Information security – Monitoring or scanning of software or data including attack... – Intrusion detection
Reexamination Certificate
2006-12-12
2006-12-12
Sheikh, Ayaz (Department: 2131)
Information security
Monitoring or scanning of software or data including attack...
Intrusion detection
C726S021000, C726S022000, C726S025000, C726S026000, C726S006000, C726S007000, C713S150000, C713S155000, C713S164000, C713S168000, C709S200000, C709S220000, C709S223000, C709S224000, C709S225000, C709S229000
Reexamination Certificate
active
07150043
ABSTRACT:
Performance of a pattern-matching intrusion detection system (IDS) is improved by ranking signatures in its signature table by likelihood of occurrence, so that the table may be searched efficiently. Occurrence data associated with signatures is kept, and the ranking adaptively revised according to updates of the data. When the IDS detects a system event, the signature table is searched. If the search does not find a signature matching the event, thereby suggesting that the event poses no threat, a null signature is added to the signature table in a strategic location to terminate future searches early. In one embodiment, null signatures may be stored in a cache. When a system event is detected, the cache is searched. If a match is not found, the signature table is searched. If a match is not found in the signature table, a null signature is cached.
REFERENCES:
patent: 6279113 (2001-08-01), Vaidya
patent: 6681331 (2004-01-01), Munson et al.
patent: 2002/0112185 (2002-08-01), Hodges
Brock Ashley Anderson
Kim Nathaniel Wook
McClain Kevin Thomas
Chai Longbit
International Business Machines - Corporation
Irvin David R.
Samodovitz Arthur J.
Sheikh Ayaz
LandOfFree
Intrusion detection method and signature table does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Intrusion detection method and signature table, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Intrusion detection method and signature table will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-3718828