INTELLIGENT FIREWALL POLICY PROCESSOR
    1.
    发明公开

    公开(公告)号:US20240179124A1

    公开(公告)日:2024-05-30

    申请号:US18472050

    申请日:2023-09-21

    IPC分类号: H04L9/40 H04L41/16

    CPC分类号: H04L63/0245 H04L41/16

    摘要: An example network system includes processing circuitry and one or more memories coupled to the processing circuitry. The one or more memories are configured to store instructions which cause the system to obtain telemetry data, the telemetry data being associated with a plurality of applications running on a plurality of hosts. The instructions cause the system to, based on the telemetry data, determine a subset of applications of the plurality of applications that run on a first host of the plurality of hosts. The instructions cause the system to determine a subset of firewall policies of a plurality of firewall polices, each of the subset of firewall policies applying to at least one respective application of the subset of applications. The instructions cause the system to generate an indication of the subset of firewall policies and send the indication to a management plane of a distributed firewall.

    SELF-LEARNING EGRESS TRAFFIC CONTROLLER
    2.
    发明公开

    公开(公告)号:US20240179074A1

    公开(公告)日:2024-05-30

    申请号:US18472059

    申请日:2023-09-21

    IPC分类号: H04L41/16 H04L41/14

    CPC分类号: H04L41/16 H04L41/14

    摘要: An example network system includes processing circuitry and one or more memories coupled to the processing circuitry. The one or more memories are configured to store instructions which, when executed by the processing circuitry, cause the network system to receive connection data related to an egress connection of an application service of an application. The instructions cause the network system to analyze the connection data to determine that the egress connection is an anomalous connection. The instructions cause the network system to generate a notification indicative of the egress connection being an anomalous connection and send the notification to a computing device.

    SELF LEARNING FIREWALL POLICY ENFORCER
    3.
    发明公开

    公开(公告)号:US20240179158A1

    公开(公告)日:2024-05-30

    申请号:US18472092

    申请日:2023-09-21

    IPC分类号: H04L9/40 G06N5/022 G06N20/20

    摘要: An example network system includes processing circuitry and one or more memories coupled to the processing circuitry. The one or more memories are configured to store instructions which, when executed by the processing circuitry, cause the network system to obtain first traffic session metrics data and execute a machine learning model to determine a traffic prediction based on the first traffic session metrics data. The instructions cause the network system to obtain second traffic session metrics data and determine an anomaly in traffic based on a comparison of the traffic prediction and the second traffic session metrics data. The instructions cause the network system to, based on the determination of the anomaly, generate an indication of the anomaly.

    Self-Correcting Service Level Agreement Enforcer

    公开(公告)号:US20240179076A1

    公开(公告)日:2024-05-30

    申请号:US18472111

    申请日:2023-09-21

    摘要: Example systems, methods, and storage media are described. An example network system includes processing circuitry and one or more memories coupled to the processing circuitry. The one or more memories are configured to store instructions which, when executed by the processing circuitry, cause the network system to obtain telemetry data. The instructions cause the network system to determine, based on the telemetry data, that an application running on server processing circuitry does not meet at least one service level agreement (SLA) requirement, the server processing circuitry not including processing circuitry resident on a network interface card (NIC). The instructions cause the network system to, based on the application not meeting the at least one SLA requirement, determine to offload at least one component of the application from the server processing circuitry to the processing circuitry resident on the NIC.

    INTELLIGENT FIREWALL FLOW CREATOR
    9.
    发明公开

    公开(公告)号:US20240179126A1

    公开(公告)日:2024-05-30

    申请号:US18472042

    申请日:2023-09-21

    IPC分类号: H04L9/40 H04L41/16

    摘要: Example systems, methods, and storage media are described. An example network system includes processing circuitry and one or more memories coupled to the processing circuitry. The one or more memories are configured to store instructions which, when executed by the processing circuitry, cause the network system to obtain telemetry data, the telemetry data comprising indications of creations of instances of a flow. The instructions cause the network system to, based on the indications of the creations of the instances of the flow, determine a pattern of creation of the instances of the flow. The instructions cause the network system to, based on the pattern of creation of the instances of the flow, generate an action entry in a policy table for a particular instance of the flow prior to receiving a first packet of the particular instance of the flow.