-
公开(公告)号:US11811622B2
公开(公告)日:2023-11-07
申请号:US17463807
申请日:2021-09-01
Applicant: Cisco Technology, Inc.
Inventor: Nagendra Kumar Nainar , Carlos M. Pignataro , David John Zacks
IPC: H04L41/5009 , H04L41/5025
CPC classification number: H04L41/5009 , H04L41/5025
Abstract: Aggregation of cross domain service level indications provide an estimate of available end to end error budget within a service chain of a network system. In some embodiments, service level indications are obtained from a plurality of sub-domains, and aggregated to determine an end to end reliability score. The end to end reliability score is then distributed one or more of the sub-domains. The sub-domains then consider whether to implement a change based on local service level indications as well as the end to end reliability score. In other embodiments, a sub-domain requests approval to implement a change from an error manager. The error manager consults the end to end reliability score to determine whether adequate margin exists in the service chain to allow the change to occur, while still meeting service level objectives of the service chain. The error manager conditionally approves the request based on the determination.
-
公开(公告)号:US20230093130A1
公开(公告)日:2023-03-23
申请号:US17479297
申请日:2021-09-20
Applicant: Cisco Technology, Inc.
Inventor: Enzo Fenoglio , David John Zacks , Zizhen Gao , Carlos M. Pignataro , Dmitry Goloubev
Abstract: A method, computer system, and computer program product are provided for detecting drift in predictive models for network devices and traffic. A plurality of streams of time-series telemetry data are obtained, the time-series telemetry data generated by network devices of a data network. The plurality of streams are analyzed to identify a subset of streams, wherein each stream of the subset of streams includes telemetry data that is substantially empirically distributed. The subset of streams of time-series data are analyzed to identify a change point. In response to identifying the change point, additional time-series data is obtained from one or more streams of the plurality of streams of time-series telemetry data. A predictive model is trained using the additional time-series data to update the predictive model and provide a trained predictive model.
-
公开(公告)号:US20230092777A1
公开(公告)日:2023-03-23
申请号:US17479237
申请日:2021-09-20
Applicant: Cisco Technology, Inc.
Inventor: Nagendra Kumar Nainar , Carlos M. Pignataro , David John Zacks , Dmitry Goloubev
Abstract: A method, computer system, and computer program product are provided for decentralized machine learning. A plurality of computing networks are identified by determining that each computing network of the plurality of computing networks satisfies a predetermined number of criteria. A decentralized learning agent is provided to each computing network, wherein the decentralized learning agent is provided with input parameters for training and is trained using training data associated with a computing network to which the decentralized learning agent is provided. A plurality of learned parameters are obtained from the plurality of computing networks, wherein each learned parameter of the plurality of learned parameters is obtained by training the decentralized learning agent provided to each respective computing network. A global model is generated based on the plurality of learned parameters.
-
公开(公告)号:US20230078197A1
公开(公告)日:2023-03-16
申请号:US17477036
申请日:2021-09-16
Applicant: Cisco Technology, Inc.
Inventor: Robert E. Barton , Jerome Henry , Vinay Saini , David John Zacks , Carlos M. Pignataro , Nagendra Kumar Nainar
Abstract: In one example, a controller obtains a request to store an object-based storage object and identifies a data sovereignty policy identifier associated with the object-based storage object. The controller queries a data sovereignty policy manager for a data sovereignty policy associated with the data sovereignty policy identifier and obtains, from the data sovereignty policy manager, an indication of the data sovereignty policy. The controller stores the object-based storage object in compliance with the data sovereignty policy.
-
公开(公告)号:US20230062502A1
公开(公告)日:2023-03-02
申请号:US17463807
申请日:2021-09-01
Applicant: Cisco Technology, Inc.
Inventor: Nagendra Kumar Nainar , Carlos M. Pignataro , David John Zacks
IPC: H04L12/24
Abstract: Aggregation of cross domain service level indications provide an estimate of available end to end error budget within a service chain of a network system. In some embodiments, service level indications are obtained from a plurality of sub-domains, and aggregated to determine an end to end reliability score. The end to end reliability score is then distributed one or more of the sub-domains. The sub-domains then consider whether to implement a change based on local service level indications as well as the end to end reliability score. In other embodiments, a sub-domain requests approval to implement a change from an error manager. The error manager consults the end to end reliability score to determine whether adequate margin exists in the service chain to allow the change to occur, while still meeting service level objectives of the service chain. The error manager conditionally approves the request based on the determination.
