Patents Examined by Kyung H. Shin
  • Patent number: 11522874
    Abstract: Methods, systems, and apparatus for detecting and mitigating anomalous network traffic. With at least one processor in a network, information regarding network traffic flows is obtained and a classification model is generated based on the obtained information, the classification model comprising one or more classification rules for classifying network traffic as normal or anomalous. With the at least one processor in the network, the network traffic is classified as anomalous or normal based on the generated classification model and at least one mitigation action is initiated based on the network traffic being classified as anomalous.
    Type: Grant
    Filed: May 31, 2019
    Date of Patent: December 6, 2022
    Assignee: CHARTER COMMUNICATIONS OPERATING, LLC
    Inventor: Richard A. Compton
  • Patent number: 11522766
    Abstract: The invention concerns a method and a system for determining root-cause diagnosis of events occurring during the operation of a communication network comprising monitoring time signals representative of the operation of the network to detect the occurrence of an event relative to the network traffic, and for each detected event, during the duration of said event obtaining distributions of data on several dimensions of the network linked to said event, automatically determining an event root-cause diagnosis of the detected event, called single event diagnosis, comprising at least one element of said distributions, an element being a value taken by a network dimension having a contribution in said distributions of data, the single event diagnosis determination using rules of business logic configuration organized hierarchically, which are applied according to said hierarchy to select at least one element of said distributions, the selection of more than one element comprising machine learning clustering.
    Type: Grant
    Filed: February 10, 2021
    Date of Patent: December 6, 2022
    Assignee: EXFO Solutions SAS
    Inventors: Thierry Boussac, Fabrice Pelloin
  • Patent number: 11516184
    Abstract: Systems, methods, and computer-readable media for preserving source host context when firewall policies are applied to traffic in an enterprise network fabric. A data packet to a destination host from a source host can be received at a first border node instance in an enterprise network fabric as part of network traffic. The data packet can include a context associated with the source host. Further, the data packet can be sent to a firewall of the enterprise network fabric and can be received at a second border node instance after the firewall applies a firewall policy to the data packet. The data packet can then be selectively encapsulated with the context associated with the source host at the second border node instance for applying one or more policies to control transmission of the network traffic through the enterprise network fabric.
    Type: Grant
    Filed: September 5, 2019
    Date of Patent: November 29, 2022
    Assignee: Cisco Technology, Inc.
    Inventors: Prakash C. Jain, Sanjay Kumar Hooda, Satish Kondalam
  • Patent number: 11507459
    Abstract: A method for execution in a storage network begins by generating a set of query requests for each data segment of a plurality of data segments that includes a corresponding set of slice identifiers of a plurality of sets of slice identifiers, where each slice identifier of the corresponding set of slice identifiers includes a pillar index based on a vault affiliated with the plurality of data segments. The method continues by transmitting the set of query requests to a set of storage units affiliated with the storage network, receiving a plurality of sets of query responses from the storage units, obtaining a data identifier for slice location identification and generating a storage record that includes the data identifier and an identity of the set of storage units. The method then continues by facilitating migration of at least some encoded data slices associated with the plurality of sets of slice identifiers when the storage record compares unfavorably to a storage record requirement.
    Type: Grant
    Filed: August 23, 2021
    Date of Patent: November 22, 2022
    Assignee: Pure Storage, Inc.
    Inventors: Ahmad Alnafoosi, Andrew D. Baptist, Greg R. Dhuse, Jason K. Resch, Ilya Volvovski
  • Patent number: 11503038
    Abstract: The disclosed technology teaches keeping up with the deployment of APIs, so that Secure Access Service Edge (SASE) protection is afforded, parsing an OpenAPI specification for an API family, for identifying overall attributes of the API family. The method includes identifying resources with respective URIs within the API family and extracting usable attributes of the API resources, useful for building a connector, extracting per-activity attributes that correspond to core activities that trigger protective actions. The disclosed technology also includes applying a connector creator that performs actions including accessing a template for creating connector rules that recognize intercepted API calls and activities requested by the API calls, and that trigger the protective actions, using the template and the extracted attributes from the API resources, producing the connector rules, and storing the connector rules for use in processing intercepted APIs.
