×

Monitoring network traffic by using event log information

  • US 20060179140A1
  • Filed: 04/04/2006
  • Published: 08/10/2006
  • Est. Priority Date: 02/26/2004
  • Status: Active Grant
First Claim
Patent Images

1. A method for associating network traffic according to a selected category item, said network traffic traversing on a networked environment that has an authentication service for logging network authentication-related events, including network logon and logoff events, in an event log during an occurrence of a network authentication-related event, said method including:

  • receiving network traffic traversing on the networked environment;

    extracting a first user name and a first network address from the event log;

    identifying at least one packet from said network traffic that contains a second network address matching said first network address; and

    associating said at least one packet with said first user name.

View all claims
  • 7 Assignments
Timeline View
Assignment View
    ×
    ×