System and method for detecting real-time security threats in a network datacenter

a network datacenter and real-time security technology, applied in the direction of software maintenance/management, unauthorized memory use protection, instruments, etc., can solve the problems of consuming or needlessly risking the impact of operations, and listeners may be particularly configured to negate challenges

Inactive Publication Date: 2011-12-08
MICRO FOCUS SOFTWARE INC
View PDF5 Cites 105 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Benefits of technology

[0009]According to one aspect of the invention, the system and method described herein may be used to create a configuration management database in a network datacenter, wherein the configuration management database may model interdependencies, detect real-time security threats, and manage proposed changes in the network datacenter. In particular, the system and method described herein may obtain accurate and timely information describing relationships and interdependencies in the datacenter, which may be modeled in a dependency database. As such, the information modeling the relationships and interdependencies in t...

Problems solved by technology

The deliberate sampling or selective extraction techniques may deliberately damper or reduce impacts on operations in the datacenter, as a number of flows needed to build a dependency map for the resources contained therein may be deliberately dampered.
Furthermore, the listeners may be part...

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • System and method for detecting real-time security threats in a network datacenter
  • System and method for detecting real-time security threats in a network datacenter
  • System and method for detecting real-time security threats in a network datacenter

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0027]According to one aspect of the invention, FIG. 1 illustrates an exemplary system 100 for creating a configuration management database 160 in a network datacenter 110, wherein the configuration management database 160 created with the techniques described herein may be used to model interdependencies, detect real-time security threats, and manage proposed changes in the network datacenter 110. In particular, the system 100 shown in FIG. 1 and described herein may obtain accurate and timely information describing relationships and interdependencies in the datacenter 110, which may then be stored in a dependency database 135b containing information describing such relationships and interdependencies. As such, the information describing the relationships and interdependencies in the dependency database 135b may be used to seed the configuration management database 160. For example, in one implementation, the system 100 may employ Netflow or various other network protocols that can...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The system and method described herein may include a configuration management database that describes every known service endpoint in a network datacenter to represent a steady state for the datacenter. One or more listeners may then observe traffic in the datacenter in real-time to detect network conversations initiating new activity in the datacenter, which may be correlated, in real-time, with the information in the configuration management database representing the steady state for the datacenter. Thus, in response to the new activity failing to correlate with the known service endpoints, a real-time security alert may be generated to indicate that any network conversations initiating such activity fall out-of-scope from the steady state for the information technology datacenter.

Description

CROSS-REFERENCE TO RELATED APPLICATIONS[0001]This application claims the benefit of U.S. Provisional Patent Application Ser. No. 61 / 352,257, entitled “System and Method for Creating and Leveraging a Configuration Management Database,” filed Jun. 7, 2010, the contents of which are hereby incorporated by reference in their entirety.[0002]In addition, this application is related to U.S. patent application Ser. No. ______, entitled “System and Method for Modeling Interdependencies in a Network Datacenter,” filed on an even date herewith, and U.S. patent application Ser. No. ______, entitled “System and Method for Managing Changes in a Network Datacenter,” filed on an even date herewith, both of which further claim the benefit of U.S. Provisional Patent Application Ser. No. 61 / 352,257, and the contents of which are hereby incorporated by reference in their entirety.FIELD OF THE INVENTION[0003]The invention relates to a system and method for detecting real-time security threats in a netwo...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): G06F21/00
CPCH04L43/10G06F8/71
Inventor WESTERFELD, KURT ANDREW
Owner MICRO FOCUS SOFTWARE INC
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products