IP Library › Granted Patent US 9,819,535
Granted Patent B2
US 9,819,535 · App. 15/138,828 · Granted Nov 14, 2017

Correlating computing network events

Inventors: Edith H. Stern (Yorktown Heights, NY); Kristian J. Stewart (Surrey, GB)
Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
H04L41/0631H04L29/0899H04L41/065H04L41/0613H04L41/0668H04L41/0686H04L41/0806H04L41/0843H04L41/22H04L65/40H04L67/36H04L69/40H04L29/06H04L29/08072H04L29/08144
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,819,535
App. No.
15/138,828
Granted
Nov 14, 2017
Kind
B2
Abstract

According to one aspect of the present disclosure, a method and technique for correlating computing network events is disclosed. The method includes: receiving a plurality of events at an event manager residing on a host computing system; identifying a first resource associated with a first event; identifying a second resource associated with a second event; determining whether the first resource is associated with a deployment pattern; determining whether the second resource is associated with a deployment pattern; and responsive to determining that the first and second resources are each associated with a deployment pattern, correlating the first and second events responsive to the first and second resources being associated with a common deployment pattern.

Claims (42)

1. A system, comprising:

a processor;

a deployment engine executable by the processor to:

discover a topology of a computing environment;

identify resources to deploy in the computing environment; and

deploy the resources in the computing environment; and

an event manager executable by the processor to receive and process events corresponding to the deployed resources, the event manager configured to:

receive an alert of a first event;

identify a first resource associated with the first event;

receive an alert of a second event;

identify a second resource associated with the second event;

search a database of stored resource sets for the first and second resources, each resource set indicating resources deployed in the computing environment according to a deployment template, the deployment template defining resources provisioned for a computing service;

determine whether the first and second resources belong to a common resource set; and

responsive to determining that the first and second resources belong to the common resource set, correlate the first and second events.

2. The system of claim 1 , wherein the event manager is operable to provide an indication of the correlated events.

3. The system of claim 2 , wherein the event manager is operable to condense a plurality of indications of correlated events to a single indication.

4. The system of claim 2 , wherein the event manager is operable to provide a visual indication of the correlated events.

5. The system of claim 1 , wherein the deployment engine is configured to:

responsive to receiving a request to deploy the first or second resource, identify the deployment template corresponding to the request;

identify a target resource for the deployment based on the identified deployment template; and

deploy the target resource.

6. The system of claim 5 , wherein the event manager is operable to store an association of the deployed first or second resource with the deployment template.

7. A computer program product for correlating computing network events, the computer program product comprising:

a non-transitory computer readable medium having computer readable program code embodied therewith, the computer readable program code comprising computer readable program code configured to:

discover a topology of a computing environment;

identify resources to deploy in the computing environment;

deploy the resources in the computing environment;

receive an alert of a first event;

identify a first resource associated with the first event;

receive an alert of a second event;

identify a second resource associated with the second event;

search a database of stored resource sets for the first and second resources, each resource set indicating resources deployed in the computing environment according to a deployment template, the deployment template defining resources provisioned for a computing service;

determine whether the first and second resources belong to a common resource set; and

responsive to determining that the first and second resources belong to the common resource set, correlate the first and second events.

8. The computer program product of claim 7 , wherein the computer readable program code is configured to provide an indication of the correlated events.

9. The computer program product of claim 8 , wherein the computer readable program code is configured to condense a plurality of indications of correlated events to a single indication.

10. The computer program product of claim 8 , wherein the computer readable program code is configured to provide a visual indication of the correlated events.

11. The computer program product of claim 7 , wherein the computer readable program code is configured to:

responsive to receiving a request to deploy the first or second resource, identify the deployment template corresponding to the request;

identify a target resource for the deployment based on the identified deployment template; and

deploy the target resource.

12. The computer program product of claim 11 , wherein the computer readable program code is configured to store an association of the deployed first or second resource with the deployment template.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 26, 2016
From: STERN, EDITH H.; STEWART, KRISTIAN J.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 038386/0153 →
Continuity (3)
Continuation 13775205 · Feb 24, 2013
Continuation 13693462 · Dec 4, 2012
Related Publication 20160241428A1 · Aug 18, 2016