MX2017003826A - Sistema de gestion de trafico distribuido y tecnicas. - Google Patents

Sistema de gestion de trafico distribuido y tecnicas.

Info

Publication number
MX2017003826A
MX2017003826A MX2017003826A MX2017003826A MX2017003826A MX 2017003826 A MX2017003826 A MX 2017003826A MX 2017003826 A MX2017003826 A MX 2017003826A MX 2017003826 A MX2017003826 A MX 2017003826A MX 2017003826 A MX2017003826 A MX 2017003826A
Authority
MX
Mexico
Prior art keywords
policy data
techniques
assets
approaches
mechanisms
Prior art date
Application number
MX2017003826A
Other languages
English (en)
Other versions
MX363982B (es
Inventor
Chan Jason
Udupi Poornaprajna
MADAPPA Shashi
Original Assignee
Netflix Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Netflix Inc filed Critical Netflix Inc
Publication of MX2017003826A publication Critical patent/MX2017003826A/es
Publication of MX363982B publication Critical patent/MX363982B/es

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0245Filtering by information in the payload
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/20Information retrieval; Database structures therefor; File system structures therefor of structured data, e.g. relational data
    • G06F16/22Indexing; Data structures therefor; Storage structures
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0209Architectural arrangements, e.g. perimeter networks or demilitarized zones
    • H04L63/0218Distributed architectures, e.g. distributed firewalls
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1408Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • Theoretical Computer Science (AREA)
  • Data Mining & Analysis (AREA)
  • Databases & Information Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Software Systems (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)
  • Traffic Control Systems (AREA)

Abstract

Se divulgan enfoques, técnicas y mecanismos para implementar un cortafuegos distribuido; en una modalidad, muchos mensajes entrantes de políticas de activos de diferentes computadoras basados en datos de políticas locales; estos datos de políticas locales están sincronizados con datos de políticas globales; los datos de políticas globales son generados por uno o más analizadores separados; cada analizador tiene acceso a registros de mensajes, o información derivada de los mismos, para grupos de activos de computadora, y por lo tanto puede generar políticas basadas en inteligencia de un grupo completo en oposición a un activo aislado; entre otros efectos, algunos de los enfoques, técnicas y mecanismos pueden ser efectivos incluso en ambientes de computación con supervisión limitada sobre la superficie de ataque, y/o ambientes de computación en los cuales los activos pueden requerir la toma de decisiones independientes con respecto a la forma en que se debieran manejar los mensajes entrantes, considerando la latencia y/o no confiabilidad en conexiones con otros componentes del sistema.
MX2017003826A 2014-09-24 2015-09-23 Sistema de gestion de trafico distribuido y tecnicas. MX363982B (es)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US14/495,631 US9621588B2 (en) 2014-09-24 2014-09-24 Distributed traffic management system and techniques
PCT/US2015/051783 WO2016049228A1 (en) 2014-09-24 2015-09-23 Distributed traffic management system and techniques

Publications (2)

Publication Number Publication Date
MX2017003826A true MX2017003826A (es) 2018-01-12
MX363982B MX363982B (es) 2019-04-10

Family

ID=54289094

Family Applications (1)

Application Number Title Priority Date Filing Date
MX2017003826A MX363982B (es) 2014-09-24 2015-09-23 Sistema de gestion de trafico distribuido y tecnicas.

Country Status (10)

Country Link
US (3) US9621588B2 (es)
EP (1) EP3198839B1 (es)
JP (1) JP6785225B2 (es)
KR (1) KR102390765B1 (es)
AU (2) AU2015320692B2 (es)
CA (2) CA2962228C (es)
DK (1) DK3198839T3 (es)
MX (1) MX363982B (es)
SG (1) SG11201702314YA (es)
WO (1) WO2016049228A1 (es)

