IP Library Granted Patent US 6,941,358
Granted Patent B1
US 6,941,358 · App. 10/029,687 · Granted Sep 6, 2005

Enterprise interface for network analysis reporting

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 6,941,358
App. No.
10/029,687
Granted
Sep 6, 2005
Kind
B1
Abstract

A system, method and computer program product are provided for reporting on network analysis. Initially, network traffic information is collected utilizing a plurality of agents installed in computers distributed among a plurality of zones. Next, the network traffic information collected from the agents associated with each zone is received at separate controllers. Next, a report on the network traffic information is sent from one of the controllers to a computer coupled thereto via a network.

Claims (63)

1. A method for reporting on network analysis, comprising:

(a) collecting network traffic information utilizing a plurality of agents installed in computers distributed among a plurality of zones;

(b) receiving the network traffic information collected from the agents associated with each zone at a separate host controller; and

(c) transmitting a report on the network traffic information from the host controller to a computer coupled thereto via a network;

wherein a plurality of consoles are coupled to the host controller for collecting the network traffic information from the host controller and displaying the network traffic information from the host controller, wherein a user interface is adapted for analyzing an output;

wherein a map of the network is generated based on the network traffic information;

wherein the report includes a plurality of objects in a tree representation, where the objects are displayed in the tree representation;

wherein intrusion detection services are provided based on the network traffic information;

wherein the network traffic information relates to wireless network traffic;

wherein at least one zone controller chooses a port number associated with an application and pushes a configuration request to a plurality of the host controllers in an associated zone, and the host controllers push the configuration requests to the agents so that the agents begin to monitor a port associated with the port number, such that monitor data is sent from the agents to the host controllers and buffered, whereafter the host controllers update the at least one zone controller with consolidated monitor data, where differences in delay times are calculated to construct an enterprise picture of latency;

wherein each host controller interfaces with at least one of the agents by determining whether a signal has been received from the at least one agent, where, in response to the signal, the at least one agent is sent commands including a first interval setting and configuration data such that the at least one agent transmits the network traffic information in a manner that is based on the configuration data and at a first time interval based on the first interval setting, each host controller being adapted for filtering unicast network traffic, thereby picking up flooded traffic on a domain to ensure that utilization calculations are correct;

wherein each host controller interfaces with the at least one zone controller by determining whether instructions are received from the at least one zone controller the instructions including a second interval setting indicating a second time interval based on which the network traffic information is sent to the at least one zone controller and dictating the manner in which the at least one agent operates per the commands sent from each host controller to the agents, wherein the second interval setting is monitored and each host controller polls for the receipt of a demand over the network, the network traffic information being transmitted to the at least one zone controller in response to at least one of the demand and the cessation of the second time interval.

2. The method as recited in claim 1 , wherein the report is capable of being displayed on the computer utilizing a network browser.

3. The method as recited in claim 1 , wherein the network includes the Internet.

4. The method as recited in claim 1 , and further comprising receiving a request at one of the host controllers for a report on the network traffic information corresponding to the zone associated with the host controller.

5. The method as recited in claim 4 , wherein the report is transmitted in response to the request.

6. The method as recited in claim 1 , wherein the report includes a network analyzer report.

7. A computer program product for reporting on network analysis, comprising:

(a) computer code for collecting network traffic information utilizing a plurality of agents installed in computers distributed among a plurality of zones;

(b) computer code for receiving the network traffic information collected from the agents associated with each zone at a separate host controller; and

