Patent · US Active

Method and device for intrusion detection in a computer network

US11533327B2 · kind B2 · utility

1Cited by
1References
12Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 7, 2020
Grant dateDec 20, 2022
Priority date
Expiry dateApr 6, 2041

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L69/325
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Device and method for intrusion detection in a computer network. A data packet is received at an input of a hardware switch unit, an output of the hardware switch unit being selected for sending the data packet or a copy as a function of data link layer information from the data packet and of a hardware address from a memory of the hardware switch unit. An actual value from a field of the data packet is compared by a hardware filter with a setpoint value for values from this field, the field including data link layer data or network layer data, and the data packet or a copy of the data packet being provided to a computing device as a function of a result of the comparison. The analysis for detecting an intrusion pattern in a network traffic in the computer network id carried out by the computing device.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.