OPERATIONAL CHARACTERISTIC-BASED CONTAINER MANAGEMENT

    公开(公告)号:US20240427899A1

    公开(公告)日:2024-12-26

    申请号:US18213983

    申请日:2023-06-26

    Abstract: In some embodiments, operational characteristics-based container management may include receiving, by a device and from a container agent executing in a container environment, operational characteristics of an application instance executing in the container environment; determining, by the device and based on the operational characteristics, whether the application instance executing in the container environment is associated with a policy violation for application instances; generating, by the device, a notification of the policy violation when the device determines that the application instance is associated with the policy violation; and causing, by the device, the container environment to perform a mitigation action of the policy violation by the application instance.

    Reflection runtime protection and auditing system

    公开(公告)号:US12174941B2

    公开(公告)日:2024-12-24

    申请号:US17494952

    申请日:2021-10-06

    Abstract: In one embodiment, a method may comprise: instrumenting, by a process, runtime of a software application; detecting, by the process, a reflection call made within the runtime of the software application; determining, by the process and from the reflection call, a reflection target and a reflection caller; comparing, by the process, the reflection target, the reflection caller, and the reflection call against a security policy; and performing, by the process, one or more mitigation actions on the reflection call in response to a violation of the security policy. In another embodiment, a secure audit process first generates the security policy based on approving reflection calls, reflection targets, and reflection callers seen during a runtime of the software application in a secure environment, and then shares the security policy with local instrumentors of the software application to cause enforcement of the security policy against a local runtime of the software application.

    Sustainability-Aware Virtual Meetings

    公开(公告)号:US20240422018A1

    公开(公告)日:2024-12-19

    申请号:US18335841

    申请日:2023-06-15

    Abstract: Devices, systems, methods, and processes for conducting sustainability-aware virtual meetings are described herein. When establishing virtual meetings, each of the participants can have various devices, locations, histories, and other data associated with them. This data can be packaged together as a user profile which can be transmitted to a virtual meeting service or a host that can receive the various user profiles and generate a meeting profile that can be utilized to maximize the overall sustainability of the virtual meeting. The meeting profile can include configuration suggestions that can be transmitted out to each corresponding device of the participants to either prompt or automatically adjust one or more settings, features, or other configuration, such as energy-saving features, that can increase the overall sustainability. These conditions can be monitored during the meeting and adjusted dynamically in response to changing conditions. In response, devices can adjust configurations or alter audio/video transmissions.

    Power efficient transformer-based interface circuit to interface a differential current sinking DAC to laser anode

    公开(公告)号:US12170525B2

    公开(公告)日:2024-12-17

    申请号:US17993163

    申请日:2022-11-23

    Abstract: An interface circuit that interfaces a digital-to-analog converter (DAC) to a vertical-cavity surface emitting laser. The apparatus includes a first cascode amplifier that receives as input positive and negative differential outputs of the DAC and provides a positive amplified output and a negative amplified output, and a second cascode amplifier having a positive input and a negative input. The positive input of the second cascode amplifier being coupled to the positive amplified output of the first cascode amplifier. The second cascode amplifier is configured to generate a positive amplified current and a negative amplified current at a negative amplified output. The positive amplified current and the negative amplified current are combined and a resulting output current is provided as input to an anode of the laser. A transformer is coupled between the negative amplified output of the first cascode amplifier and the negative input of the second cascode amplifier.

    ACCESS CONTROL AND ROUTING OPTIMIZATION AT A CLOUD HEADEND IN A CLOUD-BASED SECURE ACCESS SERVICE ENVIRONMENT

    公开(公告)号:US20240414160A1

    公开(公告)日:2024-12-12

    申请号:US18807340

    申请日:2024-08-16

    Inventor: Mark A. Bakke

    Abstract: In one aspect, the present disclosure is directed to a method that includes receiving, at an edge component of a cloud-based secure access service, a corresponding access designation for each of a plurality of endpoints, each access designation specifying a type of access a corresponding endpoint has to remaining ones of the plurality of endpoints and other accessible network resources; based on the corresponding access designation of each of the plurality of endpoints, updating a routing table at the edge component, to include routing information for a subset of the plurality of endpoints having access to at least one other endpoint of the plurality of endpoints or to the other accessible network resources; and enabling routing of network traffic, via the cloud-based secure access service, between any number of the plurality of endpoints based at least in part on the routing table.

    PACKET FRAGMENTATION PREVENTION IN AN SDWAN ROUTER

    公开(公告)号:US20240414094A1

    公开(公告)日:2024-12-12

    申请号:US18208165

    申请日:2023-06-09

    Abstract: Techniques are described for detecting a change in Path Maximum Transfer Unit (PMTU) in a network and initiating a PMTU discovery process. A Bidirectional Forwarding Detection (BFD) data packet is generated having enhanced headers configured to record a largest packet sent value and a largest packet received value. The BFD data packet is sent from a first network device (such as a first router) to a second network device (such as a second router). A largest packet sent value and a largest packet received value are each recorded in the BFD data packet. If the largest data packet sent value is larger than the largest data packet received value, then a determination can be made that a path change has resulted in a reduction in PMTU which has resulted in either a data packet being fragmented, a data packet being dropped or both. A PMTU discovery can then be performed.

Patent Agency Ranking