METHOD FOR DETECTING ANOMALIES IN OPERATION OF AUTOMATED SYSTEM NETWORK Russian patent published in 2020 - IPC H04L1/00 G06F21/00 

Abstract RU 2738460 C1

FIELD: physics.

SUBSTANCE: invention relates to safety monitoring means. Disclosed is a method of detecting anomalies in the operation of an AC network, which includes the following steps: receiving a network packet intercepted in an AC network and identifying address fields and data fields therein; detecting address and interface of sender node and address and interface of receiving node, and for detected pair find record in signal dictionary; detecting response of receiving node to detected record of signals dictionary and comparing this reaction with expected reaction; returning an abnormality card to the user, wherein the anomaly card includes information including at least one of the types of information selected from the group: automatically generated network packet parsing rules; an address and/or interface of a source node and/or a destination node not found in an interface catalogue; deviation between observed and expected response to signal dictionary recording.

EFFECT: technical result consists in improvement of accuracy in detection of anomalies in the operation of an automated system network.

9 cl, 13 tbl, 12 dwg

Similar patents RU2738460C1

Title Year Author Number
METHOD FOR DETECTION OF ANOMALIES IN OPERATION OF HIGHLY LOADED NETWORK OF AUTOMATED TELECOMMUNICATION SYSTEM 2021
  • Romanchenko Roman Sergeevich
RU2787078C1
METHOD FOR DETECTING NORMAL REACTIONS OF COMPUTER NETWORK NODES TO NETWORK PACKETS RELATED TO UNKNOWN TRAFFIC 2022
  • Antipinskii Andrei Sergeevich
  • Domukhovskii Nikolai Anatolevich
  • Komarov Denis Evgenevich
  • Sinadskii Aleksei Nikolaevich
RU2802164C1
METHOD FOR MONITORING NETWORK ACTIVITY OF COMPUTER NETWORK NODES 2023
  • Sinadskii Aleksei Nikolaevich
  • Domukhovskii Nikolai Anatolevich
  • Shanin Aleksei Andreevich
RU2809918C1
METHOD OF ROUTING TRAFFIC, HAVING PRIORITY CLASS IN COMMUNICATION NETWORK, INCLUDING TWO AND MORE OPERATORS 2016
  • Anisimov Vasilij Vyacheslavovich
  • Begaev Aleksej Nikolaevich
  • Popova Anzhelika Vyacheslavovna
  • Starodubtsev Yurij Ivanovich
  • Sukhorukova Elena Valerevna
  • Fedorov Vadim Gennadievich
RU2631144C1
FIREWALL SYSTEM 2017
  • Zujkov Aleksandr Vasilevich
  • Dusha Igor Fedorovich
  • Lebedev Filipp Vladimirovich
RU2691192C1
METHOD OF PROCESSING NETWORK TRAFFIC USING FIREWALL METHOD 2017
  • Zujkov Aleksandr Vasilevich
  • Dusha Igor Fedorovich
  • Zulkarnaev Ravil Fikratovich
RU2697698C2
METHOD OF PROCESSING NETWORK TRAFFIC DATAGRAMS FOR HIDING CORRESPONDING PAIRS OF SUBSCRIBERS OF INFORMATION-TELECOMMUNICATION SYSTEMS 2014
  • Zakalkin Pavel Vladimirovich
  • Starodubtsev Yurij Ivanovich
  • Sukhorukova Elena Valerevna
  • Yablokov Dmitrij Yurevich
  • Starodubtsev Gennadij Yurevich
RU2586840C1
METHOD OF PROCESSING NETWORK TRAFFIC DATAGRAMS FOR PROTECTING INFORMATION COMPUTER SYSTEMS (VERSIONS) 2012
  • Andrianov Vladimir Igorevich
  • Balenko Ol'Ga Aleksandrovna
  • Bukharin Vladimir Vladimirovich
  • Dvorjadkin Vladimir Vladimirovich
  • Kir'Janov Aleksandr Vladimirovich
  • Starodubtsev Jurij Ivanovich
  • Truskov Stanislav Sergeevich
RU2472217C1
METHOD FOR PROCESSING NETWORK TRAFFIC DATAGRAMS TO HIDE CORRESPONDING PAIRS OF SUBSCRIBERS OF INFORMATION AND TELECOMMUNICATION SYSTEMS 2020
  • Starodubtsev Iurii Ivanovich
  • Permiakov Aleksandr Sergeevich
  • Lepeshkin Oleg Mikhailovich
  • Vershennik Elena Valerevna
  • Kletskov Dmitrii Aleksandrovich
  • Ostroumov Oleg Aleksandrovich
  • Kazantsev Vladimir Vladimirovich
RU2763261C1
METHOD OF NETWORK PROTOCOL DEEP REVIEW FOR ANALYSIS AND FILTRATION OF THEIR CONTENTS 2016
  • Bazhukov Georgij Vyacheslavovich
  • Korenberg Mark Mikhajlovich
  • Bajramly Abdulla Gasan Ogly
RU2640295C1

RU 2 738 460 C1

Authors

Antipinskij Andrej Sergeevich

Domukhovskij Nikolaj Anatolevich

Komarov Denis Evgenevich

Sinadskij Aleksej Nikolaevich

Dates

2020-12-14Published

2020-02-26Filed