Microsoft Corporation
FIDELITY OF ANOMALY ALERTS USING CONTROL PLANE AND DATA PLANE INFORMATION

Last updated:

Abstract:

An indication is received of a security alert. The indication is generated based on a detected anomaly in one of a data plane or a control plane of a computing environment. When the detected anomaly is in the data plane, the control plane is monitored for a subsequent anomaly in the control plane, and otherwise the data plane is monitored for a subsequent anomaly in the data plane. A correlation between the detected anomalies is determined. A notification of the security alert is sent when the correlation exceeds a predetermined threshold.

Status:
Application
Type:

Utility

Filling date:

15 Sep 2020

Issue date:

17 Mar 2022