首页>
外国专利>
Method for automated SIEM custom correlation rule generation through interactive network visualization
Method for automated SIEM custom correlation rule generation through interactive network visualization
展开▼
机译:通过交互式网络可视化自动生成SIEM定制相关规则的方法
展开▼
页面导航
摘要
著录项
相似文献
摘要
The present disclosure provides a dynamic method for automated Security Information and Event Management (SIEM) custom correlation rule generation through the use of an interactive network visualization. The visualization is based on log data received from network endpoints and inputs received from a user, and is provided to the user for feedback before the SIEM custom correlation rules are automatically generated based on the visualization. The automatically generated SIEM custom correlation rules are then used to determine whether to trigger actions based on event data received from the network endpoints.
展开▼