Visual structuring of multivariable data

    公开(公告)号:US20060100974A1

    公开(公告)日:2006-05-11

    申请号:US10970913

    申请日:2004-10-22

    IPC分类号: G06F17/30

    摘要: Visual structuring of multivariable data sets provided in records which include fields, and are displayed in tabular form. A method comprising: defining a key field; sorting records by defined key field; finding equivalent field values in fields in records arranged adjacent to each other; defining a block for fields having equivalent field values; displaying one field value of fields of a block having equivalent field values and masking all other fields within the block having equivalent field values like the one field value. Facilitating monitoring or analysis of large multivariable data sets provided in records and displayed in tabular form it is proposed to define blocks of fields having equivalent field values and display only one field value of a block. The visual output is useful to identify patterns indicative of an attack. A service provider monitors records provided by a customer and notifies the customer of the attack.

    Monitoring events in a computer network
    2.
    发明授权
    Monitoring events in a computer network 失效
    监控计算机网络中的事件

    公开(公告)号:US07750910B2

    公开(公告)日:2010-07-06

    申请号:US11932028

    申请日:2007-10-31

    IPC分类号: G06T11/20 G09G5/22 G06F7/00

    摘要: Monitoring events triggered by a computer network. Each event being provided with attribute values allocated to a given set of attributes, and providing an event display, determining a primary attribute and a corresponding display label of the events selected from the given set of attributes presented with attribute values on a cross plot, providing a pattern algorithm to detect whether an arrived event is part of a given pattern, providing a mapping algorithm to map attribute values on the cross plot, allocating a second display label to the events indicating the attributes uncovered as part of the given pattern, plotting events arriving and including an attribute value allocated to a primary attribute into the cross plot, and plotting events arriving within the time period and detected by the pattern algorithm as part of the given pattern into the cross plot with the second display label indicating the given pattern.

    摘要翻译: 监控由计算机网络触发的事件。 每个事件被提供有分配给给定的一组属性的属性值,并且提供事件显示,确定从交叉图上呈现的属性值所呈现的给定属性集中选择的事件的主属性和对应显示标签,提供 用于检测到达事件是否是给定模式的一部分的模式算法,提供映射算法来映射交叉图上的属性值,将第二显示标签分配给指示未被覆盖的属性作为给定模式的一部分,绘制事件 到达并将包括分配给主要属性的属性值包括在交叉图中,以及绘制在该时间段内到达并且由模式算法检测到的事件作为给定模式的一部分的事件到具有指示给定模式的第二显示标签的交叉图中。

    MONITORING EVENTS IN A COMPUTER NETWORK
    3.
    发明申请
    MONITORING EVENTS IN A COMPUTER NETWORK 失效
    监控计算机网络中的事件

    公开(公告)号:US20080065765A1

    公开(公告)日:2008-03-13

    申请号:US11932028

    申请日:2007-10-31

    IPC分类号: G06F15/173

    摘要: The present invention relates to a method of monitoring events in a computer network, said computer network triggering said events, each event being provided with attribute values allocated to a given set of attributes, which includes the steps of providing an event display with a cross plot having two coordinate axes, the x-axis presenting a time period and the y-axis presenting an attribute value range, determining a primary attribute and a corresponding display label of the events selected from the given set of attributes to be presented with its attribute values on the y-axis of the cross plot, providing a pattern algorithm to detect whether an arrived event is part of a given pattern on the basis of a comparison of the attributes allocated to the given pattern and of the attributes assigned to the arrived event, providing a mapping algorithm to map any attribute value of an attribute selected from the given set of attributes onto the y-axis of the cross plot, allocating a second display label to the events indicating the attribute value of the attributes being uncovered as part of the given pattern, plotting all the events arrived within the time period and including an attribute value allocated to a primary attribute into the cross plot with the first display label indicating the primary attribute, and plotting all the events arrived within the time period and being detected by the pattern algorithm as part of the given pattern into the cross plot with the second display label indicating the given pattern.

    摘要翻译: 本发明涉及一种监视计算机网络中的事件的方法,所述计算机网络触发所述事件,每个事件被提供有分配给给定的一组属性的属性值,其中包括以下步骤:提供具有交叉图的事件显示 具有两个坐标轴,x轴呈现时间段,y轴呈现属性值范围,确定从给定的属性集中选择的事件的主要属性和对应的显示标签,以呈现其属性值 在交叉图的y轴上,提供模式算法以基于分配给给定模式的属性与分配给到达事件的属性的比较来检测到达事件是否是给定模式的一部分, 提供映射算法来将从给定的属性集中选择的属性的任何属性值映射到交叉图的y轴上,分配第二个d 表示作为给定模式的一部分的未被覆盖的属性的属性值的事件的isplay标签,绘制在时间段内到达的所有事件,并且将分配给主要属性的属性值包括在具有第一显示标签的交叉图中 主要属性,并绘制在时间段内到达的所有事件,并且由模式算法检测作为给定模式的一部分进入交叉图,第二显示标签指示给定模式。

    Monitoring events in a computer network
    4.
    发明授权
    Monitoring events in a computer network 有权
    监控计算机网络中的事件

    公开(公告)号:US07324108B2

    公开(公告)日:2008-01-29

    申请号:US10798070

    申请日:2004-03-11

    IPC分类号: G06T11/20 G09G5/22 G06F7/00

    摘要: Monitoring events triggered by a computer network. Each event being provided with attribute values allocated to a given set of attributes, and providing an event display, determining a primary attribute and a corresponding display label of the events selected from the given set of attributes presented with attribute values on a cross plot, providing a pattern algorithm to detect whether an arrived event is part of a given pattern, providing a mapping algorithm to map attribute values on the cross plot, allocating a second display label to the events indicating the attributes uncovered as part of the given pattern, plotting events arriving and including an attribute value allocated to a primary attribute into the cross plot, and plotting events arriving within the time period and detected by the pattern algorithm as part of the given pattern into the cross plot with the second display label indicating the given pattern.

    摘要翻译: 监控由计算机网络触发的事件。 每个事件被提供有分配给给定的一组属性的属性值,并且提供事件显示,确定从交叉图上呈现的属性值所呈现的给定属性集中选择的事件的主属性和对应显示标签,提供 用于检测到达事件是否是给定模式的一部分的模式算法,提供映射算法来映射交叉图上的属性值,将第二显示标签分配给指示未被覆盖的属性作为给定模式的一部分,绘制事件 到达并将包括分配给主要属性的属性值包括在交叉图中,以及绘制在该时间段内到达并且由模式算法检测到的事件作为给定模式的一部分的事件到具有指示给定模式的第二显示标签的交叉图中。

    Automatic data consolidation
    5.
    发明申请
    Automatic data consolidation 有权
    自动数据整合

    公开(公告)号:US20060036624A1

    公开(公告)日:2006-02-16

    申请号:US11227875

    申请日:2005-09-15

    IPC分类号: G06F7/00

    摘要: The present invention discloses a method, request detector, inference engine, and system for consolidating data from distributed databases into a central database. The method comprises the steps of receiving access information comprising request information to the distributed databases, analyzing the received access information, and aggregating into the central database the data content of the distributed databases in dependence on the analyzed access information.

    摘要翻译: 本发明公开了一种用于将分布式数据库中的数据合并到中央数据库中的方法,请求检测器,推理引擎和系统。 该方法包括以下步骤:接收包含请求信息的访问信息到分布式数据库,分析所接收的访问信息,并根据所分析的访问信息将分布式数据库的数据内容聚合到中央数据库中。