A method, device and system for protecting a website through safety learning
A security device and website technology, applied in the field of network security, can solve problems such as high false positive rate and ineffective identification of security models, and achieve the effects of improving accuracy and comprehensiveness, improving interception accuracy, and reducing deployment time.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0065] During the learning process, if an AJAX-based threat access judgment is received, the administrator can add his own or trusted IP address to the address of safe learning, and the firewall will automatically use regular expression-based writing security access rules based on the added result .
[0066] Such as figure 1 As shown, the method for safely learning and protecting a website described in this embodiment includes the following steps:
[0067] S11. Setting a website security model;
[0068] Set up a website security model for the website, judge all visits to the website according to this security model, intercept threatening visits, and release visits that conform to the security model.
[0069] For example, this security model can be a general firewall with blacklists and / or whitelists, or it can be a security model established through machine learning with different access rules for website content. The security model stores access release rules based on diff...
Embodiment 2
[0084] Such as figure 2 Another example of protecting the website through security learning is shown. The difference between this example and the first example is that the setting of the website security model is added, which can combine the process of machine learning to improve the protection of website security and reduce manual configuration. Time increases productivity.
[0085] S21. Setting a website security model;
[0086] The specific setting of the website security model is Figure II Shown on the right:
[0087] S211. Establish a reverse proxy connection with the website to receive an access request to the website;
[0088] The website security device is switched to passive mode, set between the website server and the user access end, receives the access request from the user end and then sends the request to the website server end, and sends the return result of the data from the server end to the user access request end. The website security device uses the ...
Embodiment 3
[0103] Such as image 3 Shown, a kind of website safety device 30 that protects website through safety study, this website safety device 30 comprises website protection module 31, safe study address module 32, rule adding module 33; Specifically:
[0104] Website protection module 31, used to establish and update the security model;
[0105] A safe learning address module 32, configured to set at least one safe learning address;
[0106] A rule adding module 33, configured to receive an access request from a secure learning address, and add a custom rule according to the access request;
[0107] Wherein the website protection module 31 also includes a receiving access request unit 311, an alarm prompting unit 312, a judging unit 313, and a machine learning unit 314;
[0108] Receive an access request unit 311, configured to establish a reverse proxy connection with the website to receive an access request to the website;
[0109] an alarm prompting unit 312, configured to i...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com