(c) computer code for transmitting a report on the network traffic information from the host controller to a computer coupled thereto via a network;

wherein a plurality of consoles are coupled to the host controller for collecting the network traffic information from the host controller and displaying the network traffic information from the host controller, wherein a user interface is adapted for analyzing an output;

wherein a map of the network is generated based on the network traffic information;

wherein the report includes a plurality of objects in a tree representation, where the objects are displayed in the tree representation;

wherein intrusion detection services are provided based on the network traffic information;

wherein the network traffic information relates to wireless network traffic; wherein at least one zone controller chooses a port number associated with an application and pushes a configuration request to a plurality of the host controllers in an associated zone, and the host controllers push the configuration requests to the agents so that the agents begin to monitor a port associated with the port number, such that monitor data is sent from the agents to the host controllers and buffered, whereafter the host controllers update the at least one zone controller with consolidated monitor data, where differences in delay times are calculated to construct an enterprise picture of latency;

wherein each host controller interfaces with at least one of the agents by determining whether a signal has been received from the at least one agent, where, in response to the signal, the at least one agent is sent commands including a first interval setting and configuration data such that the at least one agent transmits the network traffic information in a manner that is based on the configuration data and at a first time interval based on the first interval setting, each host controller being adapted for filtering unicast network traffic, thereby picking up flooded traffic on a domain to ensure that utilization calculations are correct;

wherein each host controller interfaces with the at least one zone controller by determining whether instructions are received from the at least one zone controller, the instructions including a second interval setting indicating a second time interval based on which the network traffic information is sent to the at least one zone controller and dictating the manner in which the at least one agent operates per the commands sent from each host controller to the agents, wherein the second interval setting is monitored and each host controller polls for the receipt of a demand over the network, the network traffic information being transmitted to the at least one zone controller in response to at least one of the demand and the cessation of the second time interval.

8. The computer program product as recited in claim 7 , wherein the report is capable of being displayed on the computer utilizing a network browser.

9. The computer program product as recited in claim 7 , wherein the network includes the Internet.

10. The computer program product as recited in claim 7 , and further comprising receiving a request at one of the host controllers for a report on the network traffic information corresponding to the zone associated with the host controller.

11. The computer program product as recited in claim 10 , wherein the report is transmitted in response to the request.

12. The computer program product as recited in claim 7 , wherein the report includes a network analyzer report.

13. A system for reporting on network analysis, comprising:

(a) logic for collecting network traffic information utilizing a plurality of agents installed in computers distributed among a plurality of zones;

(b) logic for receiving the network traffic information collected from the agents associated with each zone at a separate host controller; and

(c) logic for transmitting a report on the network traffic information from the host controller to a computer coupled thereto via a network;

wherein a plurality of consoles are coupled to the host controller for collecting the network traffic information from the host controller and displaying the network traffic information from the host controller, wherein a user interface is adapted for analyzing an output;

wherein a map of the network is generated based on the network traffic information;

wherein the report includes a plurality of objects in a tree representation, where the objects are displayed in the tree representation;

wherein intrusion detection services are provided based on the network traffic information;

wherein the network traffic information relates to wireless network traffic; wherein at least one zone controller chooses a port number associated with an application and pushes a configuration request to a plurality of the host controllers in an associated zone, and the host controllers push the configuration requests to the agents so that the agents begin to monitor a port associated with the port number, such that monitor data is sent from the agents to the host controllers and buffered, whereafter the host controllers update the at least one zone controller with consolidated monitor data, where differences in delay times are calculated to construct an enterprise picture of latency;

wherein each host controller interfaces with at least one of the agents by determining whether a signal has been received from the at least one agent, where, in response to the signal the at least one agent is sent commands including a first interval setting and configuration data such that the at least one agent transmits the network traffic information in a manner that is based on the configuration data and at a first time interval based on the first interval setting, each host controller being adapted for filtering unicast network traffic, thereby picking up flooded traffic on a domain to ensure that utilization calculations are correct;

wherein each host controller interfaces with the at least one zone controller by determining whether instructions are received from the at least one zone controller, the instructions including a second interval setting indicating a second time interval based on which the network traffic information is sent to the at least one zone controller and dictating the manner in which the at least one agent operates per the commands sent from each host controller to the agents, wherein the second interval setting is monitored and each host controller polls for the receipt of a demand over the network, the network traffic information being transmitted to the at least one zone controller in response to at least one of the demand and the cessation of the second time interval.

