Patents by Inventor Gang Duan

Gang Duan has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 10356127
    Abstract: The various implementations described herein include systems, methods and/or devices method for applying security policies in a virtualization environment. In one aspect, the method is performed at an electronic device of a plurality of electronic devices in a computing network, the electronic device having one or more processors and memory storing instructions for execution by the one or more processors. A plurality of user-space instances is instantiated. Respective properties that characterize the user-space instances are identified, and based on the identified properties, respective security policies that define authorized or unauthorized operations and data communications for user-space instances are identified. Furthermore, the identified security policies are applied so as to detect and/or remediate violations of the identified set of security policies.
    Type: Grant
    Filed: February 7, 2017
    Date of Patent: July 16, 2019
    Assignee: NEUVECTOR, INC.
    Inventors: Fei Huang, Gang Duan
  • Patent number: 10341387
    Abstract: The various implementations described herein include systems, methods and/or devices method for applying security policies in a virtualization environment. In one aspect, the method is performed at an electronic device of a plurality of electronic devices in a computing network, the electronic device having one or more processors and memory storing instructions for execution by the one or more processors. A plurality of user-space instances is instantiated. Furthermore, a security instance distinct from the plurality of user-space instances is instantiated. The security instance, which executes in user space of a respective virtual address space, monitors operations and data communications for the plurality of user-space instances. The security instance applies security policies to the monitored operations and data communications for the plurality of user-space instances so as to detect and/or remediate violations of the security policies.
    Type: Grant
    Filed: February 7, 2017
    Date of Patent: July 2, 2019
    Assignee: NEUVECTOR, INC.
    Inventors: Fei Huang, Gang Duan
  • Publication number: 20190196859
    Abstract: A security container of a container environment receives an indication of a new application container connected to a virtual switch of a server, the connection established by a container service providing operating system-level virtualization for each application container. The security container disconnects a first connection from the virtual switch to the application container at the application container. The security container connects the first connection from the virtual switch to the security container. The security container establishes a second connection from the security container to the application container. The security container receives data from the application container. The security container inspects the received data for network security. The security container forwards the received data to an intended destination via the virtual switch.
    Type: Application
    Filed: March 1, 2019
    Publication date: June 27, 2019
    Inventor: Gang Duan
  • Patent number: 10284594
    Abstract: A method for processing network traffic data includes receiving a packet, and determining whether the packet is a previously dropped packet that is being retransmitted. A method for processing network traffic content includes receiving a plurality of headers, the plurality of headers having respective first field values, and determining whether the first field values of the respective headers form a first prescribed pattern. A method for processing network traffic content includes receiving a plurality of packets, and determining an existence of a flooding attack without tracking each of the plurality of packets with a SYN bit.
    Type: Grant
    Filed: March 10, 2017
    Date of Patent: May 7, 2019
    Assignee: Fortinet, Inc.
    Inventors: Shaohong Wei, Gang Duan, Zhong Qiang Chen, Bing Xie
  • Publication number: 20190023937
    Abstract: A curable resin composition includes an acetoacetyl functional unsaturated polyester that includes a branched molecular skeleton containing olefinically unsaturated functional groups therein and acetoacetyl functional groups chemically bonded to the branched molecular skeleton. The acetoacetyl functional unsaturated polyester contains at least 2 wt % of the olefinically unsaturated functional groups, relative to the total weight of the acetoacetyl functional unsaturated polyester. The acetoacetyl functional unsaturated polyester contains at least 20 wt % of the acetoacetyl functional groups, relative to the total weight of the acetoacetyl functional unsaturated polyester. The curable resin composition can be used to formulate coating compositions.
    Type: Application
    Filed: January 19, 2017
    Publication date: January 24, 2019
    Inventors: Xiaorui Chen, Yanchang Gan, Yongzhi Tan, Xi Zhoa, Gang Duan
  • Patent number: 10185638
    Abstract: A security container of a container environment monitors a resource load in a container environment, the container environment including a container service providing operating system-level virtualization for one or more application containers connected to a virtual switch within the container environment, the one or more application containers having their traffic intercepted by the security container for inspection. The security container activates, in response to determining that the monitored resource load meets a condition in a network load policy, a new security container. The security container determines a subset of the one or more application containers to be associated with the new security container, and transfers the network connections and network sessions of the subset of the one or more application containers to the new security container.
    Type: Grant
    Filed: May 10, 2016
    Date of Patent: January 22, 2019
    Assignee: NEUVECTOR, INC.
    Inventor: Gang Duan
  • Patent number: 10160879
    Abstract: The present disclosure relates to an aqueous latex and a process for the preparation thereof. In particular, the present disclosure relates to an aqueous latex useful as a spacing extender for inorganic pigment particles. The present disclosure also relates to a dispersion of inorganic pigment particles comprising the aqueous latex and to an aqueous coating composition comprising the aqueous latex and inorganic pigment particles.
