Patent · US Expired

Method and system for mapping a network for system security

US6968377B1 · kind B1 · utility

31Cited by
16References
52Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 1, 2002
Grant dateNov 22, 2005
Priority date
Expiry dateAug 20, 2022

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1433
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method and system for mapping a network domain provides a centralized repository for network information to support network devices, including an intrusion detection system. A domain mapping device includes an acquisition engine for acquiring network information, hypercube storage for storing network information, and a query engine for responding to queries from network devices for network information. The acquisition engine acquires network information by active scanning of network devices, passive scanning of network devices, polling of network devices, or receiving network information pushed from network devices. The network information includes device type, operating system, service and vulnerability information. The query engine provides network information in response to queries from network devices, such as intrusion detection devices that use the data to detect attacks on the vulnerabilities of the network.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.