Multiple Destinations for Mainframe Event Monitoring
First Claim
1. A method for managing mainframe events, comprising:
- receiving at least one mainframe event at a mainframe event server module communicatively coupled with a mainframe;
converting the received at least one mainframe event to an open format;
selecting a destination Security Information and Event Management (SIEM) application for the received at least one mainframe event based on a set of rules;
identifying a format associated with the selected destination SIEM application; and
transmitting the at least one mainframe event in the identified format from the mainframe event server module to the selected destination SIEM application.
1 Assignment
0 Petitions
Accused Products
Abstract
Methods, systems, and devices are described for managing mainframe events. In the methods, systems, and devices of the present disclosure, at least one mainframe event is received at a mainframe event server module communicatively coupled with a mainframe. The received at least one mainframe event may be converted to an open format. A destination Security Information and Event Management (SIEM) application may be selected for the received at least one mainframe event based on a set of rules, and a format associated with the selected destination SIEM application may be identified. The at least one mainframe event may then be transmitted in the identified format from the mainframe event server module to the selected destination SIEM application.
20 Citations
20 Claims
-
1. A method for managing mainframe events, comprising:
-
receiving at least one mainframe event at a mainframe event server module communicatively coupled with a mainframe; converting the received at least one mainframe event to an open format; selecting a destination Security Information and Event Management (SIEM) application for the received at least one mainframe event based on a set of rules; identifying a format associated with the selected destination SIEM application; and transmitting the at least one mainframe event in the identified format from the mainframe event server module to the selected destination SIEM application. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10)
-
-
11. A mainframe event server system, comprising:
-
a reformatting module configured to receive at least one mainframe event associated with a mainframe and convert the received at least one mainframe event to an open format; a destination selection module configured to select a destination Security Information and Event Management (SIEM) application for the received at least one mainframe event based on a set of rules and identify a format associated with the selected destination SIEM application; and a routing module configured to transmit the at least one mainframe event in the identified format from the mainframe event server module to the selected destination SIEM application. - View Dependent Claims (12, 13, 14, 15, 16, 17)
-
-
18. A mainframe event server system, the system comprising:
-
at least one processor; at least one memory communicatively coupled with the at least one processor, the at least one memory comprising executable code that, when executed by the at least one processor, causes the at least one processor to; receive at least one mainframe event associated with a mainframe; convert the received at least one mainframe event to an open format; select a destination Security Information and Event Management (SIEM) application for the received at least one mainframe event based on a set of rules; identify a format associated with the selected destination SIEM application; and transmit the at least one mainframe event in the identified format from the mainframe event server module to the selected destination SIEM application. - View Dependent Claims (19, 20)
-
Specification