    Type: Grant
    Filed: April 20, 2016
    Date of Patent: December 25, 2018
    Assignee: SWIMC LLC
    Inventors: Jianping Sun, Tao Wang, Gang Duan, Xi Zhao, Rong Xiong
  • Patent number: 10081696
    Abstract: This disclosure is directed to a self-crosslinkable polymer and and an aqueous dispersion comprising particles of the polymer. The self-crosslinkable polymer has a molecular skeleton containing urethane linkages, and a hydrazide functional group and a carbonyl functional group capable of reacting with the hydrazide functional group chemically bonded to the molecular skeleton.
    Type: Grant
    Filed: February 12, 2016
    Date of Patent: September 25, 2018
    Assignee: The Sherwin-Williams Company
    Inventors: Xiaorui Chen, Tao Wang, Gang Duan
  • Publication number: 20180163074
    Abstract: The present disclosure refers to an aqueous stain resistant coating composition, comprising, one or more aqueous dispersions of self-crosslinkable polymeric particles; and one or more particulate solids, wherein the polymeric particles have a Tg of 10° C. or less; and wherein the particulate solids comprise a combination of sheet-like particulate solids and sphere-like particulate solids in a weight ratio of 1:1 or more; and wherein the coating composition has a pigment volume concentration of 45% or more; and the coating composition is substantially free of volatile organic compounds.
    Type: Application
    Filed: April 25, 2016
    Publication date: June 14, 2018
    Applicant: Valspar Sourcing, Inc.
    Inventors: Ronghai HUI, Gang DUAN, Rong XIONG, Stephen M. KORENKIEWICZ, Hui KOU
  • Patent number: 9973538
    Abstract: A system comprises one or more application containers, each application container including computer-readable instructions and initiated via a container service and isolated using operating system-level virtualization. The system also comprises one or more virtual switches configured to route traffic from the application containers. The system further comprises one or more security containers, each security container configured to transparently intercept traffic from the one or more application containers for analysis of network security. The system further comprises a user interface (UI) container configured to receive configuration settings from a user. The system also comprises an analytics container configured to perform analysis on data received from the one or more security containers. The system also comprises a management container configured to configure settings for the one or more security containers and the analytics container.
    Type: Grant
    Filed: May 10, 2016
    Date of Patent: May 15, 2018
    Assignee: NEUVECTOR, INC.
    Inventor: Gang Duan
  • Patent number: 9950559
    Abstract: This disclosure is directed to a multilayered laminate, comprising (a) a support substrate having at least one releasable major surface; (b) a transparent overcoat formed of a first coating composition on the releasable major surface of the support substrate, wherein the first coating composition comprises an aqueous polymer dispersion having a particle size in the range of 30 to 400 nm; (c) a stone-like topcoat system on the transparent overcoat, wherein the stone-like topcoat system comprises a multicolored spot layer and a background color layer; (d) an adhesive primer coat formed of a second coating composition on the stone-like topcoat system, wherein the second coating composition comprises an aqueous polymer dispersion selected from aqueous acrylic dispersions, aqueous organic silicone dispersions and aqueous vinyl acetate dispersions, wherein the transparent overcoat in the multilayered laminate, when released from the support substrate, a gloss of at least 60% at 60°.
    Type: Grant
    Filed: March 12, 2015
    Date of Patent: April 24, 2018
    Assignee: Valspar Sourcing, Inc.
    Inventors: Rong Xiong, Gang Duan, Hui Kou, Ronghai Hu, Hengsheng Hu
  • Publication number: 20180030483
    Abstract: A process of enhanced bio-alcohol production from molasses is provided herein. The process comprises contacting molasses with sodium benzoate, potassium sorbate or a mixture thereof followed by yeast fermentation resulting in at least 6% increased alcohol production. Also included within the scope of the present invention is a process for producing co-product containing reduced glycerol.
    Type: Application
    Filed: March 1, 2016
    Publication date: February 1, 2018
    Applicant: DANISCO US INC.
    Inventors: Gang DUAN, Vipul GOHEL, Jayarama K. SHETTY
  • Publication number: 20170353498
    Abstract: The various implementations described herein include systems, methods and/or devices method for applying security policies in a virtualization environment. In one aspect, the method is performed at an electronic device of a plurality of electronic devices in a computing network, the electronic device having one or more processors and memory storing instructions for execution by the one or more processors. A plurality of user-space instances is instantiated. Respective properties that characterize the user-space instances are identified, and based on the identified properties, respective security policies that define authorized or unauthorized operations and data communications for user-space instances are identified. Furthermore, the identified security policies are applied so as to detect and/or remediate violations of the identified set of security policies.
