System and method for detecting real-time security threats in a network datacenter

a network datacenter and real-time security technology, applied in the direction of software maintenance/management, unauthorized memory use protection, instruments, etc., can solve the problems of consuming or needlessly risking the impact of operations, and listeners may be particularly configured to negate challenges

a network datacenter and real-time security technology, applied in the direction of software maintenance/management, unauthorized memory use protection, instruments, etc., can solve the problems of consuming or needlessly risking the impact of operations, and listeners may be particularly configured to negate challenges

US20110302652A1Inactive Publication Date: 2011-12-08MICRO FOCUS SOFTWARE INC

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • System and method for detecting real-time security threats in a network datacenter
  • System and method for detecting real-time security threats in a network datacenter
  • System and method for detecting real-time security threats in a network datacenter

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0027]According to one aspect of the invention, FIG. 1 illustrates an exemplary system 100 for creating a configuration management database 160 in a network datacenter 110, wherein the configuration management database 160 created with the techniques described herein may be used to model interdependencies, detect real-time security threats, and manage proposed changes in the network datacenter 110. In particular, the system 100 shown in FIG. 1 and described herein may obtain accurate and timely information describing relationships and interdependencies in the datacenter 110, which may then be stored in a dependency database 135b containing information describing such relationships and interdependencies. As such, the information describing the relationships and interdependencies in the dependency database 135b may be used to seed the configuration management database 160. For example, in one implementation, the system 100 may employ Netflow or various other network protocols that can...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The system and method described herein may include a configuration management database that describes every known service endpoint in a network datacenter to represent a steady state for the datacenter. One or more listeners may then observe traffic in the datacenter in real-time to detect network conversations initiating new activity in the datacenter, which may be correlated, in real-time, with the information in the configuration management database representing the steady state for the datacenter. Thus, in response to the new activity failing to correlate with the known service endpoints, a real-time security alert may be generated to indicate that any network conversations initiating such activity fall out-of-scope from the steady state for the information technology datacenter.

Description

CROSS-REFERENCE TO RELATED APPLICATIONS[0001]This application claims the benefit of U.S. Provisional Patent Application Ser. No. 61 / 352,257, entitled “System and Method for Creating and Leveraging a Configuration Management Database,” filed Jun. 7, 2010, the contents of which are hereby incorporated by reference in their entirety.[0002]In addition, this application is related to U.S. patent application Ser. No. ______, entitled “System and Method for Modeling Interdependencies in a Network Datacenter,” filed on an even date herewith, and U.S. patent application Ser. No. ______, entitled “System and Method for Managing Changes in a Network Datacenter,” filed on an even date herewith, both of which further claim the benefit of U.S. Provisional Patent Application Ser. No. 61 / 352,257, and the contents of which are hereby incorporated by reference in their entirety.FIELD OF THE INVENTION[0003]The invention relates to a system and method for detecting real-time security threats in a netwo...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
08 Dec 2011
Publication
US20110302652A1
IPC
G06F21/00
CPC
H04L43/10; G06F8/71
Inventors
WESTERFELD, KURT ANDREW