Invention Grant
- Patent Title: Location enrichment in enterprise threat detection
-
Application No.: US15253438Application Date: 2016-08-31
-
Publication No.: US10542016B2Publication Date: 2020-01-21
- Inventor: Marco Rodeck , Harish Mehta , Hartwig Seifert , Thomas Kunz , Eugen Pritzkau , Wei-Guo Peng , Lin Luo , Rita Merkel , Florian Chrosziel , Jona Hassforther , Thorsten Menke
- Applicant: SAP SE
- Applicant Address: DE Walldorf
- Assignee: SAP SE
- Current Assignee: SAP SE
- Current Assignee Address: DE Walldorf
- Agency: Fish & Richardson P.C.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
Subnet information and location information is received from a database by a smart data streaming engine (SDS). A particular subnet of the subnet information is associated with a particular location of the location information by a globally unique location ID value. Log event data received in the SDS is normalized as normalized log event data. The normalized log event data is enriched with subnet and location information as enriched log event data and written into a log event persistence in the database. A subnet ID value retrieved from an enriched log event of the enriched log event data is used by an enterprise threat detection (ETD) system to determine a location associated with the enriched log event using a location ID value associated with the subnet ID.
Public/Granted literature
- US20180063167A1 LOCATION ENRICHMENT IN ENTERPRISE THREAT DETECTION Public/Granted day:2018-03-01
Information query