    Type: Application
    Filed: February 7, 2017
    Publication date: December 7, 2017
    Inventors: Fei Huang, Gang Duan
  • Publication number: 20170353499
    Abstract: The various implementations described herein include systems, methods and/or devices method for applying security policies in a virtualization environment. In one aspect, the method is performed at an electronic device of a plurality of electronic devices in a computing network, the electronic device having one or more processors and memory storing instructions for execution by the one or more processors. A plurality of user-space instances is instantiated. Furthermore, a security instance distinct from the plurality of user-space instances is instantiated. The security instance, which executes in user space of a respective virtual address space, monitors operations and data communications for the plurality of user-space instances. The security instance applies security policies to the monitored operations and data communications for the plurality of user-space instances so as to detect and/or remediate violations of the security policies.
    Type: Application
    Filed: February 7, 2017
    Publication date: December 7, 2017
    Inventors: Fei Huang, Gang Duan
  • Publication number: 20170279850
    Abstract: A method for processing network traffic data includes receiving a packet, and determining whether the packet is a previously dropped packet that is being retransmitted. A method for processing network traffic content includes receiving a plurality of headers, the plurality of headers having respective first field values, and determining whether the first field values of the respective headers form a first prescribed pattern. A method for processing network traffic content includes receiving a plurality of packets, and determining an existence of a flooding attack without tracking each of the plurality of packets with a SYN bit.
    Type: Application
    Filed: March 10, 2017
    Publication date: September 28, 2017
    Inventors: Shaohong Wei, Gang Duan, Zhong Qiang Chen, Bing Xie
  • Patent number: 9716644
    Abstract: Various embodiments illustrated and described herein include systems, methods and software for content type classification. Some such embodiments include determining a potential state of classification for packets associated with a session based at least in part on a packet associated with the session that is a packet other than the first packet of the session.
    Type: Grant
    Filed: March 12, 2013
    Date of Patent: July 25, 2017
    Assignee: Fortinet, Inc.
    Inventors: Shaohong Wei, Zhong Qiang Chen, Ping Ng, Gang Duan
  • Patent number: 9716645
    Abstract: Various embodiments illustrated and described herein include systems, methods and software for content type classification. Some such embodiments include determining a potential state of classification for packets associated with a session based at least in part on a packet associated with the session that is a packet other than the first packet of the session.
    Type: Grant
    Filed: November 22, 2013
    Date of Patent: July 25, 2017
    Assignee: Fortinet, Inc.
    Inventors: Shaohong Wei, Zhong Qiang Chen, Ping Ng, Gang Duan
  • Patent number: 9635051
    Abstract: A method for processing network traffic data includes receiving a packet, and determining whether the packet is a previously dropped packet that is being retransmitted. A method for processing network traffic content includes receiving a plurality of headers, the plurality of headers having respective first field values, and determining whether the first field values of the respective headers form a first prescribed pattern. A method for processing network traffic content includes receiving a plurality of packets, and determining an existence of a flooding attack without tracking each of the plurality of packets with a SYN bit.
    Type: Grant
    Filed: February 29, 2016
    Date of Patent: April 25, 2017
    Assignee: Fortinet, Inc.
    Inventors: Shaohong Wei, Gang Duan, Zhong Qiang Chen, Bing Xie
  • Publication number: 20170093922
    Abstract: A system comprises one or more application containers, each application container including computer-readable instructions and initiated via a container service and isolated using operating system-level virtualization. The system also comprises one or more virtual switches configured to route traffic from the application containers. The system further comprises one or more security containers, each security container configured to transparently intercept traffic from the one or more application containers for analysis of network security. The system further comprises a user interface (UI) container configured to receive configuration settings from a user. The system also comprises an analytics container configured to perform analysis on data received from the one or more security containers. The system also comprises a management container configured to configure settings for the one or more security containers and the analytics container.
    Type: Application
    Filed: May 10, 2016
    Publication date: March 30, 2017
    Inventor: Gang Duan
  • Publication number: 20170093923
    Abstract: A security container of a container environment monitors a resource load in a container environment, the container environment including a container service providing operating system-level virtualization for one or more application containers connected to a virtual switch within the container environment, the one or more application containers having their traffic intercepted by the security container for inspection. The security container activates, in response to determining that the monitored resource load meets a condition in a network load policy, a new security container. The security container determines a subset of the one or more application containers to be associated with the new security container, and transfers the network connections and network sessions of the subset of the one or more application containers to the new security container.
    Type: Application
    Filed: May 10, 2016
    Publication date: March 30, 2017
    Inventor: Gang Duan