×

Dynamic signature inspection-based network intrusion detection

DC
  • US 6,279,113 B1
  • Filed: 06/04/1998
  • Issued: 08/21/2001
  • Est. Priority Date: 03/16/1998
  • Status: Expired due to Term
First Claim
Patent Images

1. A method for detecting network intrusion attempts associated with network objects on a communications network including the steps of:

  • storing a list of attack signature profiles descriptive of attack signatures associated with said network intrusion attempts;

    storing corresponding data representative of a correspondence between subsets of said attack signature profiles and said network objects such that each network object has a corresponding stored subset of attack signature profiles and more than one subset of attack signature profiles corresponds to network objects;

    monitoring network traffic transmitted over said communications network for data addressed to one of said network objects;

    in response to detecting said data addressed to said network object, accessing a subset of attack signature profiles corresponding to said network object based on said correspondence data; and

    executing at least one attack signature profile included in said subset corresponding to said network object to determine if said data addressed to said network object is associated with a network intrusion attempt.

View all claims
  • 6 Assignments
Timeline View
Assignment View
    ×
    ×