SYSTEM IN COMMUNICATION WITH A MANAGED INFRASTRUCTURE

    公开(公告)号:US20190097871A1

    公开(公告)日:2019-03-28

    申请号:US16204096

    申请日:2018-11-29

    Applicant: Moogsoft, Inc.

    Inventor: Philip Tee

    Abstract: A system is in communication with a managed infrastructure. An extraction engine is in communication with a managed infrastructure. The extraction engine is configured to receive managed infrastructure data and produces events as well as populates an entropy database with a dictionary of event entropy that can be included in the entropy database. A signalizer engine that includes one or more of an NMF engine, a k-means clustering engine and a topology proximity engine. The signalizer engine inputs a list of devices and a list of connections between components or nodes in the managed infrastructure. The signalizer engine determines one or more common characteristics and produces clusters of events relating to failure or errors in at least one of the devices and connections between components or nodes in the managed infrastructure. The events are converted into words and subsets to group the events into clusters that relate to security of the managed infrastructure. In response to grouping the events, physical changes are made to at least a portion of the physical hardware. In response to production of the clusters, security of the managed infrastructure is maintained.

    System for decomposing events from managed infrastructures with situation room

    公开(公告)号:US10243779B2

    公开(公告)日:2019-03-26

    申请号:US15432081

    申请日:2017-02-14

    Applicant: Moogsoft, Inc.

    Abstract: A system is provided for clustering events. At least one engine is configured to receive message data from managed infrastructure that includes managed infrastructure physical hardware which supports the flow and processing of information. The at least one engine is configured to determine common characteristics of events and produce clusters of events relating to the failure of errors in the managed infrastructure. Membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information. The at least one engine is configured to create one or more situations that is a collection of one or more events or alerts representative of the actionable problem in the managed infrastructure. A situation room includes a collaborative interface (UI) for decomposing events from managed infrastructures. In response to production of the clusters one or more physical changes in a managed infrastructure hardware is made, where the hardware supports the flow and processing of information.

    SYSTEM FOR DECOMPOSING EVENTS FROM MANAGED INFRASTRUCTURES

    公开(公告)号:US20170104650A1

    公开(公告)日:2017-04-13

    申请号:US15382884

    申请日:2016-12-19

    Applicant: Moogsoft, Inc.

    Abstract: A system is provided for clustering events. A first engine is configured to receive message data from managed infrastructure that includes managed infrastructure physical hardware that supports the flow and processing of information. A second engine determines common characteristics of events and produces clusters of events relating to a failure of errors in the managed infrastructure. Membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information. One or more situations are created that is a collection of one or more events or alerts representative of the actionable problem in the managed infrastructure. In response to the production of the clusters one or more physical changes in the managed infrastructure hardware.

    DISTRIBUED SYSTEM FOR SELF UPDATING AGENTS AND ANALYTICS
    27.
    发明申请
    DISTRIBUED SYSTEM FOR SELF UPDATING AGENTS AND ANALYTICS 审中-公开
    自动更新代理和分析系统

    公开(公告)号:US20160218910A1

    公开(公告)日:2016-07-28

    申请号:US14606946

    申请日:2015-01-27

    Applicant: Moogsoft, Inc.

    Inventor: Philip Tee

    Abstract: A distributed system includes a plurality of managed devices, and at least one agent in communication with the managed devices. A polling server is in communication with the at least one agent with the at least one agent communicating over a subscribed bus. A portal bridge is in communication with the bus and communicates through a client's firewall to a Network System. A server includes or is coupled to a database of anomies and time series data.

    Abstract translation: 分布式系统包括多个被管理设备,以及与被管理设备通信的至少一个代理。 轮询服务器与所述至少一个代理通信,所述至少一个代理通过订阅的总线通信。 门户网桥与总线通信,并通过客户端的防火墙与网络系统进行通信。 服务器包括或耦合到异常数据库和时间序列数据。

    Distributed system for self updating agents and provides security

    公开(公告)号:US11362881B2

    公开(公告)日:2022-06-14

    申请号:US16237663

    申请日:2018-12-31

    Applicant: Moogsoft Inc.

    Inventor: Philip Tee

    Abstract: A distributed system includes a client system with a plurality of managed devices. At least one agent is in communication with the managed devices. The one agent updates and changes at least one management policy. Anomaly detection is pushed out to the one agent. A dedicated polling server is in communication with the one agent. The one agent communicates over a subscribed bus, and runs on the dedicated polling server. A portal bridge is in communication with the bus and communicates through a client system firewall to a Network System. The portal bridge listens on the bus through a firewall of the client system. The one agent discovers a local environment and retrieves monitored client system parameters. The one agent performs at least one of: communicates a time data series or detects an anomaly, in response to a detection of a hole the at least one agent checks a value for an anomaly and detected anomalies are communicated to the server, when an anomaly is not detected the agent sends a time series data point to the repository and when there are changes in the monitored system parameters the agent loads the change and restarts with the polling. In response to anomaly detection one or more physical changes in a managed infrastructure hardware is made, where the hardware supports the flow and processing of information, and in response to production of the clusters security of the managed infrastructure is maintained.

Patent Agency Ranking