IP Library Granted Patent US 9,917,754
Granted Patent B2
US 9,917,754 · App. 14/941,776 · Granted Mar 13, 2018

Management of decommissioned server assets in a shared data environment

Inventors: Rhonda L. Childress (Austin, TX); David B. Kumhyr (Austin, TX); Michael J. Spisak (East Northport, NY)
Assignee: International Business Machines Corporation
H04L43/0823H04L63/1408H04L63/1416H04L67/1034H04L67/2842
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,917,754
App. No.
14/941,776
Granted
Mar 13, 2018
Kind
B2
Abstract

Embodiments of the present invention provide systems and methods for monitoring decommissioned servers in a shared data environment. Embodiments of the present invention can be used to aggregate information associated with an environment from external resources, and calculate a baseline of server activity from the aggregated information. When new information is received, it is compared to the baseline of server activity in order to determine a possible misuse of the server assets, when inconsistencies are detected between the baseline of activity and the new information.

Claims (52)

1. A method for monitoring decommissioned servers, the method comprising:

aggregating, by one or more processors, information associated with an environment, from a plurality of resources;

analyzing, by one or more processors, the aggregated information associated with the environment;

calculating, by one or more processors, a baseline of server activity, based on the aggregated information associated with the environment, wherein the baseline of server activity, based on the aggregated information associated with the environment, comprises: SLA information, contracts information, network monitoring information, and a comparison of network activity from an address resolution protocol (ARP) cache data;

determining, by one or more processors, whether new information associated with the environment is consistent with the baseline of server activity; and

responsive to determining that the new information associated with the environment is not consistent with the baseline of server activity, identifying the new information as a possible misuse.

2. The method of claim 1 , wherein the plurality of resources are located external to a server resource.

3. The method of claim 1 , wherein information associated with an environment comprises: network traffic information, incident problem and change systems information, and network device logs.

4. The method of claim 1 , wherein aggregating, by one or more processors, information associated with an environment, from a plurality of resources, comprises at least one of:

receiving directly, by one or more processors, the information associated with the environment;

receiving, by one or more processors, the information associated with the environment using electronic versions of documentation, comprising a service level agreement (SLA) or a contract; and

receiving, by one or more processors, the information associated with the environment from a network management program.

5. The method of claim 1 , wherein analyzing, by one or more processors, the aggregated information associated with the environment, further comprises:

applying, by an analytics engine, analytics to the aggregated information, wherein the analytics engine is configured to analyze traffic spikes of decommissioned servers.

6. The method of claim 1 , wherein determining, by one or more processors, whether new information associated with the environment is consistent with the baseline of server activity comprises:

analyzing, by one or more processors, a source of network traffic, a type of network traffic, and an amount of network traffic.

7. A computer program product for monitoring decommissioned servers, the computer program product comprising:

a computer readable storage medium and program instructions stored on the computer readable storage medium, the program instructions comprising:

program instructions to aggregate information associated with an environment, from a plurality of resources;

program instructions to analyze the aggregated information associated with the environment;

program instructions to calculate a baseline of server activity, based on the aggregated information associated with the environment, wherein the baseline of server activity, based on the aggregated information associated with the environment, comprises: SLA information, contracts information, network monitoring information, and a comparison of network activity from an address resolution protocol (ARP) cache data;

program instructions to determine whether new information associated with the environment is consistent with the baseline of server activity; and

program instructions to, responsive to determining that the new information associated with the environment is not consistent with the baseline of server activity, identify the new information as a possible misuse.

8. The computer program product of claim 7 , wherein the plurality of resources are located external to a server resource.

9. The computer program product of claim 7 , wherein the information associated with an environment comprises: network traffic information, incident problem and change systems information, and network device logs.

10. The computer program product of claim 7 , wherein the program instructions to aggregate information associated with an environment, from a plurality of resources, comprises at least one of:

program instructions to receive directly the information associated with the environment;

program instructions to receive the information associated with the environment using electronic versions of documentation, comprising a service level agreement (SLA) or a contract; and

program instructions to receive the information associated with the environment from a network management program.

11. The computer program product of claim 7 , wherein the program instructions to analyze the aggregated information associated with the environment, further comprise:

program instructions to apply analytics to the aggregated information, wherein an analytics engine is configured to analyze traffic spikes of decommissioned servers.

12. The computer program product of claim 7 , wherein the program instructions to determine whether new information associated with the environment is consistent with the baseline of server activity comprises:

program instructions to analyze a source of network traffic, a type of network traffic, and an amount of network traffic.

13. A computer system for monitoring decommissioned servers, the computer system comprising:

one or more computer processors;

one or more computer readable storage media;

program instructions stored on the one or more computer readable storage media for execution by at least one of the one or more processors, the program instructions comprising:

program instructions to aggregate information associated with an environment, from a plurality of resources;

program instructions to analyze the aggregated information associated with the environment;

program instructions to calculate a baseline of server activity, based on the aggregated information associated with the environment, wherein the baseline of server activity, based on the aggregated information associated with the environment, comprises: SLA information, contracts information, network monitoring information, and a comparison of network activity from an address resolution protocol (ARP) cache data;

program instructions to determine whether new information associated with the environment is consistent with the baseline of server activity; and

program instructions to, responsive to determining that the new information associated with the environment is not consistent with the baseline of server activity, identify the new information as a possible misuse.

14. The computer system of claim 13 , wherein the plurality of resources are located external to a server resource.

15. The computer system of claim 13 , wherein the information associated with an environment comprises: network traffic information, incident problem and change systems information, and network device logs.

16. The computer system of claim 13 , wherein the program instructions to aggregate information associated with an environment, from a plurality of resources, comprises at least one of:

program instructions to receive directly the information associated with the environment;

program instructions to receive the information associated with the environment using electronic versions of documentation, comprising a service level agreement (SLA) or a contract; and

program instructions to receive the information associated with the environment from a network management program.

17. The computer system of claim 13 , wherein the program instructions to analyze the aggregated information associated with the environment, further comprise:

program instructions to apply analytics to the aggregated information, wherein an analytics engine is configured to analyze traffic spikes of decommissioned servers.

18. The computer system of claim 13 , wherein the program instructions to determine whether new information associated with the environment is consistent with the baseline of server activity comprises:

program instructions to analyze a source of network traffic, a type of network traffic, and an amount of network traffic.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 16, 2015
From: CHILDRESS, RHONDA L.; KUMHYR, DAVID B.; SPISAK, MICHAEL J.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 037045/0201 →
Continuity (1)
Related Publication 20170141983A1 · May 18, 2017