Supercharge Your Innovation With Domain-Expert AI Agents!

Process behavior traceability device and method

A technology of behavior and process, applied in the field of network security, can solve problems such as cumbersomeness, performance limitations of network data capture, and complex traceability process

Active Publication Date: 2021-04-27
北京零平数据处理有限公司
View PDF7 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The entire traceability process is extremely complex and cumbersome, which brings performance limitations to network data capture
Therefore, this product is not suitable for high-performance network equipment such as operators' main network servers and super-large traffic switches.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Process behavior traceability device and method
  • Process behavior traceability device and method
  • Process behavior traceability device and method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0099] The present invention will be further described below in conjunction with examples.

[0100] First, two terms commonly used in the present invention are defined. "Process" is the basic unit for allocating and managing resources during the execution of concurrently executed programs. "Process state" reflects the life state of a process. The lifecycle of a process can be divided into a set of states that characterize the entire process.

[0101] The process behavior traceability device and method of the present invention can detect process behavior data, take the process where the behavior occurs as the monitoring object, monitor and capture the behavior characteristic information of the process in real time. The device and method include recording network source IP information, source port information, destination IP information, destination port information, network flow statistics, TCP / UDP protocol type, network flow direction and the like during process running. At...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to a process behavior traceability device, which includes a process network information tracking module, a process network information processing module, a process resource behavior tracking module, a network merging module and a behavior calculation module. The invention also relates to a process behavior tracing method. The present invention can monitor the state of the operating system in an all-round way, perform security audits on autonomous and non-autonomous network behaviors, provide fine-grained analysis from the perspective of process behaviors, and provide data support for the overall security situation of the computing environment.

Description

technical field [0001] The present invention generally relates to the technical field of network security. Specifically, the present invention relates to a process behavior traceability device and method. More specifically, the present invention relates to a device and method for tracing the source of process behavior by analyzing the network behavior of the process, analyzing the resource behavior of the process, and associating and tracking the network behavior of the process and the resource behavior of the process. Background technique [0002] Existing network security technology means that the hardware and software of the network system and the data in the system can be protected and will not be damaged, changed, or leaked due to accidental or malicious reasons, the system can run continuously and reliably, and the network service cannot be compromised. interruption. [0003] The current network security protection products are mainly divided into the following two c...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
Inventor 呼啸鲁俊杰许勇王旭
Owner 北京零平数据处理有限公司
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More