发明名称 Systems for network risk assessment including processing of user access rights associated with a network of devices
摘要 Methods, systems, and apparatus, including computer programs encoded on computer storage media, for network risk assessment. One of the methods includes obtaining information describing network traffic between a plurality of network devices within a network. A network topology of the network is determined based on the information describing network traffic, with the network topology including nodes connected by an edge to one or more other nodes, and with each node being associated with one or more network devices. Indications of user access rights of users are associated to respective nodes included in the network topology. User interface data associated with the network topology is generated.
申请公布号 US9467455(B2) 申请公布日期 2016.10.11
申请号 US201514731312 申请日期 2015.06.04
申请人 PALANTIR TECHNOLOGIES INC. 发明人 Seiver Miles;Rosenblum Charles
分类号 H04L29/06;H04L12/24 主分类号 H04L29/06
代理机构 Knobbe Martens Olson & Bear LLP 代理人 Knobbe Martens Olson & Bear LLP
主权项 1. A computerized method comprising: by a computing device having one or more computer processors and a non-transitory computer readable storage device storing software instruction for execution by the one or more computer processors, obtaining information describing network traffic between a plurality of network devices within a network; determining, based on the information describing network traffic, a network topology of the network, wherein the network topology comprises a plurality of nodes each connected by an edge to one or more of the plurality of nodes, and wherein each node is associated with one or more network devices; associating indications of user access rights of users to respective nodes included in the network topology; and generating user interface data associated with the network topology; wherein an indication of user access rights of a particular user to a particular node comprises one or more of: information indicating that the particular user is permitted access to a space which includes at least one network device associated with the particular node, information indicating that a user account associated with the particular user can provide information to, or receive information from, at least one network device associated with the particular node, or information indicating that the user account associated with the particular user is permitted to access, or has actually attempted to access, at least one network device associated with the particular node.
地址 Palo Alto CA US