-
公开(公告)号:US11916858B1
公开(公告)日:2024-02-27
申请号:US17958046
申请日:2022-09-30
申请人: Sophos Limited
发明人: John Mears , Brett Hunter Cove
IPC分类号: H04L51/214 , H04L51/212 , H04L61/5061 , H04L9/40 , H04L51/224
CPC分类号: H04L51/214 , H04L51/212 , H04L51/224 , H04L61/5061 , H04L63/10 , H04L2463/082
摘要: A method for mitigating outbound electronic message spam includes determining whether an outbound electronic message to a recipient sent from an electronic messaging account of a sender has at least a predetermined number of indicators of compromise. The outbound electronic message is sent to the recipient using an IP address from a first pool of service delivery IP addresses based on a determination that the message has less than the predetermined number of indicators of compromise. The outbound electronic message is sent to the recipient using an IP address from a second pool of service delivery IP addresses based on a determination that the message has at least the predetermined number of indicators of compromise. The method may further include providing a notification of a possible compromise of the electronic messaging account and the notification may include a request to modify a security feature of the electronic messaging account.
-
公开(公告)号:US20240064125A1
公开(公告)日:2024-02-22
申请号:US18501275
申请日:2023-11-03
发明人: Roberto Muccifora , Domenico Ficara , Amine Choukir , Anirban Karmakar , Vincent Cuissard , Sudhir Kumar Jain
IPC分类号: H04L61/5061 , H04L61/5053
CPC分类号: H04L61/5061 , H04L61/5053 , H04W88/02
摘要: Techniques are provided that rotate a device address used to identify a wireless client device on a wireless network. The wireless client device and at least one network infrastructure component identify a plurality of device addresses associated with the wireless client device. In some embodiments, the plurality of device addresses are generated via a corresponding plurality of invocations of a stateful random number generator, such as a cryptographically secure pseudorandom number generator.
-
23.
公开(公告)号:US11909719B1
公开(公告)日:2024-02-20
申请号:US17535498
申请日:2021-11-24
发明人: Jonathan Paul Kramer , Michael Erik Untereiner , Samuel Lough , John Jeffrey Schlachtenhaufen , Masood Karimi , Eric Andrew Rubin-Smith , Joshua D Leaverton , Shovan Kumar Das
IPC分类号: H04L61/5053 , H04L61/5007 , H04L61/5061 , H04L41/0686
CPC分类号: H04L61/5053 , H04L41/0686 , H04L61/5007 , H04L61/5061
摘要: Techniques and technologies for an Internet Protocol (IP) address management (IPAM) system to track and manage IP address workflows in a network. The IPAM system can be used to define and enforce management policies or rules regarding IP address management, such as allocation policies, refill policies, and so forth. For instance, the IPAM system can enforce allocation policies that define rules to allow or deny allocation of IP addresses based on types of resources for which the IP addresses are requested, registered user accounts that are requesting the IP addresses, the purpose of the resources receiving the IP addresses, and so forth. Additionally, the IPAM system can enforce refill policies that define rules for replenishing inventories of IP addresses that have been allocated for different domains in the network. The IPAM system can improve the management of IP address workflows by enforcing policy and tracking IP address workflows in networks.
-
公开(公告)号:US11909710B2
公开(公告)日:2024-02-20
申请号:US17859022
申请日:2022-07-07
发明人: Eitan Zahavi , Guy Rozenberg , Matty Kadosh , Lion Levi , Boris Pismenny , Alex Netes , Miriam Menes , Lior Hodaya Bezen , Michael Tahar
IPC分类号: H04L61/106 , H04L61/5061 , H04L61/5092
CPC分类号: H04L61/106 , H04L61/5061 , H04L61/5092
摘要: A method for communication includes provisioning each node in a network with a respective set of two or more network addresses. Each node in succession is assigned a respective network address from the respective provisioned set that has not been assigned for use by any preceding node. Upon finding for a given node that all the network addresses in the respective provisioned set were assigned to preceding nodes, the preceding nodes are searched to identify a candidate node having an additional network address in the respective provisioned set, other than the assigned respective network address, that was not yet assigned to any of the nodes. The additional network address is assigned to the candidate node instead of the respective network address that was previously assigned to the candidate node, and the assigning of the network addresses to the nodes in the succession resumes following the candidate node.
-
公开(公告)号:US11855961B2
公开(公告)日:2023-12-26
申请号:US17329827
申请日:2021-05-25
发明人: Roberto Muccifora , Domenico Ficara , Amine Choukir , Anirban Karmakar , Vincent Cuissard , Sudhir Kumar Jain
IPC分类号: H04L61/5061 , H04L61/5053 , H04W88/02
CPC分类号: H04L61/5061 , H04L61/5053 , H04W88/02
摘要: Techniques are provided that rotate a device address used to identify a wireless client device on a wireless network. The wireless client device and at least one network infrastructure component identify a plurality of device addresses associated with the wireless client device. In some embodiments, the plurality of device addresses are generated via a corresponding plurality of invocations of a stateful random number generator, such as a cryptographically secure pseudorandom number generator.
