-
公开(公告)号:US11200488B2
公开(公告)日:2021-12-14
申请号:US15444753
申请日:2017-02-28
Applicant: Cisco Technology, Inc.
Inventor: Pok Wong , Lokesh Ethirajan , Amol Borole , Ramesh Nampelly
Abstract: In one embodiment, a device in a network extracts words from traffic data for a particular endpoint node in the network. The device determines one or more topical categories associated with the particular endpoint node by applying a machine learning-based topical model to the extracted words. The device identifies one or more similar endpoint nodes in the network based on the determined one or more topical categories associated with the particular endpoint node and on one or more topical categories associated with the one or more similar endpoint nodes. The device determines a device type for the particular endpoint node based on a device type associated with the one or more similar endpoint nodes.
-
公开(公告)号:US20200028771A1
公开(公告)日:2020-01-23
申请号:US16037511
申请日:2018-07-17
Applicant: Cisco Technology, Inc.
Inventor: Pok Wong , Venkataramana Ragothaman
IPC: H04L12/26 , H04L29/06 , H04L12/851
Abstract: In one embodiment, a service monitors collection of telemetry data by a telemetry exporter in a network. The telemetry exporter collects the telemetry data from a plurality of interfaces via which a plurality of encrypted traffic flows flow. The telemetry exporter also sends the collected telemetry data to a traffic analysis service for analysis. The service determines that a cost associated with the collection of the telemetry data by the telemetry exporter exceeds a cost threshold. The service selects a subset of the interfaces from which telemetry data is to be captured by the telemetry exporter, based in part on a determination that the cost associated with the collection of the telemetry data exceeds the cost threshold. The service controls the telemetry exporter to collect telemetry data to for a subset of the plurality of encrypted traffic flows using the selected subset of interfaces.
-
公开(公告)号:US20140365512A1
公开(公告)日:2014-12-11
申请号:US13913623
申请日:2013-06-10
Applicant: Cisco Technology, Inc.
Inventor: Allan Thomson , Nancy Cam-Winget , Vanaja Ravi , Pok Wong
IPC: G06F17/30
CPC classification number: G06F17/30699 , G06F17/30867 , G06F17/3089
Abstract: Presented herein are object filtering techniques that optimize the communication of information over an infrastructure that supports publish-subscribe (pub-sub) and direct query (synchronization) communication. In the object filtering techniques, a single information publisher can share that information in an associated object graph with many different consumers over the infrastructure without sharing the entire object graph.
Abstract translation: 这里提出的是通过支持发布订阅(pub-sub)和直接查询(同步)通信的基础设施优化信息通信的对象过滤技术。 在对象过滤技术中,单个信息发布者可以在相关对象图中与基础架构上的许多不同的消费者共享该信息,而不共享整个对象图。
-
公开(公告)号:US11070458B2
公开(公告)日:2021-07-20
申请号:US16037511
申请日:2018-07-17
Applicant: Cisco Technology, Inc.
Inventor: Pok Wong , Venkataramana Ragothaman
IPC: H04L12/851 , H04L29/06 , H04L12/26
Abstract: In one embodiment, a service monitors collection of telemetry data by a telemetry exporter in a network. The telemetry exporter collects the telemetry data from a plurality of interfaces via which a plurality of encrypted traffic flows flow. The telemetry exporter also sends the collected telemetry data to a traffic analysis service for analysis. The service determines that a cost associated with the collection of the telemetry data by the telemetry exporter exceeds a cost threshold. The service selects a subset of the interfaces from which telemetry data is to be captured by the telemetry exporter, based in part on a determination that the cost associated with the collection of the telemetry data exceeds the cost threshold. The service controls the telemetry exporter to collect telemetry data from a subset of the plurality of encrypted traffic flows that use the selected subset of interfaces.
-
公开(公告)号:US20180247188A1
公开(公告)日:2018-08-30
申请号:US15444753
申请日:2017-02-28
Applicant: Cisco Technology, Inc.
Inventor: Pok Wong , Lokesh Ethirajan , Amol Borole , Ramesh Nampelly
CPC classification number: G06N3/08 , G06F16/3344 , G06F16/35 , G06F17/2735 , G06F17/2785 , H04L63/105 , H04W4/70 , H04W48/20
Abstract: In one embodiment, a device in a network extracts words from traffic data for a particular endpoint node in the network. The device determines one or more topical categories associated with the particular endpoint node by applying a machine learning-based topical model to the extracted words. The device identifies one or more similar endpoint nodes in the network based on the determined one or more topical categories associated with the particular endpoint node and on one or more topical categories associated with the one or more similar endpoint nodes. The device determines a device type for the particular endpoint node based on a device type associated with the one or more similar endpoint nodes.
-
公开(公告)号:US09208295B2
公开(公告)日:2015-12-08
申请号:US13913621
申请日:2013-06-10
Applicant: Cisco Technology, Inc.
