Network interaction monitoring appliance

US8990379B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-8990379-B2
Application numberUS-98631107-A
CountryUS
Kind codeB2
Filing dateNov 19, 2007
Priority dateDec 15, 2006
Publication dateMar 24, 2015
Grant dateMar 24, 2015

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

An appliance for analyzing a network interaction is disclosed. The appliance includes an input to monitor network traffic that includes a network interaction without interfering with the network traffic. The appliance further includes a processor to analyze network traffic to derive information about the network interaction wherein the information about the network interaction is used to distinguish whether the network interaction is a qualified network interaction with a user.

First claim

Opening claim text (preview).

What is claimed is: 1. An appliance for analyzing a network interaction, comprising: an input of an appliance to monitor network traffic that includes a network interaction, wherein the appliance monitors network traffic to the server by passively detecting the network traffic to the server and capturing information associated with the network interaction; and a processor to: analyze the captured information about the network interaction to determine a preliminary score of the captured information, wherein the captured information about the network interaction is used to distinguish whether the network interaction is a qualified network interaction with a user; determine that one or more internet protocol (IP) forensic criteria is satisfied; perform, in response to determining that the one or more IP forensic criteria is satisfied, an IP forensic that actively checks a route back for the network interaction; and transmit the preliminary score to an analytic server that is separate from the appliance, wherein the analytic server determines a final score of the captured information. 2. An appliance as in claim 1 , wherein the network interaction comprises a click. 3. An appliance as in claim 1 , wherein the input to monitor network traffic passively monitors network traffic. 4. An appliance as in claim 1 , wherein the input to monitor network traffic passively monitors network traffic by sniffing network traffic packets. 5. An appliance as in claim 1 , wherein the input to monitor network traffic receives network traffic and forwards network traffic. 6. An appliance as in claim 1 , wherein the input to monitor network traffic receives network traffic and forwards network traffic, wherein the receiving and forwarding of network traffic delay does not substantially affect the network traffic. 7. An appliance as in claim 1 , wherein the input to monitor network traffic receives network traffic and forwards network traffic, wherein the receiving and forwarding of network traffic delay does not substantially affect a transaction involving the network traffic. 8. An appliance as in claim 1 , wherein the input to monitor network traffic receives network traffic and forwards network traffic, wherein the receiving and forwarding of network traffic does not delay the network traffic more than 2 milliseconds. 9. An appliance as in claim 1 , wherein the input to monitor network traffic is a hardware detector of network interactions. 10. An appliance as in claim 1 , wherein the appliance monitors network traffic on a local network that is separated from other networks by a firewall. 11. An appliance as in claim 1 , wherein the appliance receives network traffic from a local network and transmits the network traffic to a web server. 12. An appliance as in claim 1 , wherein the appliance receives network traffic from a local network that also transmits the network traffic to a web server. 13. An appliance as in claim 1 , wherein the information derived comprises a page download metric. 14. An appliance as in claim 1 , wherein the captured information comprises a download connection transfer rate. 15. An appliance as in claim 1 , wherein the captured information is analyzed based at least in part on time information included with network traffic. 16. An appliance as in claim 1 , wherein the captured information comprises a network route traversed. 17. An appliance as in claim 1 , wherein the captured information comprises a network route location. 18. An appliance as in claim 1 , wherein the captured information is analyzed based at least in part on address information included with network traffic. 19. An appliance as in claim 1 , wherein the captured information is analyzed based at least in part on layer 3 through layer 7 information included with network traffic. 20. An appliance as in claim 1 , wherein a model received from a model server is used to determine an aggregation point, wherein the aggregation point is common to a plurality of network interactions. 21. An appliance as in claim 20 , wherein the aggregation point comprises a router. 22. An appliance as in claim 20 , wherein the aggregation point comprises an internet protocol address. 23. An appliance as in claim 20 , wherein the aggregation point comprises a network node. 24. An appliance as in claim 20 , wherein the aggregation point comprises an internet service provider. 25. An appliance as in claim 1 , wherein a model received from a model server is used to infer a legitimate network interaction. 26. An appliance as in claim 25 , wherein the legitimate network interaction is used to estimate a network interaction level. 27. An appliance as in claim 1 , wherein a model on an analytic server is used to infer a fraudulent network interaction. 28. An appliance as in claim 27 , wherein the fraudulent network interaction is used to estimate a network interaction level. 29. An appliance as in claim 1 , wherein the appliance is operated by a third party entity, wherein the third party entity is not affiliated with a web site whose traffic is being monitored or an advertising network that brokered the publishing of an advertisement on a page of the web site. 30. An appliance as in claim 1 , further comprising an output to send click information to a model server. 31. An appliance as in claim 1 , wherein the processor further provides real-time or quasi-real-time preliminary scoring information to a user. 32. An appliance as in claim 1 , further comprising an input to receive model information from a model server.

Assignees

Inventors

Classifications

  • Arrangements for monitoring or testing data switching networks · CPC title

  • Product, service or business identity fraud · CPC title

  • based on web technology, e.g. hypertext transfer protocol [HTTP] · CPC title

  • Electricity · mapped topic

  • Electricity · mapped topic

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US8990379B2 cover?
An appliance for analyzing a network interaction is disclosed. The appliance includes an input to monitor network traffic that includes a network interaction without interfering with the network traffic. The appliance further includes a processor to analyze network traffic to derive information about the network interaction wherein the information about the network interaction is used to distin…
Who is the assignee on this patent?
Pitkow Jim, Chelliah Raman, Brown Marc, and 1 more
What technology area does this patent fall under?
Primary CPC classification G06Q30/0185. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Mar 24 2015 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).