×

METHOD FOR DETECTING INTRUSION IN NETWORK

  • US 20160182541A1
  • Filed: 09/22/2015
  • Published: 06/23/2016
  • Est. Priority Date: 12/18/2014
  • Status: Active Grant
First Claim
Patent Images

1. A method for detecting an intrusion in a network, wherein the network comprises a plurality of nodes for data transmission/reception and switches for relaying flow transmission/reception between the nodes, and an intrusion detection system (IDS) is combined with the network to form a system, the method comprising:

  • installing SDN-enabled switches for flow sampling in the network to connect them to a SDN controller;

    determining, by the SDN controller, the number of network to flows and the number of switches;

    deriving a sampling rate for each of the SDN-enabled switches;

    forwarding, by the switches, packet information to the IDS according to the sampling rate; and

    identifying, by the IDS, malicious data based on the packet information to update the sampling rate of each of the SDN switches.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×