Anamoly detection and recovery of a corrupted computing resource

    公开(公告)号:US10397236B1

    公开(公告)日:2019-08-27

    申请号:US15376335

    申请日:2016-12-12

    Abstract: A customer's resources are protected from malicious or accidental deletion or termination. In some embodiments anomaly detection is used for identifying suspicious activities, which is combined with options to restore previously deleted resources. To define and detect anomalies, resource profiles are generated indicative of how resources are being used, and user profiles of how users use resources of the compute service provider. Instead of immediately deleting a resource, a temporary marker can be placed on the resource. The temporary marker blocks attempts to access the resource just as if the resource was deleted. However, the resource can easily be recovered by simply removing the marker. When a deletion event is identified as anomalous, an alert is generated to the customer. Upon receiving the alert, customers can opt to restore the resource that has been deleted, which will remove the marker.

    Access control policy warnings and suggestions

    公开(公告)号:US10986131B1

    公开(公告)日:2021-04-20

    申请号:US14574308

    申请日:2014-12-17

    Abstract: Techniques for generating access control policy warnings and suggestions are disclosed herein. An access control policy change specifying changes to one or more permissions associated with the access control policy is received and, based on a set of requests for access associated with the access control policy, an access control policy warning is produced which specifying an indication of whether or not the changes to the one or more permissions should be permitted.

    LARGE-SCALE AUTHORIZATION DATA COLLECTION AND AGGREGATION

    公开(公告)号:US20190073488A1

    公开(公告)日:2019-03-07

    申请号:US16056322

    申请日:2018-08-06

    Abstract: A record of usage data is obtained, with the record sampled according to a sampling rate from a set of usage data records, with the record specifying a request to access a resource of a computing resource service provider, with the request indicating a set of permissions, and with the sampling rate being based at least in part on a criterion associated with the request. The record is aggregated, based at least in part on a permission of the set of permissions, with at least another record sampled according to the sampling rate from the set of usage data records to produce a set of aggregated usage records and at least a portion of the set of aggregated usage records is provided.

    Large-scale authorization data collection and aggregation

    公开(公告)号:US10043030B1

    公开(公告)日:2018-08-07

    申请号:US14615347

    申请日:2015-02-05

    Abstract: Techniques for large-scale authorization data collection and aggregation are disclosed herein. An authorization data service may first receive a set of usage data records, may next aggregate the set of usage data records to reduce the number of usage data records, may next store the aggregated set of usage data records in a usage data repository, and may next provide subsets of the aggregated set of usage data records in response to an application processing request to inform policy decisions associated with a computer system.

    Tunable parameter settings for a distributed application

    公开(公告)号:US10771330B1

    公开(公告)日:2020-09-08

    申请号:US15684416

    申请日:2017-08-23

    Inventor: Ashish Rangole

    Abstract: A technology is described for generating and modifying tunable parameter settings for use with a distributed application. An example method may include providing a first set of tunable parameter settings for a distributed application, where the first set of tunable parameter settings may be selected based at least in part on historical data associated with similar distributed applications. Performance metrics and implementation attributes associated with the distributed application may then be collected during a time period. The performance metrics and the implementation attributes collected may be input to a machine learning model configured to output a second set of tunable parameter settings for the distributed application, and the second set of tunable parameter settings may be provided for use with the distributed application, where performance of the distributed application may be better as compared to a performance using the first set of tunable parameter settings.

    Tunable parameter settings for a distributed application

    公开(公告)号:US09800466B1

    公开(公告)日:2017-10-24

    申请号:US14738762

    申请日:2015-06-12

    Inventor: Ashish Rangole

    Abstract: A technology is described for generating and modifying tunable parameter settings for use with a distributed application. An example method may include providing a first set of tunable parameter settings for a distributed application, where the first set of tunable parameter settings may be selected based at least in part on historical data associated with similar distributed applications. Performance metrics and implementation attributes associated with the distributed application may then be collected during a time period. The performance metrics and the implementation attributes collected may be input to a machine learning model configured to output a second set of tunable parameter settings for the distributed application, and the second set of tunable parameter settings may be provided for use with the distributed application, where performance of the distributed application may be better as compared to a performance using the first set of tunable parameter settings.

Patent Agency Ranking