CONTEXT BASED RISK ASSESSMENT OF A COMPUTING RESOURCE VULNERABILITY

    公开(公告)号:US20220131888A1

    公开(公告)日:2022-04-28

    申请号:US17078603

    申请日:2020-10-23

    IPC分类号: H04L29/06

    摘要: According to an embodiment, a computer-implemented method can comprise: inspecting, using a processor, a set of container images respectively associated with pods; identifying, using the processor, a first subset of the pods that contain a vulnerability; classifying, using the processor, the first subset of the pods as primary-infected pods; generating, using the processor, a first list of namespaces in which the primary-infected pods are deployed within a network; checking, using the processor, network policies in connection with the first list of namespaces to determine secondary-suspect pods that have ability to communicate with the primary-infected pods; generating, using the processor, a list of secondary-suspect namespaces in which the secondary-suspect pods are deployed within the network; identifying, using the processor, one or more secondary-suspect pods that communicated with one or more primary-infected pods; and generating, using the processor, a list of secondary-infected pods.

    PERFORMANCE BIASED SCHEDULER EXTENDER

    公开(公告)号:US20210103468A1

    公开(公告)日:2021-04-08

    申请号:US16592078

    申请日:2019-10-03

    IPC分类号: G06F9/48

    摘要: Systems, computer-implemented methods, and computer program products that can facilitate performance biased resource scheduling based on runtime performance of a certain workload type on one or more nodes are provided. According to an embodiment, a system can comprise a memory that stores computer executable components and a processor that executes the computer executable components stored in the memory. The computer executable components can comprise a performance component that assigns performance points to different nodes based on execution of one or more workload types. The computer executable components can further comprise a scheduler extender component that modifies a scheduling decision to run a workload type on a node based on the performance points.

    Reward-based admission controller for resource requests in the cloud

    公开(公告)号:US10915369B2

    公开(公告)日:2021-02-09

    申请号:US16204108

    申请日:2018-11-29

    摘要: Technology for selecting job characteristics to determine the similarity among jobs in terms of performance. Technology based on similarity among jobs calculated by selected characteristics for determining jobs that are likely to lead to successful performance of a requested new job by a cloud. Also, technology based on similarity among jobs calculated by selected characteristics for determining jobs that are likely to lead to failure when performing a requested new job by the cloud. When the new job request is accepted, because its characteristics of the new job matches job characteristics characterized by success and/or fails to match job characteristics characterized by failure, then the new job is said to lead to a “reward” or an “expected reward” because the new job will be rewarded by being allowed to use, by an admission controller of a cloud management system, use of cloud computing resources of the cloud.

    REWARD-BASED ADMISSION CONTROLLER FOR RESOURCE REQUESTS IN THE CLOUD

    公开(公告)号:US20200174842A1

    公开(公告)日:2020-06-04

    申请号:US16204108

    申请日:2018-11-29

    IPC分类号: G06F9/50 H04L29/08 H04L12/911

    摘要: Technology for selecting job characteristics to determine the similarity among jobs in terms of performance. Technology based on similarity among jobs calculated by selected characteristics for determining jobs that are likely to lead to successful performance of a requested new job by a cloud. Also, technology based on similarity among jobs calculated by selected characteristics for determining jobs that are likely to lead to failure when performing a requested new job by the cloud. When the new job request is accepted, because its characteristics of the new job matches job characteristics characterized by success and/or fails to match job characteristics characterized by failure, then the new job is said to lead to a “reward” or an “expected reward” because the new job will be rewarded by being allowed to use, by an admission controller of a cloud management system, use of cloud computing resources of the cloud.

    Identifying harmful containers
    15.
    发明授权

    公开(公告)号:US11474905B2

    公开(公告)日:2022-10-18

    申请号:US17117183

    申请日:2020-12-10

    摘要: Methods, computer program products, and/or systems are provided that perform the following operations: obtaining data indicative of a node failure; obtaining data associated with nodes and pods started on each node; generating a causation score for each pod associated with a failed node, wherein each pod associated with the failed node is designated as a candidate pod for the node failure; determining pod rescheduling for each candidate pod associated with the failed node based, at least in part, on a pod ranking of the causation score for each pod; and providing the pod rescheduling to a node cluster to restart each pod associated with the failed node.

    Dynamic automation of selection of pipeline artifacts

    公开(公告)号:US11144289B1

    公开(公告)日:2021-10-12

    申请号:US16877599

    申请日:2020-05-19

    摘要: An artificial intelligence (AI) platform to support a continuous integration and deployment (CI/CD) pipeline for software development and operations (DevOps). One or more dependency graphs are generated based on application artifacts. A machine learning (ML) model is leveraged to capture a relationship between components in the dependency graph(s) and one or more pipeline artifacts. Responsive a change of an application artifact, the captured relationship is leveraged to identify an impact of the detected change on the pipeline artifact(s). The CI/CD pipeline is selectively optimized and executed based on the identified impact to improve the efficiency of the pipeline and the deployment time.