    Type: Grant
    Filed: December 22, 2021
    Date of Patent: November 15, 2022
    Assignee: Netskope, Inc.
    Inventors: Krishna Narayanaswamy, Venkataswamy Pathapati, Muhammed Shafeek
  • Patent number: 11502992
    Abstract: Some embodiments provide a local controller on a set of host computers that reduce the volume of data that is communicated between the server set and the set of host computers. The local controller executing on a particular host computer, in some embodiments, receives a portion of the namespace including only the policies (e.g., opcode) that are relevant to API-authorization processing for the applications executing on the particular host computer provided by a local agent executing on the computer to authorize the API requests based on policies and parameters. The local controller analyzes the received policies (e.g., policy opcodes) and identifies the parameters (e.g. operands), or parameter types, needed for API-authorization processing (e.g., evaluating the policy opcode upon receiving a particular API request) by the local agent. In some embodiments, the local controller performs this analysis for each updated set of policies (e.g., policy opcodes).
    Type: Grant
    Filed: June 1, 2020
    Date of Patent: November 15, 2022
    Assignee: STYRA, INC.
    Inventors: Teemu Koponen, Timothy L. Hinrichs, Torin Sandall, Stan Lagun
  • Patent number: 11500987
    Abstract: Provided is an incident effect range estimation device which estimates the range of the effect of an incident and shortens incident handling time. This incident effect range estimation device is provided with an incident origin log acquisition unit which acquires log information for the incident-originating device which is related to the occurrence of the incident, a communication destination log acquisition unit which acquires, on the basis of the log information for the incident-originating device, log information for a communication destination device which is the communication destination of the incident-originating device, and an effect range estimation unit which estimates the range of the effect of the incident on the basis of the communication destination device. The range of the effect of the incident can thereby be estimated automatically, and thus incident handling time can be shortened significantly.
    Type: Grant
    Filed: October 20, 2017
    Date of Patent: November 15, 2022
    Assignee: NEC CORPORATION
    Inventors: Daichi Hasumi, Satoshi Ikeda, Shigeyoshi Shima
  • Patent number: 11496366
    Abstract: Provided are systems and methods for detecting whether an electronic gift violates compliance of the sender or the recipient. The system may rely on company-specific compliance rules. In addition, the system may enrich or compensate for missing company-specific rules with general industry compliance rules. In one example, the method may include identifying a domain name of a message associated with a transfer of value from a sender to a recipient, detecting one or more requirements that are associated with the domain name identified from the message, determining that the transfer of value is a possible violation of a requirement from among the one or more requirements that are associated with the domain name based on content of the requirement, and displaying information about the requirement.
    Type: Grant
    Filed: May 13, 2020
    Date of Patent: November 8, 2022
    Assignee: APPLIED GRATITUDE INC.
    Inventors: Michael Yoon, Brendan Kamm
  • Patent number: 11494597
    Abstract: Techniques are disclosed for training machine learning systems. An input device receives training data comprising pairs of training inputs and training labels. A generative memory assigns training inputs to each archetype task of a plurality of archetype tasks, each archetype task representative of a cluster of related tasks within a task space and assigns a skill to each archetype task. The generative memory generates, from each archetype task, auxiliary data comprising pairs of auxiliary inputs and auxiliary labels. A machine learning system trains a machine learning model to apply a skill assigned to an archetype task to training and auxiliary inputs assigned to the archetype task to obtain output labels corresponding to the training and auxiliary labels associated with the training and auxiliary inputs assigned to the archetype task to enable scalable learning to obtain labels for new tasks for which the machine learning model has not previously been trained.
