The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 13, 2022

Filed:

Dec. 17, 2019
Applicant:

Arbor Networks, Inc., Westford, MA (US);

Inventor:

Sean O'Hara, Ypsilanti, MI (US);

Assignee:

Arbor Networks, Inc., Westford, MA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/40 (2022.01); H04L 69/22 (2022.01); G06N 20/00 (2019.01); H04L 43/045 (2022.01); H04L 41/14 (2022.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06N 20/00 (2019.01); H04L 41/14 (2013.01); H04L 43/045 (2013.01); H04L 63/1441 (2013.01); H04L 69/22 (2013.01);
Abstract

The method and system are provided for monitoring a protected network for strain. The method includes receiving a learned model having clusters of learning requests of learning network traffic observed during non-strain operation of the protected network, observing network traffic, classifying each of the traffic requests with one of the clusters based on fields of the traffic request and fields used for clustering the learning requests, determining an analysis response time for respective traffic requests associated with the classified traffic requests, determining an analysis response time characteristic per cluster based on an analysis response time associated with the respective classified traffic requests classified with the cluster, determining a difference per cluster between the analysis response time and the learning response times associated with the cluster, and notifying a mitigation device when the difference determined for enough of the clusters exceeds a predetermined threshold.


Find Patent Forward Citations

Loading…