Network asset portrait extraction method

A technology of network assets and extraction methods, applied in data exchange networks, digital transmission systems, electrical components, etc., can solve problems such as inability to adapt to complex environments, short equipment, and difficult upgrades, so as to enhance security defense capabilities and improve accuracy , The effect of facilitating asset management

Pending Publication Date: 2020-05-12
科来网络技术股份有限公司
View PDF0 Cites 15 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

This increases the processing burden on the user's device and may also result in device data leakage
[0006] (2) Lack of associated attributes: conventional detection can only obtain attribute descriptions of isolated assets, cannot be dynamically monitored, and lacks identification of associated assets
[0007] (3) Unable to adapt to complex environments: Some methods require the installation of terminal agents. Facing complex network environments and devices, deployment costs are high and upgrades are difficult
[0008] (4) Poor real-time performance: Relying on manual or regular scanning, it is difficult to detect devices with a short survival time, and it is impossible to discover the services and open ports they are running

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network asset portrait extraction method
  • Network asset portrait extraction method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0041] As a most basic embodiment of the present invention, such as figure 1 A network asset portrait extraction method disclosed in this embodiment includes basic data extraction and processing steps, network data extraction and processing steps, and global data support portrait steps;

[0042] The basic data extraction and supplementary steps, the basic data extracted include the asset IP of the Internet and the intranet, the domain name of the asset in the Internet, and the host name of the intranet asset; and collect and obtain the whois data of the open source IP in the Internet, and pass The routing protocol obtains the asset grouping and network topology information of intranet assets as a supplement to the basic data; that is, the basic data can cover all basic data from traffic and the Internet;

[0043] The network data extraction and processing step protects IP sessions generated when acquiring assets in the Internet and intranets to provide services to other networ...

Embodiment approach

[0046] As a preferred embodiment of the present invention, such as figure 1 , a network asset portrait extraction method disclosed in this embodiment, specifically includes the following steps:

[0047] The basic data extraction step, the basic data includes obtaining the Internet asset IP from the IP network layer, obtaining the domain name of the Internet asset from the DNS application layer; obtaining the IP, gateway, and MAC of the intranet asset from the ARP and DHCP application layers, and obtaining In the DHCP application layer, the host name of the internal network assets is obtained; Internet assets refer to network devices such as hosts and servers that expose IP and / or domain names on the Internet network; the internal network assets refer to LAN network assets or private network assets, such as internal Network, government proprietary network;

[0048] Basic data enrichment processing, collecting and obtaining the whois data of open source IP in the Internet, extr...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention belongs to the technical field of network asset management, and particularly relates to a network asset portrait extraction method, which comprises a basic data extraction and processingstep, a network data extraction and processing step and a global data support portrait step. According to the network asset portrait extraction method, the network asset portraits are automatically sorted by constructing an asset equipment attribute library in combination with a portrait technology, and rich analysis data are provided for asset security analysis.

Description

technical field [0001] The invention belongs to the technical field of network asset management, and in particular relates to a method for extracting network asset portraits. Background technique [0002] Network assets are mainly various devices used in computer (or communication) networks, mainly including hosts, network devices (routers, switches, etc.) and security devices (firewalls, etc.). The value of the network is proportional to the square of the number of network users. [0003] There is a lot of freedom in network assets, and the installation and deployment of applications are quite different, which is not conducive to management. Although software management tools are deployed for each asset, there are very few asset software management tools for the entire network. In recent years, network security issues have become increasingly prominent, especially the rapid growth of network equipment security issues. Various business equipment, network equipment and smart ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L12/24H04L29/06
CPCH04L41/14H04L41/12H04L63/14H04L63/10H04L63/20
Inventor 林康罗鹰陈鹏
Owner 科来网络技术股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products