Invention Grant
- Patent Title: Network intrusion protection
- Patent Title (中): 网络入侵保护
-
Application No.: US12273142Application Date: 2008-11-18
-
Publication No.: US08677473B2Publication Date: 2014-03-18
- Inventor: David Allen Dennerline , Hubertus Franke , David Paul LaPotin , Terry Lee Nelms, II , Hao Yu
- Applicant: David Allen Dennerline , Hubertus Franke , David Paul LaPotin , Terry Lee Nelms, II , Hao Yu
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Ryan, Mason & Lewis, LLP
- Agent Jennifer R. Davis
- Main IPC: G06F9/00
- IPC: G06F9/00 ; H04L29/06

Abstract:
Improved techniques are disclosed for use in an intrusion prevention system or the like. For example, a method comprises the following steps performed by a computing element of a network. A packet of a flow is received, the flow comprising a plurality of packets, wherein the plurality of packets represents data in the network. A network intrusion analysis cost-benefit value is determined representing a benefit for analyzing the received packet for intrusions in relation to a cost for analyzing the received packet for intrusions. The method compares the network intrusion analysis cost-benefit value to a network intrusion analysis cost-benefit threshold to determine whether analyzing the received packet for intrusions before forwarding the received packet is warranted. Responsive to a determination that analyzing the received packet for intrusions before forwarding the received packet is not warranted, the received packet is forwarded, an indication is made that subsequent packets of the flow should be forwarded, and a determination is made whether the received packet indicates an intrusion after forwarding the received packet.
Public/Granted literature
- US20100125900A1 Network Intrusion Protection Public/Granted day:2010-05-20
Information query