首页> 外国专利> Security incident detecting method for use in telecommunication network e.g. enterprise Intranet, involves constructing directed graph, identifying connection component in directed graph, and determining incident indicator

Security incident detecting method for use in telecommunication network e.g. enterprise Intranet, involves constructing directed graph, identifying connection component in directed graph, and determining incident indicator

机译:用于电信网络的安全事件检测方法,例如企业内部网,涉及构造有向图,识别有向图中的连接组件以及确定事件指示器

摘要

The method involves constructing a directed graph (GO) comprising directed arcs connecting a source address (AS) to a destination address (AD) of a determined request flow (REQ). A connection component (CC) is identified in the directed graph, where the component comprises a root address and the destination addresses connected to the root address through a set of directed arcs. An incident indicator is determined based on the destination addresses of the identified connection component. A security incident is signaled if the incident indicator is greater than a selected threshold. Independent claims are also included for the following: (1) a device for detecting a security incident in a telecommunication network (2) a computer program for implementing a device for detecting a security incident in a telecommunication network (3) a recording medium readable by a security incident detecting device and recording a computer program for detecting a security incident in a telecommunication network.
机译:该方法涉及构造包括有向弧的有向图(GO),该有向弧将所确定的请求流(REQ)的源地址(AS)连接到目的地址(AD)。在有向图中标识连接组件(CC),其中该组件包括根地址和通过一组有向弧线连接到根地址的目标地址。根据标识的连接组件的目标地址确定事件指示符。如果事件指示符大于选定的阈值,则会发出安全事件信号。还包括以下方面的独立权利要求:(1)用于检测电信网络中的安全事件的设备(2)用于实现用于检测电信网络中的安全事件的设备的计算机程序(3)可读的记录介质安全事件检测设备,并记录用于检测电信网络中的安全事件的计算机程序。

著录项

相似文献

  • 专利
  • 外文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号