INFORMATION REPORTING FOR ANOMALY DETECTION
    1.
    发明申请
    INFORMATION REPORTING FOR ANOMALY DETECTION 有权
    信息报告异常检测

    公开(公告)号:US20160218951A1

    公开(公告)日:2016-07-28

    申请号:US14604570

    申请日:2015-01-23

    Abstract: In one embodiment, a first device in a network receives traffic flow data from a plurality of devices in the network. The traffic flow data from at least one of the plurality of devices comprises raw packets of a traffic flow. The first device selects a set of reporting devices from among the plurality of devices based on the received traffic flow data. The first device provides traffic flow reporting instructions to the selected set of reporting devices. The traffic flow reporting instructions cause each reporting device to provide sampled traffic flow data to an anomaly detection device.

    Abstract translation: 在一个实施例中,网络中的第一设备从网络中的多个设备接收业务流数据。 来自多个设备中的至少一个的流量数据包括业务流的原始分组。 第一设备基于所接收的业务流数据从多个设备中选择一组报告设备。 第一个设备向所选择的一组报告设备提供流量报告指令。 流量报告指令使每个报告设备向异常检测设备提供采样的流量数据。

    Information reporting for anomaly detection

    公开(公告)号:US10044741B2

    公开(公告)日:2018-08-07

    申请号:US15632993

    申请日:2017-06-26

    Abstract: In one embodiment, a first device in a network receives traffic flow data from a plurality of devices in the network. The traffic flow data from at least one of the plurality of devices comprises raw packets of a traffic flow. The first device selects a set of reporting devices from among the plurality of devices based on the received traffic flow data. The first device provides traffic flow reporting instructions to the selected set of reporting devices. The traffic flow reporting instructions cause each reporting device to provide sampled traffic flow data to an anomaly detection device.

Patent Agency Ranking