Invention Application
US20170034196A1 SELECTING NETWORK SECURITY INVESTIGATION TIMELINES BASED ON IDENTIFIERS 审中-公开
基于标识符选择网络安全调查时间表

  • Patent Title: SELECTING NETWORK SECURITY INVESTIGATION TIMELINES BASED ON IDENTIFIERS
  • Patent Title (中): 基于标识符选择网络安全调查时间表
  • Application No.: US15143566
    Application Date: 2016-04-30
  • Publication No.: US20170034196A1
    Publication Date: 2017-02-02
  • Inventor: Vijay ChauhanCary NoelWenhui Yu
  • Applicant: Splunk Inc.
  • Main IPC: H04L29/06
  • IPC: H04L29/06
SELECTING NETWORK SECURITY INVESTIGATION TIMELINES BASED ON IDENTIFIERS
Abstract:
Techniques and mechanisms are disclosed that enable network security analysts and other users to efficiently conduct network security investigations and to produce useful representations of investigation results. As used herein, a network security investigation generally refers to an analysis by an analyst (or team of analysts) of one or more detected network events that may pose internal and/or external threats to a computer network under management. A network security application provides various interfaces that enable users to create investigation timelines, where the investigation timelines display a collection of events related to a particular network security investigation. A network security application further provides functionality to monitor and log user interactions with the network security application, where particular logged user interactions may also be added to one or more investigation timelines.
Information query
Patent Agency Ranking
0/0