Nova Patents
EP1593228A2

Network audit policy assurance system

Abstract

This record has no abstract on file.

Term

Term ended

Projected expiry passed 13 February 2024, 2.6 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

46 claims: 8 independent, 38 dependent

  1. 1
    Claims of equivalent WO 2004075006 A2 WHAT IS CLAIMED IS:1. A network auditing system for auditing a data communications network, the system comprising: a first server configuring policies and audits of the data communications network;one or more second servers coupled to the first server, the one or more second servers gathering information about the network in response to the configured audits and transmitting the gathered information to the first server;and a data store coupled to the first server, the data store storing the gathered information transmitted by the one or more second servers, wherein the first server determines compliance with one of the configured network policies and independently makes a recommendation, in response to the determination, for modifying a network feature.
  2. 16
    A method for generating and applying a network policy in a network auditing system, the method comprising:maintaining in a data store, a natural language policy document for the network policy and one or more machine-processable policy rules;associating at least a portion of the natural language policy document to at least one of the machine-processable policy rules;applying the at least one of the machine-processable policy rules to information gathered about the network;and determining, based on the application, compliance with the network policy.
  3. 22
    A server in a network auditing system, the server comprising:a data store storing a natural language policy document for the network policy and one or more machine-processable policy rules;a client-side user interface coupled to the data store, the user interface allowing a user to associate at least a portion of the natural language policy document to at least one of the machine-processable policy rules;means for applying the at least one of the machine-processable policy rules to information gathered about the network;and means for determining, based on the application, compliance with the network policy.
  4. 26
    A method for automated policy audit comprising:providing a user interface for allowing a user to configure a network audit;storing the network audit configuration information in a data store;automatically initiating the network audit based on the configuration information to gather information about the network;electronically applying a network policy to the gathered network information;determining compliance with the network policy;generating a task based on the compliance determination;and monitoring status of the task.
  5. 28
    A server in a network auditing system, the server comprising:a user interface allowing a user to configure a network audit;a data store storing the network audit configuration information;means for automatically initiating the network audit based on the configuration information to gather information about the network;means for electronically applying a network policy to the gathered network information;means for determining compliance with the network policy;means for generating a task based on the compliance determination;and means for monitoring status of the task.
  6. 33
    A network auditing method comprising:retrieving network information gathered by a plurality of heterogeneous information sources;identifying a network policy to be applied to the retrieved information;identifying semantic equivalencies in the information gathered by the plurality of heterogeneous information sources;and uniformly applying the network policy to the information identified as being semantically equivalent.
  7. 39
    A server in a network auditing system, the server comprising:a data store storing network information gathered by a plurality of heterogeneous information sources;a semantic normalization module coupled to the data store, the module identifying semantic equivalencies in the information gathered by the plurality of heterogeneous information sources;and means for uniformly applying a network policy to the information identified as being semantically equivalent.
  8. 42
    A method for gathering information in a network auditing system utilizing a plurality of heterogeneous information sources, the method comprising:communicating with the plurality of heterogeneous information sources via a uniform communications interface;receiving network information gathered by the heterogeneous information sources via the uniform communications interface;converting the received network information into a normalized data format;storing the converted network information in a data store;comparing at least a portion of the converted network information with a network policy;and determining, based on the comparison, compliance with the network policy.