IP Library Granted Patent US 9,094,434
Granted Patent B2
US 9,094,434 · App. 14/010,498 · Granted Jul 28, 2015

System and method for automated policy audit and remediation management

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,094,434
App. No.
14/010,498
Granted
Jul 28, 2015
Kind
B2
Abstract

A prevention-based network auditing system includes a central compliance server providing a user interface allowing a user to schedule and configure a network audit. The configured audit is stored in an audit repository until its scheduled time. At such a time, the compliance server automatically invokes one or more audit servers to gather information about the network. The compliance server receives the gathered information and electronically applies a network policy to the information for determining compliance with the policy. A remediation task may be generated if the policy has been violated, and the task monitored until its completion.

Claims (57)

1. One or more non-transitory computer-readable storage media storing instructions that, when executed, cause a computing device to perform a method, the method comprising:

initiating a network audit;

testing a network policy prior to deployment of the network policy, wherein the network policy is tested against past network audit results;

providing one or more recommendations in response to the testing of the network policy, the one or more recommendations including additional rules to be added to the network policy;

applying the network policy;

determining compliance with the network policy;

generating a task based on the compliance determination;

assigning the task for execution; and

monitoring a status of the task, wherein a rollback function is provided that allows one or more system components to be returned to a previous version.

2. The one or more computer-readable storage media of claim 1 , the method further comprising adding at least one of the additional rules to the network policy prior to applying the network policy.

3. The one or more computer-readable storage media of claim 1 , wherein the task includes a remediation task.

4. The one or more computer-readable storage media of claim 1 , wherein the status of the task is set to an unassigned state in response to the generation of the task.

5. The one or more computer-readable storage media of claim 1 , wherein the task is assigned to an entity based on at least one of a role and a geographic responsibility.

6. The one or more computer-readable storage media of claim 1 , wherein the status of the task is set to an assigned state in response to the assignment of the task for execution.

7. The one or more computer-readable storage media of claim 1 , the method further comprising transmitting a notification to an entity to which the task is assigned, wherein the notification includes a hyperlink to a remediation update function.

8. The one or more computer-readable storage media of claim 1 , the method further comprising distributing the task to a plurality of audit scanners for auditing the network based on a determined load.

9. The one or more computer-readable storage media of claim 1 , wherein the task is prioritized based on at least one of a severity of a policy violation and a length of exposure of the policy violation.

10. The one or more computer-readable storage media of claim 1 , the method further comprising determining whether a particular audit result discovered devices for which a policy rule should exist.

11. The one or more computer-readable storage media of claim 10 , wherein the particular audit result identified an existence of a wireless access point (WAP) for which no rules existed in the network policy.

12. The one or more computer-readable storage media of claim 1 , the method further comprising maintaining a table of network assets for which rules should exist in the network policy.

13. The one or more computer-readable storage media of claim 1 , the method further comprising providing a list of recommended rules to be applied to scan results generated by one or more audit scanners.

14. The one or more computer-readable storage media of claim 1 , the method further comprising ranking the additional rules based on their respective importance, which is based, at least in part, on a severity meter setting for violations corresponding to each of the additional rules.

15. The one or more computer-readable storage media of claim 1 , the method further comprising:

identifying wireless access points (WAPs) for wireless networks; and

testing the WAPs to determine their logical location on a global network.

16. The one or more computer-readable storage media of claim 15 , the method further comprising:

determining whether media access control (MAC) address filtering is initiated for one or more of the WAPs.

17. A server, comprising:

a processor; and

a memory coupled to the processor, wherein the server is configured to:

initiate a network audit;

test a network policy prior to deployment of the network policy, wherein the network policy is tested against past network audit results;

provide one or more recommendations in response to the testing of the network policy, the one or more recommendations including additional rules to be added to the network policy;

apply the network policy;

determine compliance with the network policy;

generate a task based on the compliance determination;

assign the task for execution; and

monitor a status of the task, wherein a rollback function is provided that allows one or more system components to be returned to a previous version.

18. The server of claim 17 , wherein the task is prioritized based on at least one of a severity of a policy violation and a length of exposure of the policy violation.

19. The server of claim 17 , wherein the server is further configured to:

rank the additional rules based on their respective importance, which is based, at least in part, on a severity meter setting for violations corresponding to each of the additional rules.

20. A method to be performed in conjunction with at least one processor, the method comprising:

initiating a network audit;

testing a network policy prior to deployment of the network policy, wherein the network policy is tested against past network audit results;

providing one or more recommendations in response to the testing of the network policy, the one or more recommendations including additional rules to be added to the network policy;

applying the network policy;

determining compliance with the network policy;

generating a task based on the compliance determination;

assigning the task for execution; and

monitoring a status of the task, wherein a rollback function is provided that allows one or more system components to be returned to a previous version.

21. The method of claim 20 , further comprising distributing the task to a plurality of audit scanners for auditing the network based on a determined load.

22. The method of claim 20 , wherein the task is prioritized based on at least one of a severity of a policy violation and a length of exposure of the policy violation.

23. The method of claim 20 , further comprising determining whether a particular audit result discovered devices for which a policy rule should exist.

24. The method of claim 20 , further comprising ranking the additional rules based on their respective importance, which is based, at least in part, on a severity meter setting for violations corresponding to each of the additional rules.

25. The method of claim 20 , further comprising:

identifying wireless access points (WAPs) for wireless networks; and

testing the WAPs to determine their logical location on a global network.

Assignments (20)
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2024
From: STG PARTNERS, LLC
To: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
Reel/Frame 068671/0435 →
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 057453, FRAME 0053 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0413 →
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 056990, FRAME 0960 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0430 →
INTELLECTUAL PROPERTY ASSIGNMENT AGREEMENT Recorded Aug 15, 2024
From: MUSARUBRA US LLC
To: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
Reel/Frame 068656/0098 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Aug 15, 2024
From: MAGENTA SECURITY HOLDINGS LLC; SKYHIGH SECURITY LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 068657/0666 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 15, 2024
From: MUSARUBRA US LLC
To: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
Reel/Frame 068657/0764 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 15, 2024
From: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
To: MAGENTA SECURITY HOLDINGS LLC
Reel/Frame 068657/0843 →
INTELLECTUAL PROPERTY ASSIGNMENT AGREEMENT Recorded Aug 15, 2024
From: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
To: MAGENTA SECURITY HOLDINGS LLC
Reel/Frame 068656/0920 →
SECURITY INTEREST Recorded Aug 1, 2024
From: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
To: STG PARTNERS, LLC
Reel/Frame 068324/0731 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 061007/0124 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 057315 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 11, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 060878/0126 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 056990/0960 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 057453/0053 →
RELEASE OF SECURITY INTEREST Recorded Jul 26, 2021
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: MCAFEE, LLC; SKYHIGH NETWORKS, LLC
Reel/Frame 057620/0102 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →