Invention Grant
- Patent Title: Correlating event logs to identify a potential security breach
-
Application No.: US14840739Application Date: 2015-08-31
-
Publication No.: US09917853B2Publication Date: 2018-03-13
- Inventor: Jake Seigel
- Applicant: Dell Products L.P.
- Applicant Address: US CA Aliso Viejo
- Assignee: Quest Software Inc.
- Current Assignee: Quest Software Inc.
- Current Assignee Address: US CA Aliso Viejo
- Agency: Maschoff Brennan
- Main IPC: G06F11/00
- IPC: G06F11/00 ; H04L29/06

Abstract:
Systems and techniques for displaying timelines of event logs are described. A software application may identify event logs associated with an identifier, such as an IP address of a network element or a username. The software application may group the identified event logs based on specified criteria. The software application may determine multiple sessions in which an individual session includes a group of event logs arranged along a timeline. Sessions associated with a same network element may be displayed with a same magnitude. Sessions associated with different network elements may be displayed with different magnitudes. For example, a first timeline of event logs in a first session at a first network element may be displayed at a first height. A second timeline of event logs in a second session at a second network element may be displayed at a second height.
Public/Granted literature
- US20170063884A1 CORRELATING EVENT LOGS TO IDENTIFY A POTENTIAL SECURITY BREACH Public/Granted day:2017-03-02
Information query