Network security alarm method and device, electronic equipment and storage medium
The invention provides a network security alarm method and apparatus, an electronic device and a storage medium. The method comprises the steps of collecting real-time network data corresponding to a target network; marking a real-time marked data stream comprising an entity mark and a vulnerability...
Gespeichert in:
Hauptverfasser: | , |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The invention provides a network security alarm method and apparatus, an electronic device and a storage medium. The method comprises the steps of collecting real-time network data corresponding to a target network; marking a real-time marked data stream comprising an entity mark and a vulnerability feature mark through a real-time calculation data stream engine; normalizing the real-time marked data stream and the batch processing data stream corresponding to the self-storage layer through a stream batch integrated data stream engine, and determining a normalized data stream corresponding to the real-time network data; inputting the normalized data stream into a resource aggregation engine, identifying and marking resource data corresponding to the normalized data stream, and storing the resource data into a relational database; and inputting the normalized data stream into an alarm engine, executing an alarm rule according to the entity mark and the vulnerability feature mark, and triggering an alarm event. |
---|