Ranking services and top N rank lists

    公开(公告)号:US12072947B2

    公开(公告)日:2024-08-27

    申请号:US18140501

    申请日:2023-04-27

    申请人: Infoblox Inc.

    摘要: Techniques for ranking services and top N rank lists are disclosed. In some embodiments, a system, process, and/or computer program product for ranking services and top N rank lists includes receiving a set of network related event data, wherein the set of network related event data includes Domain Name System (DNS) related event data; aggregating the DNS related event data over a period of time and rank order by popularity; and generating a top N rank list for ranking popularity over the period of time for a set of domains using the aggregated DNS related event data and rank order by popularity.

    QUERY PRINTS (QPRINTS): TELEMETRY-BASED SIMILARITY FOR DNS

    公开(公告)号:US20230403216A1

    公开(公告)日:2023-12-14

    申请号:US18321218

    申请日:2023-05-22

    申请人: Infoblox Inc.

    摘要: Techniques for Qprints using telemetry-based similarity for DNS are provided. In some embodiments, a system/process/computer program product for Qprints using telemetry-based similarity for DNS in accordance with some embodiments includes aggregating a set of network related event data, wherein the set of network related event data includes Domain Name System (DNS) related query data; clustering the DNS related query data; and generating similarity clusters for domains based on their DNS related query data. For example, the set of network related event data can include passive DNS (pDNS) data aggregated over a period of time to express pDNS data at-scale, and similarity of the pDNS data aggregated over the period of time is quantified, within and across networks based on telemetry-based similarity for DNS using a statistical model.

    POLICY-BASED DYNAMIC VPN PROFILE SELECTION USING DNS PROTOCOL

    公开(公告)号:US20230379304A1

    公开(公告)日:2023-11-23

    申请号:US17746814

    申请日:2022-05-17

    申请人: Infoblox Inc.

    IPC分类号: H04L9/40 H04L61/4511

    摘要: Techniques for policy-based dynamic VPN profile selection using DNS protocol are provided. In some embodiments, a system/process/computer program product for policy-based dynamic VPN profile selection using DNS protocol includes receiving, at a DNS server for an enterprise network, a Domain Name System (DNS) request for a resource from an endpoint client; determining an IP address and an authentication token for the endpoint client to access the resource using a secure tunnel; and sending a DNS response, from the DNS server, including the IP address and the authentication token to the endpoint client.

    Smart whitelisting for DNS security

    公开(公告)号:US11206265B2

    公开(公告)日:2021-12-21

    申请号:US16399252

    申请日:2019-04-30

    申请人: Infoblox Inc.

    摘要: Techniques for smart whitelisting for Domain Name System (DNS) security are provided. In some embodiments, a system/process/computer program product for smart whitelisting for DNS security in accordance with some embodiments includes receiving a set of network related event data, wherein the set of network related event data includes Domain Name System (DNS) related event data; receiving a set of network related threat data, wherein the set of network related threat data includes DNS related threat data; and generating a whitelist using the set of network related event data and the set of network related threat data, wherein the whitelist includes a subset of network domains included in the DNS related event data based on a data driven model of the DNS related event data and the DNS related threat data.

    Disaggregated cloud-native network architecture

    公开(公告)号:US11036521B2

    公开(公告)日:2021-06-15

    申请号:US16663094

    申请日:2019-10-24

    申请人: Infoblox Inc.

    摘要: A cloud based network includes a plurality of nodes, each of which include at least one containerized microservice that enables intent-driven operation of the cloud based network. One or more resource controllers, each designated to manage a custom resource, communicate with a master controller of the node to manage operational and configuration states of the node and any microservices containerized within the node. The master enables a user to monitor and automate the management of microservices and the cloud based network as a whole. The containerized microservice architecture allows user customizable rendering of microservices, reconciliation of old and new versions of microservices, and facilitated management of a plurality of nodes.

    COMMUNITY DETECTION BASED ON DNS QUERYING PATTERNS

    公开(公告)号:US20200351237A1

    公开(公告)日:2020-11-05

    申请号:US16548694

    申请日:2019-08-22

    申请人: Infoblox Inc.

    发明人: Aruna Chakkirala

    IPC分类号: H04L29/12 G06F16/901

    摘要: Techniques for community detection based on DNS querying patterns are disclosed. For example, techniques for community detection based on DNS querying patterns for anomaly detection and monitoring efficiencies are disclosed. In some embodiments, a system, process, and/or computer program product for community detection based on DNS querying patterns includes receiving DNS log files, wherein the DNS log files include a DNS query and a DNS response for resolution of the DNS query; generating a graph based on the DNS log files; identifying a plurality of communities using the graph based on DNS querying patterns; and detecting an anomaly in DNS activity associated with one or more of the communities based on a DNS querying rule.

    DETECTING HOMOGRAPHS OF DOMAIN NAMES
    90.
    发明申请

    公开(公告)号:US20200228500A1

    公开(公告)日:2020-07-16

    申请号:US16248357

    申请日:2019-01-15

    申请人: Infoblox Inc.

    发明人: Femi Olumofin

    摘要: Various techniques for detecting homographs of domain names are disclosed. In some embodiments, a system, process, and/or computer program product for detecting homographs of domain names includes receiving a DNS data stream, wherein the DNS data stream includes a DNS query and a DNS response for resolution of the DNS query; applying a homograph detector for each domain in the DNS data stream; and detecting a homograph of a domain name in the DNS data stream using the homograph detector.