Rule Violation Processor for Network Policy Compliance
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In large managed information networks, identifying and tracking rule violations across multiple policies and network elements is cumbersome due to the lack of effective notification categorization and identification of related rules and entities, leading to difficulties in pinpointing the causes of deviations from established policies.
Innovation Solution
A rule violation processor and graphical user interface (GUI) system that traverses notifications according to rule violations, organizes them by severity and recurrence, and identifies related rules and network entities, allowing for efficient analysis and identification of underlying causes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Loss of information
If conventional environment monitoring mechanisms are used to track rule violations in large networks, then network monitoring coverage is maintained, but the ability to categorize notifications and identify related rules and entities deteriorates
Solution Approach 1:
The patent segments the monitoring system into distinct functional modules: a rule violation processor that specifically handles notification categorization, a graphical user interface that separates violation display from system configuration, and a rule engine that independently evaluates policies. This segmentation allows the system to maintain comprehensive monitoring coverage while improving notification categorization through specialized processing in each module.
2Reliability
If multiple policies with multiple rules are enforced across the network, then policy compliance coverage is improved, but the difficulty of identifying and verifying rules deteriorates
Solution Approach 1:
The patent implements feedback mechanisms where the rule violation processor continuously monitors network elements against multiple policies and provides real-time feedback through the graphical user interface. The system evaluates rule violations, categorizes notifications, and presents organized violation information to operators, enabling them to verify compliance across multiple policies without being overwhelmed by the complexity of individual rule verification.
Solution Approach 2:
The graphical user interface serves as an intermediary between the complex rule evaluation engine and the operator. It translates raw violation data into organized, categorized presentations that show related rules and network entities, making it easier for operators to verify compliance across multiple policies without directly interacting with the complex rule evaluation logic.
3Productivity
If the number of interconnected network elements increases, then network functionality and service capacity are improved, but the number of relationships and rules to manage increases
Solution Approach 1:
The rule violation processor is designed as a universal system that can evaluate multiple policies and rules across diverse network elements simultaneously. The graphical user interface provides a unified view that works regardless of the number or type of network elements, presenting violation information in a consistent format that scales with network size without proportionally increasing operational complexity.
4Measurement precision
If comprehensive network monitoring is implemented to track all rule violations, then violation detection completeness is improved, but the time to identify underlying causes deteriorates
Solution Approach 1:
The system performs preliminary actions by pre-categorizing notifications and pre-organizing violation data as they occur. The rule violation processor continuously evaluates rules and categorizes violations before operators need to analyze them, and the graphical user interface pre-organizes information to highlight underlying causes. This preliminary organization of data significantly reduces the time required to identify root causes while maintaining comprehensive violation detection.
Data Source
AI summary
In a large network, it can be difficult to pinpoint and track down the causes of rule violations deviating from established policies. Conventional environment monitoring mechanisms do not categorize notifications according to those triggering rule violations, and do not identify related network entities and rules. A rule violation processor allows traversal of notifications according to rule violations, organizing the violation according to severity and recurrence, and identifies related rules and network entities which may be related to the rule violation. The resulting graphical user interface provides efficient, timely traversal and analysis of rule violations across the network to allow quick, efficient identification of the underlying cause or condition of the rule violation.


