RIGHTSIZING PERMISSION SETS IN A CLOUD-BASED 5G NETWORK

    公开(公告)号:US20230336562A1

    公开(公告)日:2023-10-19

    申请号:US18176936

    申请日:2023-03-01

    Inventor: Brian Peletz

    CPC classification number: H04L63/104 H04L63/102

    Abstract: Systems, methods, and devices for managing permissions generate a first list of excess permissions of a first user account belonging to a group, score a first account drift of the first user account based on the list of excess permissions, and generate a second list of excess permissions associated with a second user account belonging to the group. A second account drift of the second user account is scored based on the second list of excess permissions. A group consistency is scored based on the first account drift and the second account drift. A first new configuration of permissions for the first user account and the second user account is determined to increase the group consistency. Removing a permission from the first user account and the second user account implements the first new configuration. Removing the permission may include removing the first and second user accounts from the group.

    MANAGING DYNAMIC UPDATES FOR SECURITY GROUPS

    公开(公告)号:US20230336526A1

    公开(公告)日:2023-10-19

    申请号:US18160880

    申请日:2023-01-27

    Inventor: Brian Peletz

    CPC classification number: H04L63/0236 H04L63/0263 H04L61/5007

    Abstract: IP prefix lists are used as a source for filtering with near real-time updates to prefix lists associated with particular network functions. Network functions are deployed with one or more prefix lists based on communication need, a messaging queue for receiving work to updates for the prefix list, a maintenance worker, and a notification service. When a network function expands or contracts and has a change in IP scope, the listening network functions are alerted. When the event is detected, a message is transmitted by the network function's notification service. Listener queues subscribed to the upstream network function receive the change notification and invoke the maintenance worker to update the prefix list based on the message. The invoked process digests the message and adjusts the prefix list for the listening load balancer accordingly, resulting in adding or removing permitted traffic flow.

    PUBLIC IP USAGE OPTIMIZATION
    3.
    发明公开

    公开(公告)号:US20240340758A1

    公开(公告)日:2024-10-10

    申请号:US18295780

    申请日:2023-04-04

    CPC classification number: H04W40/02 H04W80/04

    Abstract: A disclosed method may include (i) disposing a network access table gateway between a multimedia service center within a cellular service network and a telecommunications server of an external wireless network provider that has partnered with the cellular service network, (ii) receiving, at the network access table gateway, a network packet that was sent from the telecommunications server of the external wireless network provider and that is directed to a public Internet Protocol address of the network access table gateway, and (iii) routing, by referencing a network access table of the network access table gateway, the network packet to a destination within the cellular service network. Related systems and computer-readable mediums are further disclosed.

    AUTO ACCOUNT PROVISIONING IN A CLOUD-BASED WIRELESS NETWORK

    公开(公告)号:US20230336563A1

    公开(公告)日:2023-10-19

    申请号:US18300884

    申请日:2023-04-14

    Inventor: Brian Peletz

    CPC classification number: H04L63/104

    Abstract: An automated process for managing groups in a cloud-based environment receives a request to create a permission group. The permission group is built in a directory system, wherein the directory system is nonnative to the cloud-based environment. The permission group from the directory system is synced with an identity management system that is nonnative to the cloud-based environment. The process includes stashing a group creation job to a queue, wherein the group creation job is configured to create the group in the cloud-based environment. The system provisions the permission group in response to consuming the group creation job from the queue.

    DYNAMIC CORE SHARDING IN A CLOUD-BASED 5G NETWORK

    公开(公告)号:US20240373319A1

    公开(公告)日:2024-11-07

    申请号:US18312169

    申请日:2023-05-04

    Inventor: Brian Peletz

    Abstract: Systems, methods, and devices perform core services on a 5G data and telephone network. A first edge data center of a first cloud network receives a communication from user equipment (UE). The communication is directed to another UE. A potential core shard from a plurality of potential core shards is selected to route the communication. The potential core shard includes a first instance at a first data center of a cloud network and a second instance at a second data center of the cloud network. The first instance is provisioned at the first data center, and the second instance is provisioned at the second data center. The communication is routed from an edge service to the first instance over a first communication channel, from the first instance to the second instance over the core communication channel, and from the second instance to the second UE over a third communication channel.

Patent Agency Ranking