Invention Grant
- Patent Title: Data-driven detection of servers and clients
- Patent Title (中): 数据驱动的服务器和客户端检测
-
Application No.: US13832280Application Date: 2013-03-15
-
Publication No.: US09331916B1Publication Date: 2016-05-03
- Inventor: Eyal Kolman , Alex Vaystikh , Oshry Ben-Harush
- Applicant: EMC Corporation
- Applicant Address: US MA Hopkinton
- Assignee: EMC Corporation
- Current Assignee: EMC Corporation
- Current Assignee Address: US MA Hopkinton
- Agency: BainwoodHuang
- Main IPC: G06F15/173
- IPC: G06F15/173 ; H04L12/26

Abstract:
An improved technique involves processing network traffic data to automatically establish whether a device on the network satisfies a particular set of constraints. Along these lines, a SIEM server observes and processes incoming and outgoing traffic data corresponding to a particular device at an address of the network. The SIEM server then analyzes this traffic data in order to determine whether the data satisfies a set of constraints satisfied by a client, or another set of constraints satisfied by a server. The SIEM server then applies the label of “client” or “server” to the device according to which set of constraints the SIEM server determines the data to have satisfied.
Information query