首页> 外国专利> NON-INTRUSIVE SOFTWARE AGENT FOR MONITORING AND DETECTION OF CYBER SECURITY EVENTS AND CYBER-ATTACKS IN AN INDUSTRIAL CONTROL SYSTEM

NON-INTRUSIVE SOFTWARE AGENT FOR MONITORING AND DETECTION OF CYBER SECURITY EVENTS AND CYBER-ATTACKS IN AN INDUSTRIAL CONTROL SYSTEM

机译:用于工业控制系统中网络安全事件和网络攻击的监视和检测的非侵入式软件代理

摘要

There is described a digital agent for monitoring of cybersecurity-related events in an industrial control system, said digital agent being residable in a host and comprising:- a module for monitoring behavioral data of said host, such as violation of security policy, system usage metric, etc.- a module for recording behavior baseline of said host, such as operating system, operating system version, firewall status etc.- an agent state machine for monitoring the CPU load and/or memory usage of said host; and- an agent communication module for transmitting monitored data to an analysis unit external to the industrial control system.;There is also discussed a cybersecurity system including an agent according to the invention, a method for operating an agent as well a computer program for executing the method.
机译:描述了一种用于监视工业控制系统中与网络安全相关的事件的数字代理,所述数字代理可驻留在主机中,并且包括:-用于监视所述主机的行为数据的模块,例如违反安全策略,系统使用度量等。-用于记录所述主机的行为基准的模块,例如操作系统,操作系统版本,防火墙状态等。-代理状态机,用于监视所述主机的CPU负载和/或内存使用情况;和-用于将监视的数据传输到工业控制系统外部的分析单元的代理通信模块。还讨论了一种包括根据本发明的代理的网络安全系统,用于操作代理的方法以及用于执行该代理的计算机程序。方法。

著录项

  • 公开/公告号EP3151152A1

    专利类型

  • 公开/公告日2017-04-05

    原文格式PDF

  • 申请/专利权人 SECURE-NOK AS;

    申请/专利号EP20150003001

  • 发明设计人 HOUMB SIV HILDE;

    申请日2015-09-30

  • 分类号G06F21/57;

  • 国家 EP

  • 入库时间 2022-08-21 14:02:19

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号