Network situational awareness method and system based on information collection of various network devices

A network situational awareness and network equipment technology, applied in the field of network security, can solve the problems of not being able to grasp the state of the entire network in a timely manner, and unable to manage the software of network equipment, etc., and achieve the effect of realizing the overall network security threat alarm.

Active Publication Date: 2022-03-25
ANHUI JIYUAN SOFTWARE CO LTD
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

From the initial manual management and decentralized management, it is impossible to grasp the status of the whole network and the status of each part in a timely manner, and it cannot effectively manage the software of network equipment; it has developed to the way of unified and centralized management and control of software to detect abnormal equipment and network status in time, so that The overall network management transitions from passive and disorderly to active observation, and can comprehensively and accurately grasp the operation status of the entire network in a timely manner

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network situational awareness method and system based on information collection of various network devices
  • Network situational awareness method and system based on information collection of various network devices
  • Network situational awareness method and system based on information collection of various network devices

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0056] The technical solutions of the present invention will be further described below with reference to specific embodiments and accompanying drawings.

[0057] The network situation analysis aimed at by the present invention mainly consists of three parts:

[0058] The first is the operating status of the devices that make up the entire network, including system logs, device environment conditions, etc.;

[0059] The second is the communication transmission, automatic processing, emergency and other behaviors between network devices, that is, network behavior;

[0060] The third is the collection of various actions that the user takes on the device and the network, that is, the user behavior;

[0061] These three parts constitute the overall situation of the network. Based on the above-mentioned security elements that cause changes in the network situation, the collection, filtering, fusion, correlation alarm analysis and correlation statistical analysis are carried out. ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a network situation awareness method and system based on information collection of various network devices, including: collecting log data based on various network devices, and performing log information filtering, normalization and merging processing; atomic event flow formed based on log data Perform complex event query tasks and complex event monitoring and alarm tasks. The complex event query tasks are used to query and detect the occurrence of complex scene events. Prediction and alarm of events; perform secondary statistical analysis on data processed by complex event query tasks and complex event monitoring and alarm tasks. The present invention collects multi-dimensional information from various network resources and performs association of multiple events through complex event processing technology Analyze and detect threats and abnormal behaviors in the network in time to achieve network situation awareness, remind users of possible abnormalities, and proactively troubleshoot.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to a network situational awareness method and system based on the collection of various network device information. Background technique [0002] With the development of informatization construction, the number of network devices used as informatization bearers continues to increase, and the management of network devices has gradually attracted attention. From the initial manual management and decentralized management, the status of the entire network and the status of each part cannot be grasped in a timely manner, and the network equipment software cannot be managed effectively; it has developed to the unified centralized management and control of software to timely detect equipment and network status abnormalities, so that The overall network management transitions from passive disorder to active observation, which can comprehensively and accurately grasp the running sta...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/40
CPCH04L63/1425H04L41/069H04L41/0631
Inventor 张雪燕程周育窦国贤顾昊旻宋善坤李彬柴吴军陈衡俞长亮李竞刁燕燕
Owner ANHUI JIYUAN SOFTWARE CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products