Patent · US Active

Network traffic correlation engine

US11888882B2 · kind B2 · utility

1Cited by
28References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 18, 2023
Grant dateJan 30, 2024
Priority date
Expiry dateJan 18, 2043

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1408
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A network traffic correlation engine monitors inbound and/or outbound connection information received from on each host computer system on a network. Each host device on the network store data logs corresponding to information corresponding to communications sent by the device and received by the device. The network traffic correlation engine correlates connections between different hosts throughout the network. If the network traffic correlation engine identified unmatched outbound and inbound connections, the network traffic correlation engine generates an alert to initiate further investigation and may also provide a mapping of the communications showing a possible start device for the connection and/or a type of access that the connections may now be providing.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.