    Type: Grant
    Filed: March 20, 2020
    Date of Patent: November 8, 2022
    Assignee: SRI INTERNATIONAL
    Inventors: Aswin Nadamuni Raghavan, Jesse Hostetler, Indranil Sur, Abrar Abdullah Rahman, Sek Meng Chai
  • Patent number: 11496332
    Abstract: Provided is a group-based communication interface configured to allow users of the interface to communicate within group-based communication channels and across group-based communication channels to provide relevant information to other users efficiently and effectively. Group-based messaging communications across the plurality of group-based communication channels can be channeled to specific receiver channels providing relevant information to users of the group-based communication interface thereby increasing the efficiency and effectiveness of group-based messaging communications and the lifetime of the system.
    Type: Grant
    Filed: August 2, 2021
    Date of Patent: November 8, 2022
    Assignee: Salesforce, inc.
    Inventor: Christopher Sullivan
  • Patent number: 11489729
    Abstract: Systems and methods are provided for efficient and automated control of software permissions and access to network resources across a complex enterprise environment. An access request management (“ARM”) system may formulate a list of functions and associated parameters that may be processed by an agentless distribution system. In response to receiving the set of instructions, the agentless distribution system may generate system-specific executable instructions for performing automated control of one or more of the network resources. The agentless distribution system may formulate system-specific executable instructions for a network resource using commands that, when executed on the network resource, implement automated control in accordance with the parameters defined in the set of instructions provided by the ARM system.
    Type: Grant
    Filed: May 14, 2021
    Date of Patent: November 1, 2022
    Assignee: Bank of America Corporation
    Inventors: Robert Justin Brown, Ronald David Pfiester, Hieu Xuan Hoang, Krupali Prafulchandra Desai, Rahul Balar, Christopher Quinn, Genaro Signo
  • Patent number: 11483225
    Abstract: Technologies for providing out-of-order network packet management and selective data flow splitting include a computing device. The computing device includes circuitry to identify a service data flow associated with a set of packets to be sent to a recipient computing device. The circuitry is also to determine a target quality of service for the service data flow, determine, as a function of the target quality of service, one or more radio links on which to send the packets, including determining whether to split the service data flow over multiple radio links, and send the packets through the determined one or more radio links.
    Type: Grant
    Filed: April 16, 2019
    Date of Patent: October 25, 2022
    Assignee: Intel Corporation
    Inventors: Ahmed Soud Salem, Jerome Parron
  • Patent number: 11483383
    Abstract: A data reporting method includes generating a data uploading token by a main network node, determining, from a plurality of data-uploading network nodes waiting for data uploading, a plurality of qualified network nodes having a data uploading qualification, allowing the qualified network nodes to compete for the data uploading token, and coordinating a data uploading operation with a winning network node of the qualified network nodes that obtained the data uploading token.
    Type: Grant
    Filed: March 17, 2020
    Date of Patent: October 25, 2022
    Assignee: GUIZHOU BAISHANCLOUD TECHNOLOGY CO., LTD.
    Inventors: Zebin Zhou, Yachuan Chen, Hui Miao
  • Patent number: 11477070
    Abstract: Systems and methods for analyzing the root cause of service failures and service degradation in a telecommunications network are provided. A method, according to one implementation, includes a step of receiving any of Performance Monitoring (PM) data, standard path alarms, service PM data, standard service alarms, network topology information, and configuration logs from equipment configured to provide services in a network. The method also includes a step of automatically detecting a root cause of a service failure or signal degradation from the available PM data, standard path alarms, service PM data, standard service alarms, network topology information, and configuration logs.
    Type: Grant
    Filed: July 12, 2021
    Date of Patent: October 18, 2022
    Assignee: Ciena Corporation
    Inventors: Yinqing Pei, David Côté, Philippe Alain Ngani Sigue, Ali Mahmoudialami, Christine Tremblay, Christian Desrosiers
  • Patent number: 11470123
    Abstract: Requests can be routed in a distributed system. When a distributed system includes a core service in which a plurality of plugins run and includes a plurality of clients that run external to the core service, the core service can provide a command router that functions as a common mechanism for routing requests to the plugins. The command router can provide an external endpoint by which the external clients can submit requests to access functionality of the plugins. The command router can also provide an internal endpoint by which the plugins can submit requests to access other plugins. Employing a command router within the core service can facilitate adding and removing plugins.
