发明名称 NETWORK SECURITY MONITORING AND CORRELATION SYSTEM AND METHOD OF USING SAME
摘要 A network security monitoring and correlation system for providing a three- dimensional visualization of network traffic overlaid with security alerts and other relevant discrete data. The system may comprise an application server communicably linked to a client. The server functions to retrieve network traffic metadata and relevant discrete data associated with individual computer hosts and connections in the monitored network, process the network traffic data by building a graph data structure, and then embedding within the graph data structure one or more layers of additional information about the individual computer hosts and connections derived from the discrete data. The client functions to produce a three-dimensional visualization of the network environment by parsing the graph data structure received from the server and then spawning computer hosts and connections in the 3-D environment. The client will then add the overlay information to the appropriate hosts or connections, with the overlay information preferably being represented within the 3-D environment as a particular color, shape, size, position, or a changing dynamic value.
申请公布号 WO2017024058(A1) 申请公布日期 2017.02.09
申请号 WO2016US45399 申请日期 2016.08.03
申请人 INGALLS INFORMATION SECURITY IP, L.L.C. 发明人 INGALLS, Jason;RICHARDS, Adam;PERINELLI, Eugenio;PICCINELLI, Nicola;ARENA, Riccardo
分类号 H04L12/24;H04L12/26 主分类号 H04L12/24
代理机构 代理人
主权项
地址