会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • Anomaly Detection for Link-State Routing Protocols
    • 链路状态路由协议的异常检测
    • US20100287128A1
    • 2010-11-11
    • US12811048
    • 2007-12-28
    • Madalina BaltatuSebastiano Di PaolaDario Lombardo
    • Madalina BaltatuSebastiano Di PaolaDario Lombardo
    • G06F15/18G06F15/173
    • H04L63/1425G06K9/6284H04L45/02
    • Disclosed herein is an anomaly detection method for link-state routing protocols, a link-state routing protocol providing for link-state update (LSU) messages to be exchanged between nodes in a packet-based network, wherein each link-state update message includes link-state advertisement (LSA) message(s) each having a respective header. The method comprises monitoring the link-state advertisement messages exchanged in the network, extracting and forming respective feature vectors with the values in the fields of the headers of the monitored link-state advertisement messages, and detecting an anomaly related to routing based on the feature vectors. In particular, detecting an anomaly related to routing includes feeding the feature vectors to a machine learning system, conveniently a one-class classifier, preferably a one-class support vector machine (OC-SVM).
    • 本文公开了一种用于链路状态路由协议的异常检测方法,提供在基于分组的网络中的节点之间交换的链路状态更新(LSU)消息的链路状态路由协议,其中每个链路状态更新消息包括 链路状态广播(LSA)消息,每个消息具有相应的报头。 该方法包括监视在网络中交换的链路状态通告消息,提取和形成各个特征向量,其中所述被监控链路状态通告消息的报头的字段中的值,以及基于特征检测与路由有关的异常 向量 特别地,检测与路由相关的异常包括将特征向量馈送到机器学习系统,方便地是一类分类器,优选地是一类支持向量机(OC-SVM)。
    • 2. 发明授权
    • Anomaly detection for link-state routing protocols
    • 链路状态路由协议异常检测
    • US08626678B2
    • 2014-01-07
    • US12811048
    • 2007-12-28
    • Madalina BaltatuSebastiano Di PaolaDario Lombardo
    • Madalina BaltatuSebastiano Di PaolaDario Lombardo
    • G06F15/18
    • H04L63/1425G06K9/6284H04L45/02
    • Disclosed herein is an anomaly detection method for link-state routing protocols, a link-state routing protocol providing for link-state update (LSU) messages to be exchanged between nodes in a packet-based network, wherein each link-state update message includes link-state advertisement (LSA) message(s) each having a respective header. The method comprises monitoring the link-state advertisement messages exchanged in the network, extracting and forming respective feature vectors with the values in the fields of the headers of the monitored link-state advertisement messages, and detecting an anomaly related to routing based on the feature vectors. In particular, detecting an anomaly related to routing includes feeding the feature vectors to a machine learning system, conveniently a one-class classifier, preferably a one-class support vector machine (OC-SVM).
    • 本文公开了一种用于链路状态路由协议的异常检测方法,提供要在基于分组的网络中的节点之间交换的链路状态更新(LSU)消息的链路状态路由协议,其中每个链路状态更新消息包括 链路状态广播(LSA)消息,每个消息具有相应的报头。 该方法包括监视在网络中交换的链路状态通告消息,提取和形成各个特征向量,其中所述被监控链路状态通告消息的报头的字段中的值,以及基于特征检测与路由有关的异常 向量 特别地,检测与路由相关的异常包括将特征向量馈送到机器学习系统,方便地是一类分类器,优选地是一类支持向量机(OC-SVM)。
    • 4. 发明申请
    • Method and system for processing packet flows, and computer program product therefor
    • 处理数据包流的方法和系统及其计算机程序产品
    • US20090217369A1
    • 2009-08-27
    • US11919906
    • 2005-05-04
    • Paolo AbeniPaolo Milani ComparettiSebastiano Di PaolaGerardo Lamastra
    • Paolo AbeniPaolo Milani ComparettiSebastiano Di PaolaGerardo Lamastra
    • G06F21/00H04L12/26
    • H04L47/10G06F9/526G06F2209/522H04L49/90H04L63/1408
    • Packet flows are processed, e.g. to perform an intrusion detection function in a communication network, by means of a multiprocessor system including a plurality of processing units. The packets are distributed for processing among the processing units via a distribution function. Such a distribution function is selectively allotted to one of the processing units of the plurality. A preferred embodiment of the arrangement involves using a single Symmetric Multi-Processor machine with a single network port to Gigabit/sec link. The corresponding system architecture does not require any intermediate device, or any external load balancing mechanism. All the processing work is performed on a single system, which is able to dynamically balance the traffic load among the several independent CPUs. By resorting to a specific scheduling arrangement, such a system is able to effectively distribute the computations required to perform both the loadbalancing and the detection operations.
    • 处理数据包流,例如 通过包括多个处理单元的多处理器系统在通信网络中执行入侵检测功能。 这些分组被分配用于经由分发功能在处理单元之间进行处理。 这种分配功能被选择性地分配给多个处理单元之一。 该布置的优选实施例涉及使用具有单个网络端口到千兆/秒链路的单个对称多处理器机器。 相应的系统架构不需要任何中间设备或任何外部负载平衡机制。 所有的处理工作都在单个系统上执行,能够动态平衡多个独立CPU之间的流量负载。 通过采用特定的调度安排,这样的系统能够有效地分配执行负载平衡和检测操作所需的计算。