Families Citing this family (27)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10680957B2 (en) 2014-05-28 2020-06-09 Cavium International Method and apparatus for analytics in a network switch
US9251221B1 (en) * 2014-07-21 2016-02-02 Splunk Inc. Assigning scores to objects based on search query results
US9621588B2 (en) 2014-09-24 2017-04-11 Netflix, Inc. Distributed traffic management system and techniques
US10097436B2 (en) * 2014-10-23 2018-10-09 Covenant Eyes, Inc. Tunneled monitoring service and method
US9697349B2 (en) 2014-10-26 2017-07-04 Microsoft Technology Licensing, Llc Access blocking for data loss prevention in collaborative environments
US9871733B2 (en) * 2014-11-13 2018-01-16 Cavium, Inc. Policer architecture
US9836598B2 (en) * 2015-04-20 2017-12-05 Splunk Inc. User activity monitoring
US20170170990A1 (en) * 2015-12-15 2017-06-15 Microsoft Technology Licensing, Llc Scalable Tenant Networks
US10778645B2 (en) 2017-06-27 2020-09-15 Microsoft Technology Licensing, Llc Firewall configuration manager
US11662910B2 (en) * 2018-02-02 2023-05-30 International Business Machines Corporation Workload and interface cognizant heat-tiered storage
US10447592B2 (en) * 2018-02-08 2019-10-15 Ricoh Company, Ltd. Output device discovery using network switches
CN108429760A (zh) * 2018-03-28 2018-08-21 江苏满运软件科技有限公司 基于网关边际服务的用户请求跟踪方法
WO2019201458A1 (en) * 2018-04-17 2019-10-24 Telefonaktiebolaget Lm Ericsson (Publ) Methods, nodes and operator network for enabling management of an attack towards an application
CN109101334A (zh) * 2018-06-29 2018-12-28 中译语通科技股份有限公司 一种面向Zuul网关的微服务并发控制方法
KR101951208B1 (ko) * 2018-09-28 2019-02-25 주식회사 루터스시스템 방화벽에이전트를 이용해 네트워크 트래픽을 감시하는 방화벽 시스템
US20200106793A1 (en) * 2018-10-02 2020-04-02 Olympus Infotech, LLC Methods, systems, and computer program products for continuous cyber risk monitoring
CN109714193B (zh) * 2018-12-05 2022-01-18 国云科技股份有限公司 一种基于zuul路由转发方式接管对象存储服务的方法
CN110086820B (zh) * 2019-05-06 2021-05-11 江苏亨通工控安全研究院有限公司 一种资产信息安全管理系统与方法
CN110190994B (zh) * 2019-05-24 2021-05-28 湖南戎腾网络科技有限公司 一种基于报文缓冲的无损流量串接管理方法
US11489860B2 (en) * 2019-10-01 2022-11-01 Microsoft Technology Licensing, Llc Identifying similar assets across a digital attack surface
US11516135B2 (en) * 2020-01-19 2022-11-29 Mellanox Technologies, Ltd. Global policers
US11711445B2 (en) * 2020-09-16 2023-07-25 Netflix, Inc. Configurable access-based cache policy control
US11159576B1 (en) 2021-01-30 2021-10-26 Netskope, Inc. Unified policy enforcement management in the cloud
US11777993B2 (en) 2021-01-30 2023-10-03 Netskope, Inc. Unified system for detecting policy enforcement issues in a cloud-based environment
US11848949B2 (en) * 2021-01-30 2023-12-19 Netskope, Inc. Dynamic distribution of unified policies in a cloud-based policy enforcement system
US11894973B2 (en) 2022-03-10 2024-02-06 Ricoh Company, Ltd. Assigning and prioritizing mediation servers for monitoring legacy devices
US11606242B1 (en) 2022-03-10 2023-03-14 Ricoh Company, Ltd. Coordinated monitoring of legacy output devices

Family Cites Families (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6530024B1 (en) * 1998-11-20 2003-03-04 Centrax Corporation Adaptive feedback security system and method
US7152240B1 (en) * 2000-07-25 2006-12-19 Green Stuart D Method for communication security and apparatus therefor
JP3797937B2 (ja) * 2002-02-04 2006-07-19 株式会社日立製作所 ネットワーク接続システム、ネットワーク接続方法、および、それらに用いられるネットワーク接続装置
DE10211081A1 (de) * 2002-03-13 2003-10-16 Siemens Ag System zur medizinischen Notversorgung und -überwachung eines Patienten
JP2003273936A (ja) 2002-03-15 2003-09-26 First Trust:Kk ファイアウォールシステム
US6715084B2 (en) 2002-03-26 2004-03-30 Bellsouth Intellectual Property Corporation Firewall system and method via feedback from broad-scope monitoring for intrusion detection
IL149583A0 (en) * 2002-05-09 2003-07-06 Kavado Israel Ltd Method for automatic setting and updating of a security policy
US20040015719A1 (en) * 2002-07-16 2004-01-22 Dae-Hyung Lee Intelligent security engine and intelligent and integrated security system using the same
US7308711B2 (en) * 2003-06-06 2007-12-11 Microsoft Corporation Method and framework for integrating a plurality of network policies
US7509673B2 (en) * 2003-06-06 2009-03-24 Microsoft Corporation Multi-layered firewall architecture
US7559082B2 (en) 2003-06-25 2009-07-07 Microsoft Corporation Method of assisting an application to traverse a firewall
JP2005071218A (ja) * 2003-08-27 2005-03-17 Nec Fielding Ltd 不正アクセス防御システム、ポリシ管理装置、不正アクセス防御方法、及びプログラム
CA2600236C (en) 2005-03-28 2014-08-12 Wake Forest University Methods, systems, and computer program products for network firewall policy optimization
US7665128B2 (en) * 2005-04-08 2010-02-16 At&T Corp. Method and apparatus for reducing firewall rules
US8244745B2 (en) 2005-12-29 2012-08-14 Nextlabs, Inc. Analyzing usage information of an information management system
WO2007098960A1 (en) * 2006-03-03 2007-09-07 Art Of Defence Gmbh Distributed web application firewall
US8881259B2 (en) * 2012-12-18 2014-11-04 Verizon Patent And Licensing Inc. Network security system with customizable rule-based analytics engine for identifying application layer violations
US9621588B2 (en) 2014-09-24 2017-04-11 Netflix, Inc. Distributed traffic management system and techniques