14. The system as recited in claim 13 , wherein the report is capable of being displayed on the computer utilizing a network browser.

15. The system as recited in claim 13 , wherein the network includes the Internet.

16. The system as recited in claim 13 , and further comprising receiving a request at one of the host controllers for a report on the network traffic information corresponding to the zone associated with the host controller.

17. The system as recited in claim 16 , wherein the report is transmitted in response to the request.

18. The system as recited in claim 13 , wherein the report includes a network analyzer report.

19. A method for reporting on network analysis, comprising:

(a) collecting network traffic information utilizing a plurality of agents installed in computers distributed among a plurality of zones;

(b) receiving the network traffic information collected from the agents associated with each zone at a separate host controller;

(c) receiving a request at one of the host controllers for a report on the network traffic information corresponding to the zone associated with the host controller; and

(d) transmitting the report from the host controller to a computer coupled thereto via a network;

(e) wherein the report is capable of being displayed on the computer utilizing a network browser,

wherein a plurality of consoles are coupled to the host controller for collecting the network traffic information from the host controller and displaying the network traffic information from the host controller, wherein a user interface is adapted for analyzing an output;

wherein a map of the network is generated based on the network traffic information;

wherein the report includes a plurality of objects in a tree representation where the objects are displayed in the tree representation;

wherein intrusion detection services are provided based on the network traffic information;

wherein the network traffic information relates to wireless network traffic;

wherein at least one zone controller chooses a port number associated with an application and pushes a configuration request to a plurality of the host controllers in an associated zone, and the host controllers push the configuration requests to the agents so that the agents begin to monitor a port associated with the port number, such that monitor data is sent from the agents to the host controllers and buffered, whereafter the host controllers update the at least one zone controller with consolidated monitor data, where differences in delay times are calculated to construct an enterprise picture of latency;

wherein each host controller interfaces with at least one of the agents by determining whether a signal has been received from the at least one agent, where, in response to the signal, the at least one agent is sent commands including a first interval setting and configuration data such that the at least one agent transmits the network traffic information in a manner that is based on the configuration data and at a first time interval based on the first interval setting, each host controller being adapted for filtering unicast network traffic, thereby picking up flooded traffic on a domain to ensure that utilization calculations are correct;

wherein each host controller interfaces with the at least one zone controller by determining whether instructions are received from the at least one zone controller, the instructions including a second interval setting indicating a second time interval based on which the network traffic information is sent to the at least one zone controller and dictating the manner in which the at least one agent operates per the commands sent from each host controller to the agents, wherein the second interval setting is monitored and each host controller polls for the receipt of a demand over the network, the network traffic information being transmitted to the at least one zone controller in response to at least one of the demand and the cessation of the second time interval.

Assignments (15)
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 056990, FRAME 0960 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0430 →
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 057453, FRAME 0053 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0413 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 057315 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 11, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 060878/0126 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 056990/0960 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 057453/0053 →
RELEASE OF SECURITY INTEREST Recorded Jul 26, 2021
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: MCAFEE, LLC; SKYHIGH NETWORKS, LLC
Reel/Frame 057620/0102 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →
MERGER Recorded Jun 23, 2005
From: NETWORKS ASSOCIATES TECHNOLOGY, INC.
To: MCAFEE, INC.
Reel/Frame 016646/0513 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 1, 2002
From: JOINER, HERBERT V.; RAGHURAMAN, PRAVEEN; ELWELL, KEN W.
To: NETWORKS ASSOCIATES TECHNOLOGY, INC.
Reel/Frame 013340/0486 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 21, 2001
From: JOINER, HERBERT V.; RAGHURAMAN, PRAVEEN; ELWELL, KEN W.
To: NETWORK ASSOCIATES TECHNOLOGY, INC.
Reel/Frame 012401/0860 →