IP Library Granted Patent US 8,793,763
Granted Patent B2
US 8,793,763 · App. 13/312,978 · Granted Jul 29, 2014

System and method for interfacing with heterogeneous network data gathering tools

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,793,763
App. No.
13/312,978
Granted
Jul 29, 2014
Kind
B2
Abstract

A prevention-based network auditing system includes a plurality of heterogeneous information sources gathering information about the network. An audit server invokes the heterogeneous information sources via a uniform communications interface to gather information about the network, and converts the information gathered by the information sources into a normalized data format such as, for example, into XML (Extensible Markup Language). The converted information is then stored in an audit repository for security and regulatory policy assessment, network vulnerability analysis, report generation, and security improvement recommendations.

Claims (45)

1. A method, comprising:

mapping dynamic addresses associated with network hosts to static identifiers associated with the network hosts;

receiving results from a scan of the network hosts in heterogeneous formats;

maintaining a reference map that maps an identifier of a test conducted by a first one of the network hosts to an identifier of a test conducted by a second one of the network hosts;

identifying semantically equivalent results from the scan, based, at least in part, on the reference map;

comparing at least a portion of the semantically equivalent results with a network policy to determine compliance with the network policy; and

maintaining a history of compliance for each of the network hosts based on the static identifiers.

2. The method of claim 1 , wherein at least one of the static identifiers is a static hostname associated with one of the network hosts.

3. The method of claim 1 , wherein at least one of the static identifiers is a media access control address associated with one of the network hosts.

4. The method of claim 1 , wherein the network hosts consist of active network hosts.

5. The method of claim 1 , wherein the network hosts consist of active network hosts identified by responses to address resolution protocol requests, and the responses comprise media access control addresses and Internet Protocol addresses associated with the active network hosts.

6. The method of claim 1 , wherein the results include a list of wireless access point devices and associated parameters for accessing one or more wireless networks, and a location for each of the wireless access points is determined.

7. The method of claim 1 , wherein:

the static identifiers comprise media access control addresses associated with at least one of the network hosts;

the network hosts consist of active network hosts identified by responses to address resolution protocol requests, and the responses identify the media access control addresses associated with the active network hosts.

8. Logic encoded in one or more non-transitory media that includes code for execution and, when executed by one or more processors, is operable to perform operations comprising:

mapping dynamic addresses associated with network hosts to static identifiers associated with the network hosts;

receiving results from a scan of the network hosts in heterogeneous formats;

maintaining a reference map that maps an identifier of a test conducted by a first one of the network hosts to an identifier of a test conducted by a second one of the network hosts;

identifying semantically equivalent results from the scan, based, at least in part, on the reference map;

comparing at least a portion of the semantically equivalent results with a network policy to determine compliance with the network policy; and

maintaining a history of compliance for each host based on the static identifiers.

9. The encoded logic of claim 8 , wherein at least one of the static identifiers is a static hostname associated with one of the network hosts.

10. The encoded logic of claim 8 , wherein at least one of the static identifiers is a media access control address associated with one of the network hosts.

11. The encoded logic of claim 8 , wherein the network hosts consist of active network hosts.

12. The encoded logic of claim 8 , wherein the network hosts consist of active network hosts identified by responses to address resolution protocol requests, and the responses comprise media access control addresses and Internet Protocol addresses associated with the active network hosts.

13. The encoded logic of claim 8 , wherein the results include a list of wireless access point devices and associated parameters for accessing one or more wireless networks, and a location for each of the wireless access points is determined.

14. The encoded logic of claim 8 , wherein:

the static identifiers comprise media access control addresses associated with at least one of the network hosts;

the network hosts consist of active network hosts identified by responses to address resolution protocol requests, and the responses identify the media access control addresses associated with the active network hosts.

15. A system, comprising:

one or more processors operable to execute instructions stored on a memory such that the one or more processors

map dynamic addresses associated with network hosts to static identifiers associated with the network hosts;

receive results from a scan of the network hosts in heterogeneous formats;

maintain a reference map that maps an identifier of a test conducted by a first one of the network hosts to an identifier of a test conducted by a second one of the network hosts;

identify semantically equivalent results from the scan, based, at least in part, on the reference map;

compare at least a portion of the semantically equivalent results with a network policy to determine compliance with the network policy; and

maintain a history of compliance for each of the network hosts based on the static identifiers.

16. The system of claim 15 , wherein at least one of the static identifiers is a static hostname associated with one of the network hosts.

17. The system of claim 15 , wherein at least one of the static identifiers is a media access control address associated with one of the network hosts.

18. The system of claim 15 , wherein the network hosts consist of active network hosts.

19. The system of claim 15 , wherein the network hosts consist of active network hosts identified by responses to address resolution protocol requests, and the responses comprise media access control addresses and Internet Protocol addresses associated with the active network hosts.

20. The system of claim 15 , wherein the results include a list of wireless access point devices and associated parameters for accessing one or more wireless networks, and a location for each of the wireless access points is determined.

21. The encoded logic of claim 8 , the operations further comprising:

recommending one or more rules for modifying the network policy, based, at least in part, on a severity meter set for each of the rules, the network hosts are scanned by different types of scanners for which meta-information is provided, and the meta-information relates to capabilities for each of the scanners and how each of the scanners maps to other related scanners that can perform similar testing operations.

Assignments (14)
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 057453, FRAME 0053 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0413 →
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 056990, FRAME 0960 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0430 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 061007/0124 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 057315 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 11, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 060878/0126 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 056990/0960 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 057453/0053 →
RELEASE OF SECURITY INTEREST Recorded Jul 26, 2021
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: MCAFEE, LLC; SKYHIGH NETWORKS, LLC
Reel/Frame 057620/0102 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 16, 2014
From: PREVENTSYS, INC.
To: MCAFEE, INC.
Reel/Frame 034511/0915 →