Patents by Inventor Peter Brecl

Peter Brecl has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20260143013
    Abstract: Novel tools and techniques are provided for implementing management of edge network protection service. In various embodiments, a computing system may receive a request from a customer to manage edge network protection services for at least one Internet circuit. Based on a determination that the customer has been provisioned one or more circuits that are capable of implementing edge network protection services, the computing system may present, or cause to be presented, options to select a circuit, from among the one or more circuits, for which edge network protection service should be provisioned or managed. When a selection of a first circuit is received from the customer, the computing system may automatically cause the selected first circuit to be configured to provision a new service instance of the edge network protection service or reconfigured to modify an existing service instance of the edge network protection service.
    Type: Application
    Filed: January 13, 2026
    Publication date: May 21, 2026
    Applicant: Level 3 Communications, LLC
    Inventor: Peter Brecl
  • Patent number: 12531914
    Abstract: Novel tools and techniques are provided for implementing management of edge network protection service. In various embodiments, a computing system may receive a request from a customer to manage edge network protection services for at least one Internet circuit. Based on a determination that the customer has been provisioned one or more circuits that are capable of implementing edge network protection services, the computing system may present, or cause to be presented, options to select a circuit, from among the one or more circuits, for which edge network protection service should be provisioned or managed. When a selection of a first circuit is received from the customer, the computing system may automatically cause the selected first circuit to be configured to provision a new service instance of the edge network protection service or reconfigured to modify an existing service instance of the edge network protection service.
    Type: Grant
    Filed: December 14, 2023
    Date of Patent: January 20, 2026
    Assignee: Level 3 Communications, LLC
    Inventor: Peter Brecl
  • Publication number: 20250379886
    Abstract: An automatic provisioning and configuration system for threat mitigation may be provided. Hardware and software resources may be automatically configured to designate a return path for forwarding clean data packets to a target network. A return path from a scrubbing center to the target network may be selected and configured, for example, based on the geographic location of the scrubbing center and information regarding available capacity of the return path to the target network, among other information. The system may also perform a set of dynamic checks to determine whether one or more scrubbing centers have capacity (and/or are likely to continue to have capacity) to provide an encapsulation tunnel between the scrubbing center and the target network for clean return traffic.
    Type: Application
    Filed: August 22, 2025
    Publication date: December 11, 2025
    Applicant: Level 3 Communications, LLC
    Inventor: Peter Brecl
  • Publication number: 20250365267
    Abstract: The present application describes systems and methods for automatically provisioning a domain name system (DNS) firewall service for an Internet circuit. In examples, customer premises equipment and a DNS firewall system are automatically configured to work with the Internet circuit without requiring technical knowledge or intervention by a customer.
    Type: Application
    Filed: August 7, 2025
    Publication date: November 27, 2025
    Applicant: Level 3 Communications, LLC
    Inventors: Peter Brecl, David Sanford
  • Patent number: 12483600
    Abstract: Aspects of the present disclosure involve utilizing network threat information to manage one or more security devices or policies of a communication network. The security system may receive threat intelligence data or information associated with potential threats to a communications network and process the threat intelligence data to determine one or more configurations to apply to security devices of a network. The system may then generate a rule or action to respond to the identified attack, such as a firewall rule for a firewall device to block traffic from the source of the attack. The threat intelligence information may include a confidence score indicating a calculated confidence in the identification of the malicious communications, which may be utilized by the system to determine the type of action taken on the security devices of the network in response to the information or data.
    Type: Grant
    Filed: June 13, 2024
    Date of Patent: November 25, 2025
    Assignee: Level 3 Communications, LLC
    Inventors: David Dubois, Michael Benjamin, Mark Dehus, Peter Brecl
  • Publication number: 20250337710
    Abstract: Examples of the present disclosure describe systems and methods for providing enhanced security in edge computing environments. A first aspect describes a method for moving security features dynamically applied to an application at a first deployment location to an application at a second deployment location. A second aspect describes a method for locally expanding/contracting an instance of a deployed application. A third aspect describes a method for redirected network traffic associated with detected malicious conduct from a first application deployment environment to a secured second application deployment environment. A fourth aspect describes a method for performing multi-stage network traffic filtering.
    Type: Application
    Filed: July 2, 2025
    Publication date: October 30, 2025
    Applicant: Level 3 Communications, LLC
    Inventors: Christopher Smith, Michael Benjamin, Peter Brecl
  • Patent number: 12401682
    Abstract: An automatic provisioning and configuration system for threat mitigation may be provided. Hardware and software resources may be automatically configured to designate a return path for forwarding clean data packets to a target network. A return path from a scrubbing center to the target network may be selected and configured, for example, based on the geographic location of the scrubbing center and information regarding available capacity of the return path to the target network, among other information. The system may also perform a set of dynamic checks to determine whether one or more scrubbing centers have capacity (and/or are likely to continue to have capacity) to provide an encapsulation tunnel between the scrubbing center and the target network for clean return traffic.
