Online anomaly detection of vector embeddings

    公开(公告)号:US11824876B2

    公开(公告)日:2023-11-21

    申请号:US16778585

    申请日:2020-01-31

    IPC分类号: H04L9/40 G06F21/55

    CPC分类号: H04L63/1425

    摘要: Disclosed herein are system, method, and computer program product embodiments for providing an anomaly detection system. Some aspects of this disclosure include a method for detecting anomaly in a network device. The method includes determining one or more similarity values between a flow vector corresponding to a flow associated with the network device and one or more flow clusters associated with the network device. The method further includes determining a maximum similarity value as a maximum of the one or more similarity values and comparing the maximum similarity value to a threshold. The method also includes, in response to the maximum similarity value being equal to or greater than the threshold, updating a flow cluster associated with the maximum similarity value. The method also includes, in response to the maximum similarity measure being less than the threshold, detecting the anomaly in the network device.

    Root-cause analysis of event occurrences

    公开(公告)号:US11695620B2

    公开(公告)日:2023-07-04

    申请号:US18069360

    申请日:2022-12-21

    IPC分类号: H04L41/0631

    CPC分类号: H04L41/0645

    摘要: Provided herein are systems and methods for determining relationships between events occurring in networks. Notifications describing events occurring in networks can be received and processed to determine groups of network event types. A root-cause network can be generated based on the events, with the nodes of the root-cause network representing different event types and the edges of the root-cause network indicating directional, causal relationships between the nodes. A received network event can be processed to determine potential causes of the received network event based on the root-cause network and other events received by the network.

    ROOT-CAUSE ANALYSIS OF EVENT OCCURRENCES

    公开(公告)号:US20230124196A1

    公开(公告)日:2023-04-20

    申请号:US18069360

    申请日:2022-12-21

    IPC分类号: H04L41/0631

    摘要: Provided herein are systems and methods for determining relationships between events occurring in networks. Notifications describing events occurring in networks can be received and processed to determine groups of network event types. A root-cause network can be generated based on the events, with the nodes of the root-cause network representing different event types and the edges of the root-cause network indicating directional, causal relationships between the nodes. A received network event can be processed to determine potential causes of the received network event based on the root-cause network and other events received by the network.

    AUTOMATED CLOSED-LOOP ACTIONS IN A NETWORK USING A DISTRIBUTED LEDGER

    公开(公告)号:US20220263716A1

    公开(公告)日:2022-08-18

    申请号:US17735911

    申请日:2022-05-03

    摘要: Disclosed herein are system, method, and computer program product embodiments for analyzing a network. An embodiment operates by a network entity from a distributed ledger receiving a notification regarding network information received by the distributed ledger. The entity is associated with a smart contract having one or more conditions that correspond to the network information. The network information is compared with one or more conditions of the smart contract that correspond to the network information. In response to the network information meeting or exceeding a condition of the one or more conditions of the smart contract, the condition is triggered. Further, a transaction to validate an action corresponding to the condition is generated, and the transaction is sent to the distributed ledger. In response to receiving a positive validation from the distributed ledger, the action corresponding to the condition is performed.

    SHORTEST PATH BRIDGING (SPB) MULTI AREA

    公开(公告)号:US20220255841A1

    公开(公告)日:2022-08-11

    申请号:US17168900

    申请日:2021-02-05

    摘要: Disclosed herein are system, method, and computer program product aspects for multiple instance Intermediate System to Intermediate System (IS-IS or ISIS) for a multi-area fabric. A network area in a multi-area fabric includes one or more network nodes and a boundary node shared with an other network area of the multi-area fabric outside of the network area. The boundary node can include a first ISIS instance associated with the network area and a second ISIS instance associated with the other network area. The second ISIS instance can be configured to pass information associated with the other network area to the first ISIS instance.

    Gateway using multicast to unicast conversion

    公开(公告)号:US11336560B2

    公开(公告)日:2022-05-17

    申请号:US16513654

    申请日:2019-07-16

    摘要: A multicast frame directed to a plurality of devices coupled to a network can be received, where the plurality of devices comprising at least one intended recipient device and at least one unintended recipient device. A destination unicast address corresponding to an intended recipient device can be identified. The multicast frame can be converted into a unicast frame directed to the intended recipient device, the unicast frame configured with the destination unicast address. The unicast frame can be blocked from accessing the unintended recipient device. The unicast frame can be provided to the intended recipient device.