-
公开(公告)号:US11824835B1
公开(公告)日:2023-11-21
申请号:US17902978
申请日:2022-09-05
申请人: UAB 360 IT
发明人: Karolis Pabijanskas , Zenonas Funka
IPC分类号: H04L9/40 , H04L61/5061
CPC分类号: H04L63/0272 , H04L61/5061 , H04L63/0236
摘要: A method including receiving, at a VPN server from a user device during an established VPN connection between the VPN server and the user device, a data request for the VPN server to retrieve data of interest from a host device; utilizing, by the VPN server, a first exit IP address to transmit a query for retrieving the data of interest to the host device during the established VPN connection; determining, by the VPN server based at least in part on transmitting the query, that the first exit IP address is blocked by the host device; and utilizing, by the VPN server, a second exit IP address to retransmit the query for retrieving the data of interest to the host device during the established VPN connection is disclosed. Various other aspects are contemplated.
-
公开(公告)号:US20230353534A1
公开(公告)日:2023-11-02
申请号:US17731652
申请日:2022-04-28
IPC分类号: H04L61/5076 , H04L61/5007 , H04L61/5061
CPC分类号: H04L61/5076 , H04L61/5007 , H04L61/5061
摘要: A method is provided that is performed for a wireless network that includes one or more wireless client devices that may rotate their media access control (MAC) address used for wireless communication with one or more wireless access point devices in the wireless network. The method includes determining an impact of MAC address rotation by the one or more wireless client devices on operational resources of one or more networking devices or networking processes in a network infrastructure associated with the wireless network. The method further includes scheduling MAC address rotation by the one or more wireless client devices according to the impact on operational resources of the one or more networking devices or networking processes in the network infrastructure.
-
公开(公告)号:US11716309B1
公开(公告)日:2023-08-01
申请号:US17657478
申请日:2022-03-31
IPC分类号: H04L61/5084 , G06F9/455 , G06F11/20 , H04L61/5061
CPC分类号: H04L61/5084 , G06F9/45558 , G06F11/2025 , H04L61/5061 , G06F2009/45595 , G06F2201/815
摘要: Techniques are described for creating isolated pools of external, failover, and/or floating IP addresses. In one example, this disclosure describes a method including creating a plurality of virtual networks, creating a plurality of pools of external IP addresses, detecting a request to instantiate an object that identifies a specific pool from the plurality of pools of external IP addresses; and instantiating the object and configuring the object with an external IP address drawn from the specific pool. The pools of external IP addresses may be created and isolated on a per-namespace, per-service, or per-ingress basis.
-
公开(公告)号:US20230216828A1
公开(公告)日:2023-07-06
申请号:US18184096
申请日:2023-03-15
IPC分类号: H04L61/5007 , H04L61/5061
CPC分类号: H04L61/5007 , H04L61/5061 , H04L2101/668
摘要: Techniques are presented herein for providing a persistent external Internet Protocol (IP) address for extra-cluster services. One example involves initiating, in a cluster, a first pod with a label that identifies a service. The first pod is configured to provide the service to one or more network entities outside the cluster. The first pod is assigned an IP address configured for communicating outside the cluster. A mapping of the service to the IP address is stored. In response to a determination that the service has been disrupted, a second pod is initiated in the cluster with the label that identifies the service. The second pod is configured to provide the service to the one or more network entities outside the cluster. Based on the mapping and the label that identifies the service, the IP address is assigned to the second pod.
-
公开(公告)号:US11665141B1
公开(公告)日:2023-05-30
申请号:US17686952
申请日:2022-03-04
申请人: Oversee, UAB
发明人: Darjus Ilcevic , Gvidas Uzkuras
IPC分类号: H04L29/00 , H04L9/40 , H04L61/5061 , H04L12/46
CPC分类号: H04L63/0272 , H04L61/5061 , H04L63/0807 , H04L12/4641
摘要: Virtual private network (VPN) service provider infrastructure (SPI) receives a request to access a VPN from a client device. The VPN SPI selects an Internet Protocol (IP) address for access to the VPN by the client device from a pool of IP addresses. The VPN SPI provides access to the VPN for the client device via the IP address. The VPN SPI receives one or more handshake notifications from the client device. The VPN SPI determines that a threshold time period has passed since a latest-in-time handshake notification of the one or more handshake notifications. The VPN SPI disconnects the client device from the VPN in response to determining that the threshold time period has passed. The VPN SPI adds the IP address to the pool of IP addresses in response to disconnecting the client device from the VPN.
-
-
-
-
-
-
-
-
-