    Type: Grant
    Filed: January 27, 2023
    Date of Patent: August 26, 2025
    Assignee: Level 3 Communications, LLC
    Inventor: Peter Brecl
  • Patent number: 12388786
    Abstract: The present application describes systems and methods for automatically provisioning a domain name system (DNS) firewall service for an Internet circuit. In examples, customer premises equipment and a DNS firewall system are automatically configured to work with the Internet circuit without requiring technical knowledge or intervention by a customer.
    Type: Grant
    Filed: June 2, 2023
    Date of Patent: August 12, 2025
    Assignee: Level 3 Communications, LLC
    Inventors: Peter Brecl, David Sanford
  • Patent number: 12355726
    Abstract: Examples of the present disclosure describe systems and methods for providing enhanced security in edge computing environments. A first aspect describes a method for moving security features dynamically applied to an application at a first deployment location to an application at a second deployment location. A second aspect describes a method for locally expanding/contracting an instance of a deployed application. A third aspect describes a method for redirected network traffic associated with detected malicious conduct from a first application deployment environment to a secured second application deployment environment. A fourth aspect describes a method for performing multi-stage network traffic filtering.
    Type: Grant
    Filed: June 26, 2024
    Date of Patent: July 8, 2025
    Assignee: Level 3 Communications, LLC
    Inventors: Christopher Smith, Michael Benjamin, Peter Brecl
  • Publication number: 20250141871
    Abstract: The present application describes systems and methods for network-based blocking threat intelligence. An access control list (ACL) generator may modify ACLs and provide modified ACLs to provider edge routers based on the capabilities of the provider edge routers. In some cases, an additional provider edge router that is more capable of implementing longer ACLs may be used. In some cases, a collector may identify when threat communications are bypassing provider edge routers with limited ACL lengths and provide the customer an opportunity to buy a better router or access to an additional router that supports longer or additional ACLs. A threat intelligence system may update (e.g., continuously update) the ACL provided to the ACL generator, and the ACL generator may accordingly update the modified ACLs provided to the provider edge routers.
    Type: Application
    Filed: January 29, 2024
    Publication date: May 1, 2025
    Applicant: Level 3 Communications, LLC
    Inventors: Peter BRECL, Mark DEHUS
  • Publication number: 20240388567
    Abstract: Implementations include providing security services to workloads deployed across various types of network environments, such as public networks, private networks, hybrid networks, customer premise network environments, and the like, by redirecting traffic intended for the service device through a security environment of the first network. After application of the security features to the incoming traffic, the “clean” traffic may be transmitted to the service device instantiated on the separate network via a tunnel. Redirection of incoming traffic to the security-providing first network may include correlating a network address of the service device to a reserved network address of a block of reserved addresses and updating a Domain Name Server (DNS) or other address resolving system with the reserved address. The return transmission tunnel may be established between the security environment and the network address of the service device.
    Type: Application
    Filed: July 27, 2024
    Publication date: November 21, 2024
    Applicant: Level 3 Communications, LLC
    Inventors: Peter Brecl, Steven Casey, Kevin M. McBride
  • Publication number: 20240356896
    Abstract: Examples of the present disclosure describe systems and methods for providing enhanced security in edge computing environments. A first aspect describes a method for moving security features dynamically applied to an application at a first deployment location to an application at a second deployment location. A second aspect describes a method for locally expanding/contracting an instance of a deployed application. A third aspect describes a method for redirected network traffic associated with detected malicious conduct from a first application deployment environment to a secured second application deployment environment. A fourth aspect describes a method for performing multi-stage network traffic filtering.
    Type: Application
    Filed: June 26, 2024
    Publication date: October 24, 2024
    Applicant: Level 3 Communications, LLC
    Inventors: Christopher Smith, Michael Benjamin, Peter Brecl
  • Publication number: 20240340318
    Abstract: Aspects of the present disclosure involve utilizing network threat information to manage one or more security devices or policies of a communication network. The security system may receive threat intelligence data or information associated with potential threats to a communications network and process the threat intelligence data to determine one or more configurations to apply to security devices of a network. The system may then generate a rule or action to respond to the identified attack, such as a firewall rule for a firewall device to block traffic from the source of the attack. The threat intelligence information may include a confidence score indicating a calculated confidence in the identification of the malicious communications, which may be utilized by the system to determine the type of action taken on the security devices of the network in response to the information or data.
    Type: Application
    Filed: June 13, 2024
    Publication date: October 10, 2024
    Applicant: Level 3 Communications, LLC
    Inventors: David Dubois, Michael Benjamin, Mark Dehus, Peter Brecl
  • Patent number: 12081517
    Abstract: Implementations include providing security services to workloads deployed across various types of network environments, such as public networks, private networks, hybrid networks, customer premise network environments, and the like, by redirecting traffic intended for the service device through a security environment of the first network. After application of the security features to the incoming traffic, the “clean” traffic may be transmitted to the service device instantiated on the separate network via a tunnel. Redirection of incoming traffic to the security-providing first network may include correlating a network address of the service device to a reserved network address of a block of reserved addresses and updating a Domain Name Server (DNS) or other address resolving system with the reserved address. The return transmission tunnel may be established between the security environment and the network address of the service device.