Also Published As

Publication number Publication date
US20160088020A1 (en) 2016-03-24
KR20170060092A (ko) 2017-05-31
US10701035B2 (en) 2020-06-30
US20180316647A1 (en) 2018-11-01
MX363982B (es) 2019-04-10
US20170201489A1 (en) 2017-07-13
US9954822B2 (en) 2018-04-24
AU2015320692A1 (en) 2017-04-13
AU2015320692B2 (en) 2019-05-02
EP3198839B1 (en) 2020-12-02
CA3207248A1 (en) 2016-03-31
US9621588B2 (en) 2017-04-11
JP6785225B2 (ja) 2020-11-18
CA2962228A1 (en) 2016-03-31
AU2019210630A1 (en) 2019-08-22
DK3198839T3 (da) 2021-02-08
KR102390765B1 (ko) 2022-04-26
JP2017534105A (ja) 2017-11-16
EP3198839A1 (en) 2017-08-02
SG11201702314YA (en) 2017-04-27
WO2016049228A1 (en) 2016-03-31
CA2962228C (en) 2023-09-19

Similar Documents

Publication Publication Date Title
MX2017003826A (es) Sistema de gestion de trafico distribuido y tecnicas.
AU2014377369B2 (en) Method and system for virtual asset assisted extrusion and intrusion detection in a cloud computing environment
EP2911078A3 (en) Security sharing system
WO2016199129A3 (en) Managing dynamic deceptive environments
WO2009154945A3 (en) Distributed security provisioning
MY190550A (en) Method and device for processing service request
WO2019075284A3 (en) Predicting performance of content and electronic messages among a system of networked computing devices
AU2015201095B2 (en) Network security system with remediation based on value of attacked assets
GB2553959A (en) Access control for data resources
MX2017004292A (es) Sistemas y metodos para proteger dispositivos de red.
EP4236411A3 (en) Content security at service layer
WO2014145076A3 (en) Crowdsourcing domain specific intelligence
WO2015116998A3 (en) Electronic transfer and obligation enforcement system
IL227598B (en) Systems and methods for identifying malicious hosts
EP4221076A3 (en) Dynamic adaptive defense for cyber-security threats
GB201314003D0 (en) An integrated intelligent server based system and method/systems adapted to facilitate fail-safe integration and/or optimised utilisation of various sensory
EP3690648A4 (en) RESOURCE PLANNING PROCESS, PLANNING SERVER, CLOUD COMPUTER SYSTEM AND STORAGE MEDIUM
BR112019006270A2 (pt) controle de conteúdo colaborativo de conteúdo de mídia
GB2541572A (en) Applications of secured memory areas and secure environments in policy-based access control systems for mobile devices
UA129597U (uk) Автоматизований цифровий спосіб надання або забезпечення спільного доступу
WO2013049618A3 (en) Methods and systems for intelligent routing of health information
WO2016073457A3 (en) Identifying a potential ddos attack using statistical analysis
WO2015029037A3 (en) Method and system handling malware
GB2555341A (en) Systems and methods for utilizing webpage scripts to segment client sessions of a website
MY171606A (en) Server and method for managing access of terminal to connection blocked reaource, and terminal

Legal Events

Date Code Title Description
FG Grant or registration