Automatic target selection
First Claim
Patent Images
1. A method comprising:
- obtaining, by a processing device, a user-defined filter map, the user-defined filter map including a plurality of filter rules for matching against network traffic when the user-defined filter map is used by a network system to process the network traffic on a network that includes a plurality of targets;
determining, by the processing device, a subset of the plurality of targets on the network, wherein the subset is to be monitored by the network system based on the user-defined filter map, wherein said determining includes identifying, by the processing device, the targets of the plurality of targets whose ingress/egress traffic can potentially result in a match with the filter rules; and
selecting, for monitoring by the network system, the targets identified in said identifying, and excluding from monitoring by the network system each of the plurality of targets that was not identified in said identifying.
4 Assignments
0 Petitions
Accused Products
Abstract
A method of identifying targets for monitoring includes: obtaining a user-defined filter map, the user-defined filter map having one or more filter rules for matching against network traffic when the user-defined filter map is used by a network system to process the network traffic; and determining a set of one or more targets by a processing unit based at least in part on the user-defined filter map, wherein the processing unit comprises a target selection module configured to access a list of available targets from a database, and select the one or more targets from the list of available targets based at least in part on the user-defined filter map.
17 Citations
27 Claims
-
1. A method comprising:
-
obtaining, by a processing device, a user-defined filter map, the user-defined filter map including a plurality of filter rules for matching against network traffic when the user-defined filter map is used by a network system to process the network traffic on a network that includes a plurality of targets; determining, by the processing device, a subset of the plurality of targets on the network, wherein the subset is to be monitored by the network system based on the user-defined filter map, wherein said determining includes identifying, by the processing device, the targets of the plurality of targets whose ingress/egress traffic can potentially result in a match with the filter rules; and selecting, for monitoring by the network system, the targets identified in said identifying, and excluding from monitoring by the network system each of the plurality of targets that was not identified in said identifying. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11)
-
-
12. An apparatus comprising:
-
a non-transitory medium storing a user-defined filter map, the user-defined filter map including a plurality of filter rules for matching against network traffic when the user-defined filter map is used by a network system to process the network traffic on a network that includes a plurality of targets; a processing device configured to determine a subset of the plurality of targets on the network, wherein the subset is to be monitored by the network system, based on the user-defined filter map, wherein determining the subset includes identifying the plurality of targets whose ingress/egress traffic can potentially result in a match with the filter rules; and the processing device further configured to select, for monitoring by the network system, the targets identified in said identifying, and exclude from monitoring by the network system each of the plurality of targets that was not identified in said identifying. - View Dependent Claims (13, 14, 15, 16, 17, 18, 19, 20, 21, 22)
-
-
23. A system comprising:
-
a network interface; one or more processors; and a memory storing instructions, execution of which by the one or more processors causes the system to; receive a user-defined filter map via the network interface, the user-defined filter map including a plurality of filter rules for matching against network traffic when the user-defined filter map is used by a software defined network (SDN) to process the network traffic on a network that includes a plurality of targets; determine a subset of the plurality of targets on the network, wherein the subset is to be monitored by the SDN, based on the user-defined filter map, wherein determining the subset includes identifying the plurality of targets whose ingress/egress traffic can potentially result in a match with the filter rules; and select, for monitoring by the SDN, the targets identified in said identifying, and exclude from monitoring by the network system each of the plurality of targets that was not identified in said identifying. - View Dependent Claims (24, 25, 26, 27)
-
Specification