-
公开(公告)号:US20220255924A1
公开(公告)日:2022-08-11
申请号:US17168322
申请日:2021-02-05
Applicant: Cisco Technology, Inc.
Inventor: Frank Michaud , Christopher James Pedder , David John Zacks , Thomas Szigeti
Abstract: Disclosed are methods, systems, and non-transitory computer-readable media for detecting a presentation attack in a biometric factor domain, such as a multi-factor authentication environment. The methods, systems, and non-transitory computer-readable media comprise analyzing data relevant to a plurality of factors for evaluating whether an authentication attempt by a user is subject to the presentation attack and determining that the authentication attempt is subject to the presentation attack based on analysis of the data from the plurality of factors. The methods, systems, and non-transitory computer-readable media can detect a presentation attack even when the authentication attempt is successful.
-
公开(公告)号:US20220255923A1
公开(公告)日:2022-08-11
申请号:US17168301
申请日:2021-02-05
Applicant: Cisco Technology, Inc.
Inventor: Thomas Szigeti , Stefano Giorcelli , Frank Michaud , David John Zacks
Abstract: Disclosed are methods, systems, and non-transitory computer-readable media for utilizes a collaboration application to provide data beneficial to the authentication of the user. The present application discloses receiving at least one item of personal identifying information for a user from a primary multi-factor authentication device. The present application further discloses receiving at least one item of personal identifying information for a user from a conferencing service in which the user is engaged in a conference. The present application also discloses determining whether to authenticate the user based on the items of personal identifying information from the primary multi-factor authentication device and from the conferencing service.
-
公开(公告)号:US20220103586A1
公开(公告)日:2022-03-31
申请号:US17034241
申请日:2020-09-28
Applicant: Cisco Technology, Inc.
Inventor: Qihong Shao , David John Zacks , Yue Liu , Xinjun Zhang
Abstract: A method, computer system, and computer program product are provided for network risk analysis. A plurality of risk reports relating to a network device in a network are obtained, wherein each risk report is associated with a particular dimension of a plurality of dimensions of risk for the network device in the network. A count of the plurality of risk reports is determined for each dimension of the plurality of dimensions of risk. A regression model is applied to determine a risk value for the network device in the network based on the count of the plurality of risk reports for each dimension and based a role of the network device in the network.
-
公开(公告)号:US11188481B2
公开(公告)日:2021-11-30
申请号:US16556454
申请日:2019-08-30
Applicant: Cisco Technology, Inc.
Inventor: David John Zacks , Anoop Vetteth , Tarunesh Ahuja , Davi Gupta , Jagbir Kang
Abstract: In an implementation, a method is provided. The method may include: receiving a sensor application by a network platform, the network platform comprising a processing module and a plurality of ports, and wherein a first portion of the processing module is allocated to an operating system of the network platform; allocating a second portion of the processing module to the sensor application by the network platform; executing the sensor application by the second portion of the processing module; emulating a port of the plurality of ports by the second portion of the processing module; and allowing the executed sensor application to interact with the operating system through the emulated port.
-
公开(公告)号:US11165672B2
公开(公告)日:2021-11-02
申请号:US16549407
申请日:2019-08-23
Applicant: Cisco Technology, Inc.
Inventor: Thomas Szigeti , David John Zacks , Mark Montanez , Prakash Kaligotla
IPC: G06F15/173 , H04L12/26 , H04L12/24
Abstract: Systems, methods, and computer-readable for determining performance metrics of a network include obtaining, from a network assurance system, one or more network performance metrics, the network performance metrics corresponding to execution of one or more applications in a network domain. An Application Performance Management (APM) system provides one or more applications performance metrics, the applications performance metrics corresponding to execution of the one or more applications in an applications domain. The one or more network performance metrics are integrated with the one or more applications performance metrics to determine integrated performance metrics for the one or more applications across the network domain and the applications domain.
-
-
-
-
-
-
-
-
-