INTRA-DATACENTER ATTACK DETECTION
    51.
    发明申请
    INTRA-DATACENTER ATTACK DETECTION 审中-公开
    入侵者攻击检测

    公开(公告)号:US20160359877A1

    公开(公告)日:2016-12-08

    申请号:US15145630

    申请日:2016-05-03

    Abstract: An example method can include receiving a traffic report from a sensor and using the traffic report to detect intra-datacenter flows. These intra-datacenter flows can then be compared with a description of historical flows. The description of historical flows can identify characteristics of normal and malicious flows. Based on the comparison, the flows can be classified and tagged as normal, malicious, or anomalous. If the flows are tagged as malicious or anomalous, corrective action can be taken with respect to the flows. A description of the flows can then be added to the description of historical flows.

    Abstract translation: 示例性方法可以包括从传感器接收流量报告并使用流量报告来检测数据库内中间流。 然后将这些数据中心内流与历史流的描述进行比较。 历史流程的描述可以识别正常和恶意流的特征。 根据比较,流量可以分类和标记为正常,恶意或异常。 如果流被标记为恶意或异常,则可以针对流量采取纠正措施。 然后可以将流量的描述添加到历史流程的描述中。

    GROUP-BASED POLICIES FOR INTER-DOMAIN TRAFFIC

    公开(公告)号:US20230261981A1

    公开(公告)日:2023-08-17

    申请号:US18303493

    申请日:2023-04-19

    CPC classification number: H04L45/302 H04L12/2854 H04L45/74 H04L47/20

    Abstract: In one embodiment, a method by an edge router configured to operate at a first site of a software-defined wide-area network includes receiving a data packet from a first host located in the first site, where the data packet is destined to a second host located in a second site, determining that an identifier of a second group to which the second host belongs is not available at the edge router, sending a request for an identifier of the second group to a network apparatus, where the request may comprise an address of the second host, receiving a response comprising the identifier of the second group from the network apparatus, determining that the second group is a destination group, applying one or more policies associated with the destination group to the data packet, and causing the data packet to be routed to the second host.

Patent Agency Ranking