DECOMPOSING EVENTS FROM MANAGED INFRASTRUCTURES USING GRAPH ENTROPY
    31.
    发明申请
    DECOMPOSING EVENTS FROM MANAGED INFRASTRUCTURES USING GRAPH ENTROPY 审中-公开
    使用图表进行管理的基础设施分解事件

    公开(公告)号:US20160330065A1

    公开(公告)日:2016-11-10

    申请号:US15213752

    申请日:2016-07-19

    Applicant: Moogsoft, Inc.

    Inventor: Philip TEE

    Abstract: An event clustering system includes an extraction engine in communication with a managed infrastructure. A sigalizer engine includes one or more of an NMF engine, a k-means clustering engine and a topology proximity engine. The sigalizer engine determines one or more common steps from events and produces clusters relating to events. The sigalizer engine determines one or more common characteristics of events and produces clusters of events relating to the failure or errors in the managed infrastructure. Membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information. In response to production of the clusters one or more physical changes in a managed infrastructure hardware is made, where the hardware supports the flow and processing of information.

    Abstract translation: 事件聚类系统包括与被管理基础设施通信的提取引擎。 信号发生器引擎包括NMF引擎,k均值聚类引擎和拓扑接近引擎中的一个或多个。 信号发生器引擎确定事件的一个或多个常见步骤,并产生与事件有关的集群。 信号发生器引擎确定事件的一个或多个共同特征,并产生与被管理基础设施中的故障或错误相关的事件集群。 集群中的成员资格表示事件的一个共同因素,这些事件是物理硬件管理基础设施中的故障或可执行的问题,旨在支持信息的流动和处理。 响应于集群的生产,在管理的基础架构硬件中进行一个或多个物理变化,其中硬件支持信息的流动和处理。

    Distributed system for self updating agents and provides security

    公开(公告)号:US11362881B2

    公开(公告)日:2022-06-14

    申请号:US16237663

    申请日:2018-12-31

    Applicant: Moogsoft Inc.

    Inventor: Philip Tee

    Abstract: A distributed system includes a client system with a plurality of managed devices. At least one agent is in communication with the managed devices. The one agent updates and changes at least one management policy. Anomaly detection is pushed out to the one agent. A dedicated polling server is in communication with the one agent. The one agent communicates over a subscribed bus, and runs on the dedicated polling server. A portal bridge is in communication with the bus and communicates through a client system firewall to a Network System. The portal bridge listens on the bus through a firewall of the client system. The one agent discovers a local environment and retrieves monitored client system parameters. The one agent performs at least one of: communicates a time data series or detects an anomaly, in response to a detection of a hole the at least one agent checks a value for an anomaly and detected anomalies are communicated to the server, when an anomaly is not detected the agent sends a time series data point to the repository and when there are changes in the monitored system parameters the agent loads the change and restarts with the polling. In response to anomaly detection one or more physical changes in a managed infrastructure hardware is made, where the hardware supports the flow and processing of information, and in response to production of the clusters security of the managed infrastructure is maintained.

    Methods for decomposing events from managed infrastructures

    公开(公告)号:US10474520B2

    公开(公告)日:2019-11-12

    申请号:US15350950

    申请日:2016-11-14

    Applicant: MOOGSOFT, INC.

    Abstract: A method is provided for clustering events. Messages are received at an extraction engine from managed infrastructure that includes managed infrastructure physical hardware that supports the flow and processing of information. Events are produced that relate to the managed infrastructure. The events are converted into words and subsets used to group the events that relate to failures or errors in the managed infrastructure, including the managed infrastructure physical hardware. One or more common characteristics of events are determined and clusters of events are produced relating to the failure or errors in the managed infrastructure. A source address is used for each event as is a graph topology of the managed infrastructure to assign a graph coordinate to the event. Membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information. In response to production of the clusters one or more physical changes are made in the managed infrastructure hardware.

    Decomposing events from managed infrastructures using graph entropy

    公开(公告)号:US10237119B2

    公开(公告)日:2019-03-19

    申请号:US15213752

    申请日:2016-07-19

    Applicant: Moogsoft, Inc.

    Inventor: Philip Tee

    Abstract: An event clustering system includes an extraction engine in communication with a managed infrastructure. A sigalizer engine includes one or more of an NMF engine, a k-means clustering engine and a topology proximity engine. The sigalizer engine determines one or more common steps from events and produces clusters relating to events. The sigalizer engine determines one or more common characteristics of events and produces clusters of events relating to the failure or errors in the managed infrastructure. Membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information. In response to production of the clusters one or more physical changes in a managed infrastructure hardware is made, where the hardware supports the flow and processing of information.

    Methods for decomposing events from managed infrastructures

    公开(公告)号:US10169122B2

    公开(公告)日:2019-01-01

    申请号:US15382988

    申请日:2016-12-19

    Applicant: MOOGSOFT, INC.

    Abstract: A system for clustering events includes a first engine that receives message data from a managed infrastructure which includes managed infrastructure physical hardware and supports the flow and processing of information. A second engine determines common characteristics of events and produces clusters of events relating to the failure of errors in the managed infrastructure. Membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information. Events are produced that relate to the managed infrastructure while converting the events into words and subsets used to group the events that relate to failures or errors in the managed infrastructure, including the managed infrastructure physical hardware. The second engine or a third engines uses a source address for each event to assign a graph coordinate to each of an event and making a change to at least a portion of the managed infrastructure.

Patent Agency Ranking