发明名称 List-based alerting in traffic monitoring
摘要 A technique for identifying deviations in patterns of data traffic between host devices communicating over a network involves establishing a baseline traffic distribution by categorizing data traffic during a learning period. The baseline traffic distribution includes a list of categories and a metric value and a measure of variability of the metric value for each category in the list. An observed traffic distribution is generated by categorizing data traffic during an observation period. The observed traffic distribution includes a list of categories and a metric value associated with each category in the list. An alarm is generated in response to at least one of the metric values of the categories of the observed traffic distribution deviating significantly from the corresponding metric value in the baseline traffic distribution based on a pair-wise comparison of the observed metric values with respective thresholds established for corresponding categories of the baseline traffic distribution.
申请公布号 US7969893(B2) 申请公布日期 2011.06.28
申请号 US20090546082 申请日期 2009.08.24
申请人 FLUKE CORPORATION 发明人 RYAN COLIN;REILLY PETER;QUINN JOSEPH;LYNSKEY JOHN;WILKIE KEVIN
分类号 H04L12/26 主分类号 H04L12/26
代理机构 代理人
主权项
地址