-
公开(公告)号:US12225052B2
公开(公告)日:2025-02-11
申请号:US17877989
申请日:2022-07-31
Applicant: Cisco Technology, Inc.
Inventor: Marcelo Yannuzzi , Benjamin William Ryder , Jean Andrei Diaconu , Hervé Muyal , Hitesh S. Saijpal
Abstract: In one embodiment, a device may determine a compliance status of a communication of a type of data between a first workload and a second workload based on a data compliancy policy and a verified node location of at least one of the first workload and the second workload. The device may send, based on the compliance status of the communication, an instruction for handling the communication to at least one of a node executing the first workload and a node executing the second workload.
-
公开(公告)号:US20250036614A1
公开(公告)日:2025-01-30
申请号:US18360051
申请日:2023-07-27
Applicant: Cisco Technology, Inc.
Inventor: Joel A. Obstfeld , Oliver James Bull , Louis Gwyn Samuel , Andrew Pletcher , Marcelo Yannuzzi
IPC: G06F16/23
Abstract: Presented herein are techniques for verifying data. A method can include obtaining, from an oracle, a first data set associated with a distributed ledger. The method further includes obtaining a plurality of data sets from a plurality of sources. The method further includes generating a confidence level regarding the first data set for validating the first data set, based on comparing the first data set to the plurality of data sets. The method further includes storing the first data set in the distributed ledger based on the confidence level indicating that the plurality of data sets concurs with the first data set. The method further includes taking a remedial action without storing the first data set in the distributed ledger based on the confidence level indicating a discrepancy between the plurality of data sets and the first data set.
-
公开(公告)号:US20240012921A1
公开(公告)日:2024-01-11
申请号:US17859720
申请日:2022-07-07
Applicant: Cisco Technology, Inc.
Inventor: Marcelo Yannuzzi , Hervé MUYAL , Jean Andrei DIACONU , Frank BROCKNERS , Carlos GONCALVES PEREIRA
CPC classification number: G06F21/6218 , G06F9/543
Abstract: In one embodiment, a device may obtain a location of an endpoint that communicates with an application service. The device may match the location of the endpoint to a data compliance policy. The device may identify sensitive data within the application service to which the data compliance policy applies. The device may configure the application service to permit the endpoint to at least one of access or send the sensitive data when permitted by the data compliance policy.
-
公开(公告)号:US20220222609A1
公开(公告)日:2022-07-14
申请号:US17147152
申请日:2021-01-12
Applicant: Cisco Technology, Inc.
Inventor: Marcelo Yannuzzi , Joel Abraham Obstfeld , Franciscus Johannes Marcellus van Lingen , Anuj Jain
Abstract: According to one or more embodiments of the disclosure, a service deploys a first service connector to a first deployment network of a first organization and a second service connector to a second deployment network of a second organization. The service receives a selected visibility offering by the first organization and a selected visibility intent for the second organization. The service determines a data sharing policy by matching the selected visibility offering by the first organization to the selected visibility intent for the second organization. The service configures the first service connector to capture data specified by the data sharing policy from the first deployment network and provide that data to the second service connector.
-
公开(公告)号:US20240394107A1
公开(公告)日:2024-11-28
申请号:US18324000
申请日:2023-05-25
Applicant: Cisco Technology, Inc.
Inventor: Carlos Pignataro , Nagendra Kumar Nainar , Marcelo Yannuzzi , Ayan Banerjee
Abstract: Devices, systems, methods, and processes for sustainably reallocating resources based on within a plurality of computing nodes of a network, such as a managed network are described herein. Each computing node may be configured to transmit infrastructure data to an infrastructure monitor or ecosystem management tool. Additional sustainability data may also be accessed either internally or externally. The infrastructure data and sustainability data may be utilized to generate one or more scores that can be evaluated against each other. These scores may be configured to reflect various conditions or facts about the computing nodes including the overall sustainability. In order to increase sustainability levels, a variety of different resource configurations can be generated and evaluated against each other and the current configuration. When a more sustainable configuration is located, it may be applied by moving resources from originating computing nodes to destination computing nodes to achieve increased sustainability goals.
-
公开(公告)号:US20240273203A1
公开(公告)日:2024-08-15
申请号:US18326402
申请日:2023-05-31
Applicant: Cisco Technology, Inc.
