Rule Violation Processor for Network Policy Compliance

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In large managed information networks, identifying and tracking rule violations across multiple policies and network elements is cumbersome due to the lack of effective notification categorization and identification of related rules and entities, leading to difficulties in pinpointing the causes of deviations from established policies.

Innovation Solution

A rule violation processor and graphical user interface (GUI) system that traverses notifications according to rule violations, organizes them by severity and recurrence, and identifies related rules and network entities, allowing for efficient analysis and identification of underlying causes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of information

If conventional environment monitoring mechanisms are used to track rule violations in large networks, then network monitoring coverage is maintained, but the ability to categorize notifications and identify related rules and entities deteriorates

Engineering Contradiction:
Improvenotification categorizationVSAvoidmonitoring system complexity
Core Design Contradiction:
Loss of informationVSDevice complexity

Solution Approach 1:

The patent segments the monitoring system into distinct functional modules: a rule violation processor that specifically handles notification categorization, a graphical user interface that separates violation display from system configuration, and a rule engine that independently evaluates policies. This segmentation allows the system to maintain comprehensive monitoring coverage while improving notification categorization through specialized processing in each module.

Inventive Principle:
Principle #1Segmentation

2Reliability

If multiple policies with multiple rules are enforced across the network, then policy compliance coverage is improved, but the difficulty of identifying and verifying rules deteriorates

Engineering Contradiction:
Improvepolicy complianceVSAvoidrule verification difficulty
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The patent implements feedback mechanisms where the rule violation processor continuously monitors network elements against multiple policies and provides real-time feedback through the graphical user interface. The system evaluates rule violations, categorizes notifications, and presents organized violation information to operators, enabling them to verify compliance across multiple policies without being overwhelmed by the complexity of individual rule verification.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The graphical user interface serves as an intermediary between the complex rule evaluation engine and the operator. It translates raw violation data into organized, categorized presentations that show related rules and network entities, making it easier for operators to verify compliance across multiple policies without directly interacting with the complex rule evaluation logic.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If the number of interconnected network elements increases, then network functionality and service capacity are improved, but the number of relationships and rules to manage increases

Engineering Contradiction:
Improvenetwork service capacityVSAvoidnetwork configuration complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The rule violation processor is designed as a universal system that can evaluate multiple policies and rules across diverse network elements simultaneously. The graphical user interface provides a unified view that works regardless of the number or type of network elements, presenting violation information in a consistent format that scales with network size without proportionally increasing operational complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

4Measurement precision

If comprehensive network monitoring is implemented to track all rule violations, then violation detection completeness is improved, but the time to identify underlying causes deteriorates

Engineering Contradiction:
Improveviolation detection accuracyVSAvoidcause identification time
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The system performs preliminary actions by pre-categorizing notifications and pre-organizing violation data as they occur. The rule violation processor continuously evaluates rules and categorizes violations before operators need to analyze them, and the graphical user interface pre-organizes information to highlight underlying causes. This preliminary organization of data significantly reduces the time required to identify root causes while maintaining comprehensive violation detection.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8494977B1IT policy violation views
Publication Date: 2013.07.23 EMC IP HLDG CO LLC
  • US8494977B1 patent drawing
  • US8494977B1 patent drawing
  • US8494977B1 patent drawing

AI summary

In a large network, it can be difficult to pinpoint and track down the causes of rule violations deviating from established policies. Conventional environment monitoring mechanisms do not categorize notifications according to those triggering rule violations, and do not identify related network entities and rules. A rule violation processor allows traversal of notifications according to rule violations, organizing the violation according to severity and recurrence, and identifies related rules and network entities which may be related to the rule violation. The resulting graphical user interface provides efficient, timely traversal and analysis of rule violations across the network to allow quick, efficient identification of the underlying cause or condition of the rule violation.