-
1.
公开(公告)号:US20170264637A1
公开(公告)日:2017-09-14
申请号:US15606855
申请日:2017-05-26
Applicant: Huawei Technologies Co., Ltd.
Inventor: Zechao Meng , Hewei Liu
CPC classification number: H04L63/1441 , G06F9/45558 , G06F2009/45587 , H04L63/1408 , H04L63/1416 , H04L63/1425 , H04L63/1466 , H04L69/329 , H04W12/12
Abstract: An apparatus for processing an attack behavior of a cloud application in a cloud computing system, including a policy manager configured to store a security determining rule and a malicious application processing rule, a security analyzer configured to receive application behavior data from a security detector, and send the application behavior data to a security processor when the cloud application running on the cloud host has an attack behavior, and the security processor is configured to invoke, according to the malicious application processing rule, an interface provided by a cloud controller in order to process the cloud application having an attack behavior. The apparatus performs security protection based on an application level of cloud computing, which can prevent mutual attack between different applications on a same host, and reduce impact on a normal application.
-
公开(公告)号:US20160112545A1
公开(公告)日:2016-04-21
申请号:US14983891
申请日:2015-12-30
Applicant: Huawei Technologies Co., Ltd.
Inventor: Xianjun He , John Waclawsky , Zechao Meng
IPC: H04L29/06 , H04L12/801 , H04L12/24
CPC classification number: H04L69/163 , H04L29/06 , H04L41/0843 , H04L41/12 , H04L47/127 , H04L69/161
Abstract: Embodiments of the present invention disclose a TCP link configuration method, apparatus, and device. The method includes: acquiring data information in a data packet transmitted on a target TCP link or transmission information generated in a process of transmitting the data packet; determining, according to the data information or the transmission information, a target network type of a network on which the target TCP link is located; searching a pre-established configuration library for a target TCP configuration file corresponding to the target network type; and configuring the target TCP link by using the searched target TCP configuration file. According to the method, the configured target TCP link is better adapted to a network on which the target TCP link is located; use of network bandwidth can be maximized; and TCP transmission efficiency can be improved.
Abstract translation: 本发明的实施例公开了一种TCP链路配置方法,装置和装置。 该方法包括:获取在目标TCP链路上发送的数据分组中的数据信息或在发送数据分组的过程中生成的传输信息; 根据所述数据信息或所述传输信息,确定所述目标TCP链路所在的网络的目标网络类型; 搜索与目标网络类型对应的目标TCP配置文件的预先建立的配置库; 并使用搜索到的目标TCP配置文件配置目标TCP链路。 根据该方法,配置的目标TCP链路更适合于目标TCP链路所位于的网络; 可以最大限度地利用网络带宽; 可以提高TCP传输效率。
-
公开(公告)号:US10567422B2
公开(公告)日:2020-02-18
申请号:US15606855
申请日:2017-05-26
Applicant: Huawei Technologies Co., Ltd.
Inventor: Zechao Meng , Hewei Liu
Abstract: An apparatus for processing an attack behavior of a cloud application in a cloud computing system, including a policy manager configured to store a security determining rule and a malicious application processing rule, a security analyzer configured to receive application behavior data from a security detector, and send the application behavior data to a security processor when the cloud application running on the cloud host has an attack behavior, and the security processor is configured to invoke, according to the malicious application processing rule, an interface provided by a cloud controller in order to process the cloud application having an attack behavior. The apparatus performs security protection based on an application level of cloud computing, which can prevent mutual attack between different applications on a same host, and reduce impact on a normal application.
-
公开(公告)号:US10027781B2
公开(公告)日:2018-07-17
申请号:US14983891
申请日:2015-12-30
Applicant: Huawei Technologies Co., Ltd.
Inventor: Xianjun He , John Waclawsky , Zechao Meng
IPC: H04L29/06 , H04L12/24 , H04L12/801
Abstract: Embodiments of the present invention disclose a TCP link configuration method, apparatus, and device. The method includes: acquiring data information in a data packet transmitted on a target TCP link or transmission information generated in a process of transmitting the data packet; determining, according to the data information or the transmission information, a target network type of a network on which the target TCP link is located; searching a pre-established configuration library for a target TCP configuration file corresponding to the target network type; and configuring the target TCP link by using the searched target TCP configuration file. According to the method, the configured target TCP link is better adapted to a network on which the target TCP link is located; use of network bandwidth can be maximized; and TCP transmission efficiency can be improved.
-
-
-