    Type: Grant
    Filed: November 12, 2021
    Date of Patent: September 3, 2024
    Assignee: Level 3 Communications, LLC
    Inventors: Peter Brecl, Steven Casey, Kevin M. McBride
  • Publication number: 20240259433
    Abstract: Novel tools and techniques are provided for implementing management of edge network protection service. In various embodiments, a computing system may receive a request from a customer to manage edge network protection services for at least one Internet circuit. Based on a determination that the customer has been provisioned one or more circuits that are capable of implementing edge network protection services, the computing system may present, or cause to be presented, options to select a circuit, from among the one or more circuits, for which edge network protection service should be provisioned or managed. When a selection of a first circuit is received from the customer, the computing system may automatically cause the selected first circuit to be configured to provision a new service instance of the edge network protection service or reconfigured to modify an existing service instance of the edge network protection service.
    Type: Application
    Filed: December 14, 2023
    Publication date: August 1, 2024
    Applicant: Level 3 Communications, LLC
    Inventor: Peter Brecl
  • Patent number: 12034698
    Abstract: Examples of the present disclosure describe systems and methods for providing enhanced security in edge computing environments. A first aspect describes a method for moving security features dynamically applied to an application at a first deployment location to an application at a second deployment location. A second aspect describes a method for locally expanding/contracting an instance of a deployed application. A third aspect describes a method for redirected network traffic associated with detected malicious conduct from a first application deployment environment to a secured second application deployment environment. A fourth aspect describes a method for performing multi-stage network traffic filtering.
    Type: Grant
    Filed: December 29, 2021
    Date of Patent: July 9, 2024
    Assignee: Level 3 Communications, LLC
    Inventors: Christopher Smith, Michael Benjamin, Peter Brecl
  • Patent number: 12015644
    Abstract: Aspects of the present disclosure involve utilizing network threat information to manage one or more security devices or policies of a communication network. The security system may receive threat intelligence data or information associated with potential threats to a communications network and process the threat intelligence data to determine one or more configurations to apply to security devices of a network. The system may then generate a rule or action to respond to the identified attack, such as a firewall rule for a firewall device to block traffic from the source of the attack. The threat intelligence information may include a confidence score indicating a calculated confidence in the identification of the malicious communications, which may be utilized by the system to determine the type of action taken on the security devices of the network in response to the information or data.
    Type: Grant
    Filed: April 10, 2020
    Date of Patent: June 18, 2024
    Assignee: Level 3 Communications, LLC
    Inventors: David Dubois, Michael Benjamin, Mark Dehus, Peter Brecl
  • Publication number: 20230396584
    Abstract: The present application describes systems and methods for automatically provisioning a domain name system (DNS) firewall service for an Internet circuit. In examples, customer premises equipment and a DNS firewall system are automatically configured to work with the Internet circuit without requiring technical knowledge or intervention by a customer.
    Type: Application
    Filed: June 2, 2023
    Publication date: December 7, 2023
    Applicant: Level 3 Communications, LLC
    Inventors: Peter Brecl, David Sanford
  • Publication number: 20230300167
    Abstract: An automatic provisioning and configuration system for threat mitigation may be provided. Hardware and software resources may be automatically configured to designate a return path for forwarding clean data packets to a target network. A return path from a scrubbing center to the target network may be selected and configured, for example, based on the geographic location of the scrubbing center and information regarding available capacity of the return path to the target network, among other information. The system may also perform a set of dynamic checks to determine whether one or more scrubbing centers have capacity (and/or are likely to continue to have capacity) to provide an encapsulation tunnel between the scrubbing center and the target network for clean return traffic.
    Type: Application
    Filed: January 27, 2023
    Publication date: September 21, 2023
    Applicant: Level 3 Communications, LLC
    Inventor: Peter BRECL
  • Publication number: 20230300110
    Abstract: An automatic provisioning and configuration system for threat mitigation may be provided. Hardware and software resources may be automatically configured to designate a return path for forwarding clean data packets to a target network. A return path from a scrubbing center to the target network may be selected and configured, for example, based on the geographic location of the scrubbing center and information regarding available capacity of the return path to the target network, among other information. The system may provide for selection a list of Internet circuits already used by the customer. The system may also perform a set of dynamic checks to determine whether one or more of the Internet circuits are eligible for use for the return traffic.
    Type: Application
    Filed: January 27, 2023
    Publication date: September 21, 2023
    Applicant: Level 3 Communications, LLC
    Inventor: Peter BRECL