Invention Grant
- Patent Title: Network alert pattern mining
-
Application No.: US14172110Application Date: 2014-02-04
-
Publication No.: US09794113B2Publication Date: 2017-10-17
- Inventor: Rajeev Ranjan , Manoj Kumar Kushwaha
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Parker Ibrahim & Berg LLC
- Agent James M. Behmke; Stephen D. LeBarron
- Main IPC: G06F15/173
- IPC: G06F15/173 ; H04L12/24

Abstract:
In one embodiment, a device receives a plurality of network alerts over a time frame. A sliding transaction window is used across the time frame to associate each network alert occurring within the transaction window with one or more transactions. A pruning test is applied to subsets of the plurality of network alerts, with the network alerts in a given subset being associated with the same transaction. The pruning test is based in part on the number of co-occurrences of network alerts in a given subset for different transaction windows. The subsets of network alerts are assigned to network alert clusters based on the applied pruning test. The network alerts are then joined within a network alert cluster to identify the largest grouping of network alerts that pass the pruning test. A notification that the identified grouping of network alerts is associated with the same transaction is also provided.
Public/Granted literature
- US20150222477A1 NETWORK ALERT PATTERN MINING Public/Granted day:2015-08-06
Information query