Invention Grant
US07802094B2 Reduction of false positive detection of signature matches in intrusion detection systems 有权
减少入侵检测系统中签名匹配的假阳性检测

Reduction of false positive detection of signature matches in intrusion detection systems
Abstract:
Detection of a signature in a data packet comprises performing a pre-classification of the packet, using header information and particularly a 5-tuple access control list, into one of a multiplicity of flows and directing the payload of the packet to a respective one of a multiplicity of deterministic finite state machines each of which stores a plurality of signatures as a sequence of states and acts only on the respective flow.
Information query
Patent Agency Ranking
0/0