Handling pre-existing containers under group-level encryption

    公开(公告)号:US11991272B2

    公开(公告)日:2024-05-21

    申请号:US17547511

    申请日:2021-12-10

    申请人: SAP SE

    发明人: Dirk Thomsen

    IPC分类号: H04L9/00 G06F16/23 H04L9/08

    摘要: Computer-readable media, methods, and systems are disclosed for tenant-specific encryption of container in connection with a database employing group-level encryption. An encryption group identifier may be assigned to container. The encryption group identifier may define how the container is encrypted. A container entry corresponding to the container may be created. A commit operation may be received for committing the assignment of the encryption group identifier to the container. A job may be initialized for encryption the container according to the encryption group identifier. The container may be flagged as modified. A flush operation may be initiated whereby the container is re-encrypted according to the encryption group identifier. Once flushing is complete, the container entry may be deleted.

    Backup and recovery under group-level encryption

    公开(公告)号:US11977457B2

    公开(公告)日:2024-05-07

    申请号:US17546406

    申请日:2021-12-09

    申请人: SAP SE

    发明人: Dirk Thomsen

    IPC分类号: G06F11/14 G06F21/60 G06F21/64

    摘要: Computer-readable media, methods, and systems are disclosed for processing backup and recovery of pages in an in-memory database system employing tenant-based, group-level encryption for a plurality of tenants. Page metadata for a page may be collected. The page may comprise a header and a set of page contents. The page metadata may be stored with the page header. When a backup request is received, the page may be loaded into a backup stream. The page may be loaded with the header unencrypted and the page contents encrypted. When a recovery request is received, the data page may be retrieved from the backup stream. A converter may be rebuilt using the page metadata. The data page may then be written to the main memory of the database system. The page contents may be decrypted by the converter.

    Systems and method for propagating route information

    公开(公告)号:US11962497B2

    公开(公告)日:2024-04-16

    申请号:US18305823

    申请日:2023-04-24

    摘要: Techniques disclosed herein provide a method and systems for installing routes by a route reflect (RR) device when the tunnel RIB of the RR device does not include any tunnel labels definitions. The unicast routing information base (RIB) of route reflector (RR) device is configured to include a next hop associated with a first network device. When the RR device receives a route from the first network device that comprises a tunnel label for reaching the second network device, the RR device resolves the next hop of the received route using the unicast RIB of the RR device. In response to the resolving, the RR device forwards the route to a third network device (e.g., identified by an export route target of the RR device).

    Selecting and deduplicating forwarding equivalence classes

    公开(公告)号:US11962485B2

    公开(公告)日:2024-04-16

    申请号:US18159623

    申请日:2023-01-25

    IPC分类号: H04L45/02

    CPC分类号: H04L45/02

    摘要: Techniques for operating a network device for sharing resources in a hardware forwarding table. In some embodiments, the network device may generate groups of routes having a common set of next hops; for each group of routes of the generated groups: collect resilient adjacencies associated with routes in the group; assemble pairs of the collected resilient adjacencies; and determine a number of differences between resilient adjacencies in each of the assembled pairs. The network device may further order the assembled pairs based on the number of differences, identify a pair of resilient adjacencies associated with a lowest number of differences; select a resilient adjacency of the identified pair of resilient adjacencies; program one or more routes associated with the selected resilient adjacency, to refer to the other resilient adjacency of the identified pair of resilient adjacencies; and remove an entry associated with the selected resilient adjacency from a forwarding table.

    Transient master data
    7.
    发明授权

    公开(公告)号:US11960440B2

    公开(公告)日:2024-04-16

    申请号:US17388992

    申请日:2021-07-29

    申请人: SAP SE

    摘要: Transient product master data may be used to represent temporarily used objects and resources. Instead of generating complete master data upfront, a placeholder is used in a tracking document for the temporary use. A tracking document for the temporary use includes a placeholder reference. When the product to be used temporarily is selected and ready to be physically moved, attributes and other information of the product may be sent to a management system via an interface. This information may be used to automatically generate transient material master data that is accessible using a reference. This reference may be used to update the placeholder reference in the tracking document and it may be used in further tracking documents.

    Detecting duplicate network device identifiers for routing protocols

    公开(公告)号:US11943138B1

    公开(公告)日:2024-03-26

    申请号:US17953284

    申请日:2022-09-26

    IPC分类号: H04L45/02 H04L45/12 H04L45/42

    摘要: Embodiments of the present disclosure include techniques for detecting duplicate network device identifiers for routing protocols. A network device may receive a link state packet comprising a first network device identifier for use in a routing protocol. The network device may, upon determining that the link state packet satisfies a set of conditions, start a timer. The network device may, while the timer has not elapsed, maintain a count value of link state packets received that satisfy the set of conditions. The network device may, when the timer has elapsed, determine, based on the count value and a defined threshold value, that a second network device in the network is configured with a second network device identifier for use in the routing protocol that is the same as the first network device identifier.