Inventor: Mirko Raca , Marcelo Yannuzzi , Jeffrey M. Napper , Hendrikus G. P. Bosch
CPC classification number: G06F21/566 , G06F21/552 , G06F21/577 , G06F2221/033
Abstract: In one embodiment, a method for detecting an unknown attack vector, by a system, includes receiving a marked span that has been flagged for inspection. The method further includes conducting a root cause analysis to determine if the marked span should be classified as an attack. In response to a determination that the marked span should be classified as an attack, the method further includes determining whether the marked span engaged with data corresponding to one or more application services defining the marked span. The method further includes designating the data corresponding to the one or more application services as compromised in response to a determination that the marked span did engage with said data.
-
公开(公告)号:US20240039958A1
公开(公告)日:2024-02-01
申请号:US17877508
申请日:2022-07-29
Applicant: Cisco Technology, Inc.
Inventor: Marcelo Yannuzzi , Benjamin William RYDER , Jean Andrei DIACONU , Hervé MUYAL , Hitesh S. SAIJPAL
IPC: H04L9/40
CPC classification number: H04L63/20
Abstract: In one embodiment, a device may obtain an identifier of a proof of location process (PLP) and an identifier of a node where the PLP is executed. The device may receive a query from a compliance engine for a proof of location of the node where the PLP is executed. The device may identify, based on the identifier of the PLP and the identifier of the node, a physical location of the node. The device may provide, to the compliance engine, a response to the query that is indicative of the physical location of the node, wherein the compliance engine enforces one or more data compliance policies with respect to a workload executed by the node and based on the physical location of the node.
-
公开(公告)号:US20240037254A1
公开(公告)日:2024-02-01
申请号:US17877495
申请日:2022-07-29
Applicant: Cisco Technology, Inc.
Inventor: Marcelo Yannuzzi , Arash Salarian , Herve Muyal , Jean Andrei Diaconu , Jelena Kljujic , Carlos Goncalves Pereira
IPC: G06F21/62 , G06F3/04847 , G06F40/279 , G06F40/166
CPC classification number: G06F21/6209 , G06F3/04847 , G06F40/279 , G06F40/166 , G06Q50/265
Abstract: In one embodiment, a device may extract, from one or more bodies of text, a data usage restriction for a particular type of data. The device may send, to a user interface, the data usage restriction extracted from the one or more bodies of text for presentation for a user. The device may receive, via the user interface, feedback from the user regarding the data usage restriction. The device may generate a data compliance constraint that controls how an application service handles the particular type of data, based on the data usage restriction and the feedback from the user.
-
公开(公告)号:US20240012918A1
公开(公告)日:2024-01-11
申请号:US17859693
申请日:2022-07-07
Applicant: Cisco Technology, Inc.
Inventor: Marcelo Yannuzzi , Herve Muyal , Jean Andrei Diaconu , Frank Brockners , Carlos Goncalves Pereira
CPC classification number: G06F21/6209 , G06F9/543
Abstract: In one embodiment, a device obtains program code of an application that defines annotations denoting a plurality of data types handled by the application. The device determines, for each of the plurality of data types, an association between that data type and a category of sensitive data. The device creates, based on the association for each of the plurality of data types, a protection binding that defines a data handling scope bonded to the association between that data type and its associated category of sensitive data. The device causes data compliance policies to be applied to the application according to its corresponding associations and protection bindings.
-
公开(公告)号:US11829924B2
公开(公告)日:2023-11-28
申请号:US17147152
申请日:2021-01-12
Applicant: Cisco Technology, Inc.
Inventor: Marcelo Yannuzzi , Joel Abraham Obstfeld , Franciscus Johannes Marcellus van Lingen , Anuj Jain
IPC: G06Q10/083 , G06Q10/0637 , G06Q10/087
CPC classification number: G06Q10/083 , G06Q10/0637 , G06Q10/087
Abstract: According to one or more embodiments of the disclosure, a service deploys a first service connector to a first deployment network of a first organization and a second service connector to a second deployment network of a second organization. The service receives a selected visibility offering by the first organization and a selected visibility intent for the second organization. The service determines a data sharing policy by matching the selected visibility offering by the first organization to the selected visibility intent for the second organization. The service configures the first service connector to capture data specified by the data sharing policy from the first deployment network and provide that data to the second service connector.
-
-
-
-
-
-
-
-
-