Hierarchical Network Topology Visualization for Cloud Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current cloud management applications lack an effective user interface for easily visualizing and managing network connections across multiple organizations, making it difficult for administrators to identify and address security issues in cloud computing environments.

Innovation Solution

A graphical user interface that displays network connectivity of organizations as nodes, allowing administrators to view and expand details of individual organizations, including virtual applications and networks, with security vulnerabilities highlighted for quick identification and corrective action.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a list-based or table-based approach is used to visualize organizations and network connections, then the system can display network connectivity information, but the administrator cannot easily and quickly ascertain network connections and identify security issues

Engineering Contradiction:
Improveease of viewing network connectionsVSAvoidtime to identify security issues
Core Design Contradiction:
Ease of operationVSLoss of time

Solution Approach 1:

The patent segments the network connectivity visualization into a hierarchical tree structure where organizations are represented as nodes. This segmentation allows administrators to view the overall network topology at a high level while being able to expand specific organization nodes to examine detailed network connections, thereby improving ease of operation and reducing time to identify security issues compared to flat list-based approaches

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent transitions from a two-dimensional list or table view to a three-dimensional hierarchical tree structure. This dimensional change enables administrators to navigate through multiple levels of organization and network connections, providing both overview and detail views simultaneously, which significantly improves the ease of viewing network connections and identifying security issues

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Loss of information

If detailed network connectivity information for all organizations is displayed simultaneously, then complete information is available, but the interface becomes complex and difficult to navigate

Engineering Contradiction:
Improvecompleteness of network connectivity informationVSAvoidcomplexity of user interface
Core Design Contradiction:
Loss of informationVSDevice complexity

Solution Approach 1:

The patent segments the comprehensive network connectivity information into a hierarchical tree structure where each organization is a node that can be independently expanded or collapsed. This segmentation allows the interface to display only relevant information at any given time, maintaining completeness of information while preventing interface complexity from overwhelming the user

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements a nested structure where organization nodes contain detailed network connectivity information that can be expanded only when needed. This nesting approach allows the interface to remain simple at the top level while containing complete detailed information within nested organization nodes, effectively managing information completeness without increasing perceived complexity

Inventive Principle:
Principle #7Nested doll (Nesting)

3Loss of information

If nodes are expanded or collapsed by replacing the entire view, then detailed information can be accessed, but the location of nodes changes relative to other organizations

Engineering Contradiction:
Improveaccess to detailed organization informationVSAvoidstability of node positions
Core Design Contradiction:
Loss of informationVSStability of the object's composition

Solution Approach 1:

The patent implements dynamic expansion and collapse of organization nodes within the hierarchical tree structure. When a node is expanded, detailed network connectivity information is revealed while maintaining the node's original position relative to other organizations in the tree. This dynamic behavior allows access to detailed information without disrupting the stable spatial relationships established in the overall network topology view

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS9160630B2Network connectivity and security visualization
Publication Date: 2015.10.13 VMWARE INC
  • US9160630B2 patent drawing
  • US9160630B2 patent drawing
  • US9160630B2 patent drawing

AI summary

A method for displaying a graphical user interface for a computing environment including computing resources that are provided to a plurality of organizations over one or more external networks includes displaying representations of the one or more external networks. The method further includes displaying a first node in the graphical user interface that is connected to the representations of at least one of the one or more external networks, where the first node is associated with a first organization; displaying an aggregate node in the graphical user interface that is associated with a plurality of other organizations besides the first organization; receiving a selection to view details of the first organization; and displaying an expanded view of the first organization in the graphical user interface in response to the selection.