Inventor: Nancy Cam-Winget , Allan Thomson , Pok Wong , Vanaja Ravi
CPC classification number: H04L63/20 , G06F9/542 , G06F21/30 , G06F21/6218 , H04L63/08 , H04L63/105 , H04L63/107
Abstract: Presented herein are techniques for adding a secure control layer to a distributed communication fabric that supports publish-subscribe (pub-sub) and direct query (synchronization) communication. The secure control layer is configured to perform policy-based authentication techniques to securely manage the exchange of data/information within the communication fabric and enable registration/discovery of new capabilities.
Abstract translation: 这里提出的技术是将安全控制层添加到支持发布订阅(pub-sub)和直接查询(同步)通信的分布式通信结构中。 安全控制层被配置为执行基于策略的认证技术以安全地管理通信结构内的数据/信息的交换并且启用新功能的注册/发现。
-
公开(公告)号:US09876824B2
公开(公告)日:2018-01-23
申请号:US14930159
申请日:2015-11-02
Applicant: Cisco Technology, Inc.
Inventor: Nancy Cam-Winget , Allan Thomson , Pok Wong , Vanaja Ravi
CPC classification number: H04L63/20 , G06F9/542 , G06F21/30 , G06F21/6218 , H04L63/08 , H04L63/105 , H04L63/107
Abstract: Presented herein are techniques for adding a secure control layer to a distributed communication fabric that supports publish-subscribe (pub-sub) and direct query (synchronization) communication. The secure control layer is configured to perform policy-based authentication techniques to securely manage the exchange of data/information within the communication fabric and enable registration/discovery of new capabilities.
-
公开(公告)号:US09378274B2
公开(公告)日:2016-06-28
申请号:US13913623
申请日:2013-06-10
Applicant: Cisco Technology, Inc.
Inventor: Allan Thomson , Nancy Cam-Winget , Vanaja Ravi , Pok Wong
IPC: G06F17/30
CPC classification number: G06F17/30699 , G06F17/30867 , G06F17/3089
Abstract: Presented herein are object filtering techniques that optimize the communication of information over an infrastructure that supports publish-subscribe (pub-sub) and direct query (synchronization) communication. In the object filtering techniques, a single information publisher can share that information in an associated object graph with many different consumers over the infrastructure without sharing the entire object graph.
Abstract translation: 这里提出的是通过支持发布订阅(pub-sub)和直接查询(同步)通信的基础设施优化信息通信的对象过滤技术。 在对象过滤技术中,单个信息发布者可以在相关对象图中与基础架构上的许多不同的消费者共享该信息,而不共享整个对象图。
-
公开(公告)号:US20160072843A1
公开(公告)日:2016-03-10
申请号:US14930159
申请日:2015-11-02
Applicant: Cisco Technology, Inc.
Inventor: Nancy Cam-Winget , Allan Thomson , Pok Wong , Vanaja Ravi
IPC: H04L29/06
CPC classification number: H04L63/20 , G06F9/542 , G06F21/30 , G06F21/6218 , H04L63/08 , H04L63/105 , H04L63/107
Abstract: Presented herein are techniques for adding a secure control layer to a distributed communication fabric that supports publish-subscribe (pub-sub) and direct query (synchronization) communication. The secure control layer is configured to perform policy-based authentication techniques to securely manage the exchange of data/information within the communication fabric and enable registration/discovery of new capabilities.
Abstract translation: 这里提出的技术是将安全控制层添加到支持发布订阅(pub-sub)和直接查询(同步)通信的分布式通信结构中。 安全控制层被配置为执行基于策略的认证技术以安全地管理通信结构内的数据/信息的交换并且启用新功能的注册/发现。
-
公开(公告)号:US20140109190A1
公开(公告)日:2014-04-17
申请号:US13913621
申请日:2013-06-10
Applicant: Cisco Technology, Inc.
Inventor: Nancy Cam-Winget , Allan Thomson , Pok Wong , Vanaja Ravi
IPC: G06F21/30
CPC classification number: H04L63/20 , G06F9/542 , G06F21/30 , G06F21/6218 , H04L63/08 , H04L63/105 , H04L63/107
Abstract: Presented herein are techniques for adding a secure control layer to a distributed communication fabric that supports publish-subscribe (pub-sub) and direct query (synchronization) communication. The secure control layer is configured to perform policy-based authentication techniques to securely manage the exchange of data/information within the communication fabric and enable registration/discovery of new capabilities.
Abstract translation: 这里提出的技术是将安全控制层添加到支持发布订阅(pub-sub)和直接查询(同步)通信的分布式通信结构中。 安全控制层被配置为执行基于策略的认证技术以安全地管理通信结构内的数据/信息的交换并且启用新功能的注册/发现。
-
-
-
-
-
-
-
-
-