Network Event Display via Security and Routing Object Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional reporting tools for network events are too general, leading to user confusion, and too specialized, obscuring relationships in data sets, while also separating policy controls from network events, making it difficult to effectively monitor networks.

Innovation Solution

A system and computer program product that display network events in terms of objects managed by security appliances and routing devices, allowing users to view events in context with policy-defined objects and their relationships, using graphical user interfaces to filter and compare events over time.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If conventional reporting tools are made more general to increase flexibility, then user confusion increases and clarity decreases

Engineering Contradiction:
ImproveflexibilityVSAvoidclarity
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The patent segments network events into distinct categories (security events, routing events, policy events) and presents them in separate, organized sections within the GUI. This segmentation allows the system to maintain general flexibility while preserving clarity by preventing information overload and confusion that would result from presenting all events in a single undifferentiated view.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent adds a temporal dimension to event reporting by displaying events chronologically with timestamps and allowing users to filter by time ranges. This dimensional approach organizes the flexible, diverse event data in a structured temporal framework that enhances clarity while maintaining the ability to handle various event types.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Ease of operation

If reporting tools are made more specialized to satisfy specific user needs, then relationships in data sets are obscured

Engineering Contradiction:
Improveuser needs satisfactionVSAvoidrelationships in data sets
Core Design Contradiction:
Ease of operationVSLoss of information

Solution Approach 1:

The patent merges multiple event types (security, routing, policy) and their associated relationships into a single integrated GUI interface. This consolidation allows users to access specialized event information while simultaneously viewing the relationships between different event types, thereby satisfying specific user needs without obscuring data relationships.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent creates a universal reporting interface that can handle multiple event types and user needs through a single system. The GUI provides multi-functional capabilities to display security events, routing events, policy events, and their interrelationships simultaneously, ensuring that specialized needs are met while maintaining visibility of overall data relationships.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If policy controls are separated from network events for specialized reporting, then network monitoring effectiveness decreases

Engineering Contradiction:
Improvespecialized reporting capabilityVSAvoidnetwork monitoring effectiveness
Core Design Contradiction:
Adaptability or versatilityVSProductivity

Solution Approach 1:

The patent merges policy control information with network event data in the same reporting interface. The GUI displays policy events alongside security and routing events, and allows users to filter and analyze events based on policy criteria. This integration maintains network monitoring effectiveness by keeping policy controls and events together while still providing specialized reporting capabilities.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentEP2545692B1System, method, and computer program product for displaying network events in terms of objects managed by a security appliance and/or a routing device
Publication Date: 2018.10.03 MCAFEE LLC
  • EP2545692B1 patent drawingFigure 1
  • EP2545692B1 patent drawingFigure 2~3
  • EP2545692B1 patent drawingFigure 4

AI summary

A system, method, and computer program product are provided for displaying network events in terms of objects managed by at least one of a security appliance and a routing device. In use, network events are received. Furthermore, the network events are displayed in terms of objects being managed by at least one of a security appliance and a routing device.