The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 04, 2008

Filed:

Feb. 14, 2006
Applicants:

Solve Stokkan, Ski, NO;

Stephen Haler, Coeur d'Alene, ID (US);

Inventors:

Solve Stokkan, Ski, NO;

Stephen Haler, Coeur d'Alene, ID (US);

Assignee:

TriGeo Network Security, Inc., Post Falls, ID (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06N 5/00 (2006.01);
U.S. Cl.
CPC ...
Abstract

A system and method for the transformation of event correlation rules, such as those written in the Effective Policy through Intelligent Correlation (EPIC) Rule Language, into programming constructs that implement the functionality described by the rule. A match network module performs matching of rules by applying a forward chaining algorithm to an evaluation graph by matching network events that have been encapsulated into one or more tickets in the match network module. For every successful matching rule upon one or more network events reflected in tickets, the match network module creates at least one suggested responsive action. Since one input may satisfy multiple rules, a list of suggested responsive actions is created and sent to a conflict resolution module.


Find Patent Forward Citations

Loading…