Application Grouping from Connectivity Records in Enterprise Networks

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing network surveillance in enterprise environments fails to identify meaningful and actionable communications between computing nodes, resulting in an overabundance of data points and difficulty in determining which communications are related in a way that is significant to the organization.

Innovation Solution

An intelligent application grouping approach that collects, augments, and processes network data to create Connectivity Records (CRs) with added intelligence, including location tagging, directionality, protocol identification, and application context, and applies service-oriented architecture (SOA) grouping to distill meaningful applications from the data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If network surveillance collects all communications between computing nodes, then complete network data is obtained, but data complexity and volume increase excessively

Engineering Contradiction:
Improvecompleteness of network dataVSAvoidcomplexity of network data
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments network communications into discrete connectivity records, each representing a specific communication event between two computing nodes. This segmentation allows the system to manage and process network data in manageable units rather than as a monolithic complex dataset, resolving the contradiction between complete data collection and data complexity management

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent extracts meaningful application-level information from raw network traffic by creating connectivity records that capture only the essential communication patterns. This extraction process filters out unnecessary data details while preserving the core communication relationships, reducing data complexity while maintaining completeness

Inventive Principle:
Principle #2Taking out (Extraction)

2Loss of information

If all communication data points are retained, then comprehensive network information is available, but meaningful application identification becomes difficult

Engineering Contradiction:
Improvecompleteness of network informationVSAvoiddifficulty of identifying meaningful applications
Core Design Contradiction:
Loss of informationVSDifficulty of detecting and measuring

Solution Approach 1:

The patent performs preliminary processing of network data by creating connectivity records that pre-organize communication information before analysis. This preliminary action structures the data in advance with relevant attributes, making subsequent application identification easier while preserving all original communication information

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces connectivity records as an intermediary data structure between raw network traffic and application identification. This intermediary layer translates complex network communications into standardized records that facilitate easier detection and measurement of meaningful applications without losing original information

Inventive Principle:
Principle #24Intermediary (Mediator)

3Measurement precision

If detailed communication tracking is performed, then all network interactions are captured, but actionable intelligence is obscured by data volume

Engineering Contradiction:
Improveprecision of communication trackingVSAvoidactionable intelligence visibility
Core Design Contradiction:
Measurement precisionVSLoss of information

Solution Approach 1:

The patent changes the parameters of data representation by transforming raw network traffic into connectivity records with specific attributes. This parameter transformation maintains precise tracking of communications while organizing data in a way that reveals actionable intelligence, resolving the contradiction between tracking precision and intelligence visibility

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS20260052090A1Systems and methods for intelligent application grouping
Publication Date: 2026.02.19 RISC NETWORKS LLC
  • US20260052090A1 patent drawing
  • US20260052090A1 patent drawing
  • US20260052090A1 patent drawing

AI summary

A method is described that comprises collecting communication data travelling among a plurality of computing nodes in a networked environment. The method includes using the communication data to create a plurality of connectivity records, wherein each connectivity record comprises a communication between a source computing node and a destination computing node of the plurality of computing nodes. The method includes associating the communication with an application context and protocol. The method includes processing the plurality of connectivity records to eliminate connectivity records that meet at least one criteria, wherein the plurality of connectivity records includes associated application contexts and protocols, wherein a first portion of the plurality of connectivity records comprises the eliminated connectivity records, wherein a second portion of the plurality of connectivity records comprises the remainder of the connectivity records. The method includes building a graph using the second portion of the connectivity records.