    Type: Grant
    Filed: October 1, 2020
    Date of Patent: October 11, 2022
    Assignee: Dell Products L.P.
    Inventors: Srikanth Kondapi, Alexander Kucheravy, Danilo O. Tan
  • Patent number: 11463384
    Abstract: A Virtual Network Function Descriptor (VNFD) parameter may include subfields that allow a management entity to determine whether the VNFD parameter can be updated. The subfields may include a write-ability subfield that indicates whether the VNFD parameter is a dynamic/configurable VNFD parameter or a fixed/static VNFD parameter. The VNFD parameter may also include an access permission subfield that indicates which entities are authorized to modify/update the VNFD parameter. The VNFD parameter may also include an administrative priority subfield that indicates a priority of an entity that set an attribute of the VNFD parameter. The VNFD parameter may also include a constraints subfield that indicates one or more conditions that are required to occur in order for the VNFD parameter to be updated.
    Type: Grant
    Filed: May 29, 2020
    Date of Patent: October 4, 2022
    Assignee: Futurewei Technologies, Inc.
    Inventors: Haitao Xia, Zhixian Xiang, Xu Yang
  • Patent number: 11461147
    Abstract: A liaison system and corresponding method consumerize cloud computing. The system comprises a cloud job manager coupled to a first cloud service provider system, a second cloud service provider system, and a pool of consumer devices allocated for use by the liaison system for cloud computing. The cloud job manager manages a first end user request sent from a first end user device to the first cloud service provider system to perform a first computational job via cloud computing and manages the first end user request by selecting a first consumer device to perform at least a portion of the first computational job and assigning the at least a portion of the first computational job to the first consumer device selected.
    Type: Grant
    Filed: April 30, 2021
    Date of Patent: October 4, 2022
    Assignee: MARVELL ASIA PTE LTD
    Inventor: Thiagarajan Muthuganesan
  • Patent number: 11455173
    Abstract: A method for management of an artificial intelligence development platform is provided. The artificial intelligence development platform is deployed with instances of a plurality of model services, and each of the model services is provided with one or more instances. The method includes: acquiring calling information of at least one model service; determining the activity of the at least one model service according to the calling information; and at least deleting all instances of the at least one model service in response to that the determined activity meets a first condition.
    Type: Grant
    Filed: March 19, 2021
    Date of Patent: September 27, 2022
    Assignee: Beijing Baidu Netcom Science and Technology Co., Ltd.
    Inventors: Zhengxiong Yuan, En Shi, Yongkang Xie, Mingren Hu, Zhengyu Qian, Zhenfang Chu
  • Patent number: 11451457
    Abstract: A sensor delay time estimation device that includes: a memory; and a processor coupled to the memory, wherein the processor is configured to: acquire an observable required to estimate a vehicle state from a plurality of sensors that detect and output the observable, each of the plurality of sensors being different, and based on the observable for a fixed time interval acquired from each of the plurality of sensors, estimate a time delay from detection to acquisition of the observable for each of the plurality of sensors, and estimate a vehicle state for the fixed time interval.
    Type: Grant
    Filed: December 14, 2020
    Date of Patent: September 20, 2022
    Assignee: KABUSHIKI KAISHA TOYOTA CHUO KENKYUSHO
    Inventors: Daiki Mori, Yoshikazu Hattori, Hideki Sugiura
  • Patent number: 11451637
    Abstract: A method for migrating a subscriber session from a first authentication, authorization and accounting (AAA) accounting peer to a second AAA accounting peer, where the first AAA accounting peer is stateful. The method includes receiving an accounting start packet from an AAA client application, forwarding the accounting start packet to the first AAA accounting peer, receiving an accounting update or accounting stop packet from the AAA client application; and sending an accounting start packet from the AAA client application to the second AAA accounting peer, in response to a connection failure with the first AAA accounting peer.
    Type: Grant
    Filed: December 2, 2017
    Date of Patent: September 20, 2022
    Assignee: Telefonaktiebolaget LM Ericsson (publ)
    Inventors: Natarajan Venkataraman, Parag Narayanrao Pote