Customizable Network Data Interface for Threat Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for tracking network traffic and identifying security threats are hindered by overwhelming data volumes, and prior user interfaces fail to provide real-time customization and data filtering, making it difficult for users to quickly understand and identify patterns in network data.

Innovation Solution

A computing device collects, filters, and aggregates network data using a customizable user interface that updates in real-time, allowing users to select and visualize relevant data through dynamic facets and interactive maps, enabling effective threat identification and pattern recognition.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If network traffic monitoring is performed to identify security threats, then threat detection capability is improved, but the overwhelming amount of network traffic makes it difficult to track and analyze threats

Engineering Contradiction:
Improvethreat detection capabilityVSAvoidnetwork traffic volume
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The patent segments the overwhelming network traffic data into manageable units by organizing it into data cubes with multiple dimensions (time, source, destination, protocol, etc.). This segmentation allows the system to process and analyze specific portions of traffic relevant to security threats without being overwhelmed by the total volume of network data.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces data cubes as an intermediary structure between raw network traffic and threat analysis. These cubes aggregate and organize traffic data according to specified dimensions and criteria, serving as a mediator that transforms unmanageable raw data into structured, queryable information that can be efficiently analyzed for security threats.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If prior art user interfaces filter data by selected criteria, then data filtering is provided, but the criteria are not updated in real-time as the underlying dataset evolves

Engineering Contradiction:
Improvedata filtering capabilityVSAvoidreal-time criteria update
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamic filtering criteria that automatically update in real-time as the underlying network traffic dataset evolves. The system continuously monitors incoming traffic and adjusts filter criteria, aggregation levels, and dimension selections based on current data patterns, ensuring the user interface always reflects the most relevant and up-to-date information without requiring manual reconfiguration.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS9246779B2Method and apparatus for enhanced network data processing and customizable user interface
Publication Date: 2016.01.26 ELASTICSEARCH TECHNOLOGIES (US) INC
  • US9246779B2 patent drawing
  • US9246779B2 patent drawing
  • US9246779B2 patent drawing

AI summary

A method and system for processing network data and displaying the results using a customizable user interface are disclosed.