Traffic processing for network performance and security

    公开(公告)号:US10073971B2

    公开(公告)日:2018-09-11

    申请号:US13931742

    申请日:2013-06-28

    Inventor: Navendu Jain

    Abstract: Aspects of the subject disclosure are directed towards protecting machines, such as virtual machines in a cloud datacenter, from receiving unwanted traffic, and also reducing bandwidth by eliminating redundant data transmissions. In one aspect, an agent intercepts packets from a source, and determines whether the destination is allowed to receive packets from the source, based upon a communication group membership. The agent also may drop packets based upon malware/fraud signatures. The agent also attempts to reduce bandwidth by replacing redundant content with identifiers (e.g., hashcodes), which a destination machine uses to rebuild the original content. A destination-side agent may perform the same or similar communication group membership and malware/fraud signature filtering operations, and reassemble redundancy-reduced content from received identifiers as needed.

    Knowledge Base for Analysis of Text
    43.
    发明申请

    公开(公告)号:US20180173698A1

    公开(公告)日:2018-06-21

    申请号:US15487960

    申请日:2017-04-14

    Abstract: A knowledge base can include a dictionary associated with classes of a model, e.g., an ontology. A text segment that is not found in the dictionary can be received. Feature(s) can be determined for the text segment and, based partly on providing the feature(s) to a classifier, a set of values can be determined. The distribution can include values respectively corresponding to the classes. One of the values can be greater than a predetermined threshold. That value can correspond to a class. An indication identifying the class can be presented via a user interface having functionality to provide input that the text segment is associated with the class, is not associated with the class, or is associated with another class. Based at least partly on adding a new class to the ontology, a precedence table indicating priorities between motifs defining relationships between classes of the ontology can be updated.

    CLOUD STORAGE PLATFORM PROVIDING PERFORMANCE-BASED SERVICE LEVEL AGREEMENTS

    公开(公告)号:US20170324813A1

    公开(公告)日:2017-11-09

    申请号:US15148923

    申请日:2016-05-06

    Abstract: A performance-based storage service level agreement (SLA) can be established that specifies one or more storage performance parameters. A storage allocation process can include receiving a request for a storage SLA that specifies one or more storage performance parameters, determining, for a virtual machine (VM) and based at least in part on the one or more storage performance parameters in the storage SLA: (i) a storage location among a set of candidate storage locations, and (ii) an amount of storage to allocate. The amount of storage can then be allocated at the storage location for the VM to use in making storage requests. Runtime enforcement of the storage SLA can utilize a scheduling mechanism that buffers individual storage requests into different queues that are used for meeting one or more storage performance requirements specified in storage SLA.

    IDENTIFYING ENTITIES BASED ON SENSOR DATA

    公开(公告)号:US20170311053A1

    公开(公告)日:2017-10-26

    申请号:US15135828

    申请日:2016-04-22

    Abstract: Sensor data from multiple sensors associated with a user is received. The sensors may include sensors of a smart phone, and sensors associated with other devices such as fitness trackers, video game consoles, and cameras. The sensor data is processed to identify entities such as persons, locations, and objects that may be of interest to the user. A personal digital assistant application can present information related to the identified entities to the user, and can allow the user to perform various queries with respect to the identified entities, and previously identified entities. In addition, the identified entities can be used to trigger one or more rules including recording when and where a particular entity is identified, and generating an alert when a particular entity is identified.

    HYBRID HARDWARE-SOFTWARE DISTRIBUTED THREAT ANALYSIS

    公开(公告)号:US20170250954A1

    公开(公告)日:2017-08-31

    申请号:US15054692

    申请日:2016-02-26

    CPC classification number: H04L63/0254 H04L63/1416 H04L63/1441

    Abstract: Embodiments relate to detecting and mitigating network intrusions. Packets are inspected at their source/destination hosts to identify packet trends local to the hosts. The local packet trends are combined to identify network-wide packet trends. The network-wide packet trends are used to detect anomalies or attacks, which in turn informs mitigation actions. The local inspection may be performed by reconfigurable/reprogrammable “smart” network interfaces (NICs) at each of the hosts. Local inspection involves identifying potentially suspect packet features based on statistical prevalence of recurring commonalities among the packets; pre-defined threat patterns are not required. For network-wide coherence, each host/NIC uses the same packet-identifying and occurrence-measuring algorithms. An overlay or control server collects and combines the local occurrence-measures to derive the network-wide occurrence-measures. The network-wide occurrences can be used to automatically detect and mitigate completely new types of attack packets.

    UTILIZING SEMANTIC HIERARCHIES TO PROCESS FREE-FORM TEXT
    48.
    发明申请
    UTILIZING SEMANTIC HIERARCHIES TO PROCESS FREE-FORM TEXT 审中-公开
    利用语义层次来处理自由形式的文本

    公开(公告)号:US20170004205A1

    公开(公告)日:2017-01-05

    申请号:US14788247

    申请日:2015-06-30

    Abstract: User feedback may be analyzed with semantic hierarchies. In some instances, the user feedback includes free-form text. The user feedback may be mapped to one or more semantic hierarchies that include multiple levels of nodes, where each node corresponds to a class. Information of the one or more semantic hierarchies may be mapped to an ontology model. The mapped information of the ontology model may be used to identify an actionable item for the user feedback, such as a problem, suggestion, question, or other issue. Information regarding the actionable item may be made available to an individual for evaluation of the actionable item.

    Abstract translation: 可以用语义层次分析用户反馈。 在某些情况下,用户反馈包括自由格式的文本。 用户反馈可以被映射到包括多个级别的节点的一个或多个语义层级,其中每个节点对应于一个类。 一个或多个语义层次的信息可以映射到本体模型。 本体模型的映射信息可用于识别用户反馈的可操作项目,例如问题,建议,问题或其他问题。 关于可动作项目的信息可以被提供给个人用于评估可操作项目。

    ANALYSIS OF USER TEXT
    49.
    发明申请
    ANALYSIS OF USER TEXT 有权
    用户文本分析

    公开(公告)号:US20170004184A1

    公开(公告)日:2017-01-05

    申请号:US14788695

    申请日:2015-06-30

    Abstract: Free-form text in a document can be analyzed using natural-language processing to determine actionable items specified by users in the text or to provide recommendations, e.g., by automatically analyzing texts from multiple users. Words or phrases of the text can be mapped to classes of a model. An actionable item can be determined using the mapped words or phrases that match a selected grammar pattern. Items can be ranked, e.g., based on frequency across multiple documents. In some examples, the classes can include a suggestion-indicator class or a modal-indicator class, and the selected grammar pattern can include one of those classes. In some examples, the mapping can use a dictionary. A new term not in the dictionary can be automatically associated with classes based on attributes of the new term and of terms in the dictionary, e.g., the new term's part of speech or neighboring terms.

    Abstract translation: 可以使用自然语言处理来分析文档中的自由形式的文本,以确定用户在文本中指定的可操作的项目,或者提供建议,例如通过自动分析来自多个用户的文本。 文本的单词或短语可以映射到模型的类。 可以使用与所选语法模式匹配的映射词或短语来确定可操作的项目。 可以例如基于跨多个文档的频率对项目进行排名。 在一些示例中,类可以包括建议指示符类或模态指示符类,并且所选择的语法模式可以包括这些类之一。 在一些示例中,映射可以使用字典。 不在词典中的新术语可以根据新词的属性和词典中的术语(例如新词的词性或邻近词)自动地与类相关联。

Patent Agency Ranking