Network security situation awareness analysis method based on log and SNMP information fusion
A network security and situational awareness technology, applied in the field of network security situational awareness analysis based on the fusion of logs and SNMP information, can solve the problems of high false negative rate, SNMP agent unable to provide historical data, unable to provide network layer information, etc.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0083] Below in conjunction with accompanying drawing and specific implementation method, the present invention is described in more detail:
[0084] The network security situational awareness analysis method based on log and SNMP data fusion includes five stages: data collection, preprocessing, data analysis, data fusion and visualization.
[0085] 1. The data collection stage based on log and SNMP data fusion includes log data collection and SNMP data collection, of which
[0086] (1) Log data collection includes the following three steps:
[0087] ① Obtain log data information from network devices.
[0088] ②Set the log collection format of the log collection agent: log recording time, source host address, destination address, source port number, destination port number, SYN flag, service type.
[0089] ③ Start the collection agent, and store the collected log data into the source log database.
[0090] (2) SNMP data collection includes the following four steps:
[0091...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com