首页> 外国专利> SECURITY POLICY MANAGEMENT SYSTEM AND SECURITY POLICY MANAGEMENT SYSTEM WITH SECURITY RISK MANAGEMENT DEVICE

SECURITY POLICY MANAGEMENT SYSTEM AND SECURITY POLICY MANAGEMENT SYSTEM WITH SECURITY RISK MANAGEMENT DEVICE

机译:具有安全风险管理装置的安全策略管理系统和安全策略管理系统

摘要

PROBLEM TO BE SOLVED: To perform operations such as setting of ACLs, change of security policies, analysis of unauthorized access, and the like of respective authentication systems by a common interface.;SOLUTION: When there are new addition/change/deletion of security policies of authentication systems 2a-2e, access control setting of corresponding authentication systems is performed on a display part 11a of a department-classified policy setting unit 11. A policy master generation unit 12 updates the security policies based on a setting state of access control, converts the security policies into ACLs of the respective management systems 2a-2e according to a conversion rule of an authentication system-classified conversion rule DB17 based on the updated security policies, and automatically distributes the ACLs to the respective authentication systems 2a-2e. A security risk management device 20 determines logs to be output from the management systems 2a-2e according to a risk analysis rule, and when there is a log matched to a security policy violation determination condition, performs alarm display on a security risk display part 22a.;COPYRIGHT: (C)2013,JPO&INPIT
机译:解决的问题:通过公共接口执行相应身份验证系统的操作,例如ACL设置,安全策略更改,未经授权的访问分析等;解决方案:当有新的安全性增加/更改/删除时认证系统2a-2e的策略,在部门分类策略设置单元11的显示部分11a上进行相应认证系统的访问控制设置。策略主生成单元12基于访问控制的设置状态来更新安全策略。然后,根据更新后的安全策略,根据认证系统分类的转换规则DB17的转换规则,将安全策略转换为相应管理系统2a-2e的ACL,并自动将ACL分配给相应的认证系统2a-2e。安全风险管理设备20根据风险分析规则确定要从管理系统2a-2e输出的日志,并且当存在与安全策略违反确定条件匹配的日志时,在安全风险显示部分22a上执行警报显示。 。;版权:(C)2013,JPO&INPIT

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号