-
公开(公告)号:US12204668B1
公开(公告)日:2025-01-21
申请号:US17393813
申请日:2021-08-04
Applicant: Amazon Technologies, Inc.
Inventor: Eric Jason Brandwine , Rebecca Claire Weiss , Andrew Kent Warfield
Abstract: Techniques are described for enabling users to create and configure request-based policies used by a data storage system to generate custom responses to particular types of requests for users' stored data objects. The request-based policies include rules used to identify types of requests for data objects and corresponding types of responses to be generated responsive to detecting such requests. The types of responses that can be specified in such policies include responses other than simply returning a requested data object or denying a request. For example, a rule for certain types of responses can instruct the data storage system to return a dynamically generated data object, another rule can instruct the system to return a different data object than the one requested, and so forth.
-
公开(公告)号:US11516253B1
公开(公告)日:2022-11-29
申请号:US16368490
申请日:2019-03-28
Applicant: Amazon Technologies, Inc.
IPC: H04L9/40 , H04L69/326 , H04L12/46 , G06F9/54 , H04L9/32 , H04L61/4511 , H04L67/56
Abstract: Devices and methods are provided for using an identity-aware proxy to filter transmissions for virtual networks. The device may receive an encrypted application programming interface (API) call from a second device, wherein the encrypted API call is associated with a remote network resource, and wherein the device is included in a remote network which includes the remote network resource. The device may determine, based on the encrypted API call, an account associated with the remote network resource. The device may determine that the account is not authorized to access the remote network resource using the remote network. The device may send an error notification to the second device.
-
公开(公告)号:US11363012B1
公开(公告)日:2022-06-14
申请号:US16588904
申请日:2019-09-30
Applicant: Amazon Technologies, Inc.
Inventor: Jasmeet Chhabra , Rebecca Claire Weiss , Eric Robert Northup
Abstract: A customer in a computing resource provider environment, running an application on a VM instance, uses role credentials to request access to one or more web services. The request is forwarded to an enclave associated with the VM instance such that the enclave digitally signs the request and access to the one or more web services is provided.
-
公开(公告)号:US11140455B1
公开(公告)日:2021-10-05
申请号:US15619001
申请日:2017-06-09
Applicant: Amazon Technologies, Inc.
Inventor: Eric Woodruff , Akshat Aranya , Varad Joshi , Rebecca Claire Weiss
IPC: H04L29/06 , H04N21/6334 , H04N21/2187 , H04N21/236 , H04N21/643 , H04N21/2387 , H04N21/266 , H04N21/433 , H04N21/4147
Abstract: A first network namespace and second network namespace are created in a computing instance of a computer system, with the second network namespace being accessible to the first network namespace via an interface. A service is executed in the first namespace and an encoder is executed in the second namespace, with the encoder transforming media from one format to another format. Communication from the encoder to the service is regulated via the interface.
-
公开(公告)号:US10666606B2
公开(公告)日:2020-05-26
申请号:US15636523
申请日:2017-06-28
Applicant: Amazon Technologies, Inc.
Inventor: Michael Siaosi Voegele , Kevin Christopher Miller , Justin Canfield Crites , Andriy Palamarchuk , Andrew Bruce Dickinson , Christopher Carson Thomas , Rebecca Claire Weiss
IPC: H04L29/12 , H04L12/46 , H04L12/741 , H04L12/803
Abstract: A customer may request a service endpoint for a service in their virtual network on a provider network. In response, a service endpoint is generated in the customer's virtual network, a local IP address in the IP address range of the customer's virtual network is assigned to the service endpoint, and a DNS name is assigned to the service endpoint. Resources on the customer's virtual network resolve the DNS name of the service endpoint to obtain the local IP address of the service endpoint and send service requests for the service to the local IP address of the service endpoint. The service endpoint adds routing information to the service requests and sends the service requests over the network substrate to be routed to the service.
-
公开(公告)号:US10122578B1
公开(公告)日:2018-11-06
申请号:US15083164
申请日:2016-03-28
Applicant: AMAZON TECHNOLOGIES, INC.
Abstract: A system for propagating network configuration changes in a distributed computing system includes one or more processors and memory that includes instructions, that when executed by the one or more processors, cause the processors to receive a configuration propagation instructions from a client, receive a network configuration change request from the client, generate a first command instruction, and transmit the first command instruction to one or more of a plurality of network devices in accordance with the configuration propagation instruction. The first command instruction instructs the plurality of network devices to change state from a first state to a second state. The second state corresponds with a network configuration contained in the network configuration change request.
-
-
-
-
-