Security policy for HTTPS using DNS

    公开(公告)号:US10375020B2

    公开(公告)日:2019-08-06

    申请号:US15408616

    申请日:2017-01-18

    Abstract: In one embodiment, a browser operating on a host device receives, from a user, a request to access a web server that includes a Uniform Resource Locator (URL) associated with the web server. In response, the browser sends, to a Domain Name System (DNS) server, a request for an Internet Protocol (IP) address correlated with the domain hosting the URL, and receives, from the DNS server, a response that comprises a block policy IP address and an appropriate error code. Based on this IP address and the error code indicated in the response, the browser renders an access denied page indicating that access to the web server associated with the URL is not permitted, wherein at least a portion of the access denied page is stored in memory accessible to the browser prior to sending the request for the IP address correlated with the domain that is hosting the URL.

    DETERMINE PAYLOAD INTEGRITY FOR TRAFFIC FLOWING ACROSS PROXIES

    公开(公告)号:US20190116158A1

    公开(公告)日:2019-04-18

    申请号:US15784708

    申请日:2017-10-16

    Abstract: In a network that includes a client, a server and one or more proxy entities that intercept network traffic between the client and the server, a computer-implemented method is provided including: establishing trust with a permissioned distributed database; computing hashes from packet payloads of network traffic originated, intercepted or received; storing the hashes to the permissioned distributed database so that the permissioned distributed database maintains hashes computed from packets of the network traffic originated, intercepted or received by the client, server and the one or more proxy entities; and validating the hashes by comparing, with each other, the hashes stored to the permissioned distributed database by the client, server and the one or more proxy entities to determine whether any packet payload of the network traffic was modified in transit.

    Propagating flow characteristics in service function chaining (SFC) headers

    公开(公告)号:US10263887B2

    公开(公告)日:2019-04-16

    申请号:US15922253

    申请日:2018-03-15

    Abstract: In one embodiment, a service function classifier device determines a classification of a packet using one or more packet classification rules. The device selects a service function path based on the classification of the packet. The device determines one or more traffic flow characteristics based on the classification of the packet. The device generates a service function chaining (SFC) header that identifies the selected service function path and the determined one or more traffic flow characteristics. The SFC header is configured to cause a device along the service function path to forward the encapsulated packet based on the identified service function path and the determined one or more traffic flow characteristics. The device sends the packet along the selected service function path as an encapsulated packet that includes the generated SFC header.

    VEHICLE-TO-INFRASTRUCTURE (V2I) ACCIDENT MANAGEMENT

    公开(公告)号:US20180308344A1

    公开(公告)日:2018-10-25

    申请号:US15492559

    申请日:2017-04-20

    CPC classification number: G08B27/001 B60R21/00 B60R2021/0027 G16H10/60

    Abstract: In one embodiment, a computing device determines that a vehicle has been in an accident. The computing device also receives virtual black box data having a finite time period of recorded data from sensors that were in an operating mode during the finite time period prior to the accident, as well as a stream of data from sensors that changed to an accident mode in response to the accident. The computing device may then coordinate the virtual black box data and the stream of data for distribution to accident-based services. In another embodiment, a computing device determines identities of vehicle occupants. In response to an accident at a location, the device further determines one or more emergency services responsive to the accident at the location. As such, the device may then provide access to medical records of the occupants to devices associated with the determined emergency services.

    On-demand bandwidth provisioning in a network environment
    10.
    发明授权
    On-demand bandwidth provisioning in a network environment 有权
    网络环境中的按需带宽配置

    公开(公告)号:US09300538B2

    公开(公告)日:2016-03-29

    申请号:US14328421

    申请日:2014-07-10

    Abstract: An example method for facilitating on-demand bandwidth provisioning in a network environment is provided and includes receiving a request from a client at a first network for accommodating flow characteristics at a second network that is associated with executing an application at the first network, determining that the request cannot be fulfilled with available network resources allocated to the client by the second network, advising the client of additional cost for accommodating the flow characteristics, and authorizing additional network resources in the second network to accommodate the flow characteristics after receiving notification from the client of payment of the additional cost.

    Abstract translation: 提供了一种用于促进网络环境中的按需带宽供应的示例性方法,并且包括从第一网络的客户端接收请求,以便在与在第一网络处执行应用相关联的第二网络处容纳流特性, 无法通过第二网络分配给客户端的可用网络资源来满足该请求,向客户端通知用于适应流量特性的附加成本,以及在从客户端接收到通知之后授权第二网络中的附加网络资源以适应流量特性 支付额外费用。

Patent Agency Ranking