会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 7. 发明申请
    • Analyzing security compliance within a network
    • 分析网络中的安全合规性
    • US20070157286A1
    • 2007-07-05
    • US11505171
    • 2006-08-16
    • Pradeep SinghAnkit AgarwalAlain CohenVenuprakash BarathanVinod Jeyachandran
    • Pradeep SinghAnkit AgarwalAlain CohenVenuprakash BarathanVinod Jeyachandran
    • H04L9/00
    • H04L41/28H04L12/2697H04L41/0866H04L41/0893H04L41/145H04L41/22H04L43/50H04L63/1433H04L63/20
    • A security policy database identifies the intended security policies within a network, a traffic generator provides test traffic that is configured to test each defined security policy, and a simulator simulates the propagation of this traffic on a model of the network. The model of the network includes the configuration data associated with each device, and thus, if devices are properly configured to enforce the intended security policies, the success/failure of the simulated test traffic will conform to the intended permit/deny policy of each connection. Differences between the simulated message propagation and the intended security policies are reported to the user, and diagnostic tools are provided to facilitate identification of the device configuration data that accounts for the observed difference. Additionally, if a network's current security policy is unknown, test traffic is generated to reveal the actual policy in effect, to construct a baseline intended security policy.
    • 安全策略数据库标识网络中的预期安全策略,流量生成器提供被配置为测试每个定义的安全策略的测试流量,并且模拟器模拟该流量在网络模型上的传播。 网络模型包括与每个设备相关联的配置数据,因此,如果设备被正确配置以实施预期的安全策略,则模拟测试流量的成功/失败将符合每个连接的预期允许/拒绝策略 。 向用户报告模拟消息传播与预期安全策略之间的差异,并提供诊断工具以便于识别出所观察到的差异的设备配置数据。 此外,如果网络当前的安全策略未知,则生成测试流量以显示实际的实际策略,以构建基准预期的安全策略。