PACKET SAMPLING FLOW-BASED DETECTION OF NETWORK INTRUSIONS

Patent №

US 7,512,980

Granted

2009-03-31

Filed 2005

Owner

LANCOPE, INC.

Lab

AI components

1

kr

Assignment

Recorded

Dataset

AIPD

2023_r1 edition

Application

10908809

A flow-based intrusion detection system for detecting intrusions in computer communication networks. Data packets representing communications between hosts in a computer-to-computer communication network are processed and assigned to various client/server flows. Statistics are collected for each flow. Then, the flow statistics are analyzed to determine if the flow appears to be legitimate traffic or possible suspicious activity. A concern index value is assigned to each flow that appears suspicious. By assigning a value to each flow that appears suspicious and adding that value to the total concern index of the responsible host, it is possible to identify hosts that are engaged in intrusion activity. When the concern index value of a host exceeds a preset alarm value, an alert is issued and appropriate action can be taken.

Knowledge representationH04L 63/1416H04L 63/1425H04L 63/1441

AI classification

Knowledge representation0.87
Planning0.00
Vision0.00
AI hardware0.00
Natural language0.00
Machine learning0.00
Speech0.00
Evolutionary computation0.00

Ownership

LANCOPE, INC.

assignment · 160750694

© 2026 NYSGPT2525 LLC