may even filter out these low-risk events through settings. It is because of the neglect of these low-risk events that some more advanced events may be blocked. At the same time, engine detection often only judges one thing and cannot make a judgment on the relevance of things. Then, how to make a comprehensive analysis of network behavior, so that network security can be supervised more effectively and comp...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06
Inventor 肖新光刘凡邱勇良邢梓宸
Owner BEIJING ANTIY NETWORK SAFETY TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products