Invention Grant
- Patent Title: Multistage device clustering
-
Application No.: US17588447Application Date: 2022-01-31
-
Publication No.: US11799728B2Publication Date: 2023-10-24
- Inventor: George Apostolopoulos , Zhuxuan Jin
- Applicant: Splunk Inc.
- Applicant Address: US CA San Francisco
- Assignee: Splunk Inc.
- Current Assignee: Splunk Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Ferguson Braswell Fraser Kubasta PC
- Main IPC: H04L41/0893
- IPC: H04L41/0893 ; H04L41/14 ; H04L9/40 ; H04L41/082 ; H04L43/02 ; H04L43/04 ; H04L41/22 ; H04L67/303 ; G06F18/2415

Abstract:
One or more embodiments are directed multistage device clustering. A log including network traffic of multiple devices in a network is received. From the log, features of the devices are extracted and an aggregated feature matrix generated. A traffic behavior subset of the features in the aggregated feature matrix is selected, and a topic modeling algorithm applied thereto to obtain traffic behavior device groups. An application behavior subset of the features in the aggregated feature matrix is selected. On a per traffic behavior device group basis, the topic modeling algorithm is applied to the application behavior subset to obtain application behavior device subgroups. One or more devices are assigned to at least one of the plurality of application behavior device subgroups to obtain an assignment.
Public/Granted literature
- US20220158904A1 MULTISTAGE DEVICE CLUSTERING Public/Granted day:2022-05-19
Information query