Reducing data sets related to network security events
US9923757B1 · kind B1 · utility
Assignee
Inventor
Key dates
| Filing date | Oct 3, 2017 |
| Grant date | Mar 20, 2018 |
| Priority date | — |
| Expiry date | Oct 3, 2037 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/1408
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
This document describes techniques for reducing a size of data sets related to network security alarms or logs, or other messages. Preferably, the reduction is performed via a clustering and compressing algorithm that, among other things, enables an operator to provide customized control in the form of ordered, per-attribute thresholds, or “stop” points. These thresholds function to preserve important information while still achieving excellent clustering and compression results. In some embodiments, the technique described herein can be used to reliably produce reduced-size data sets composed entirely of unique entries. The unique entries can thus be used as keys into a database, e.g., for storage and later analysis or other purposes.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.