Network reachability impact analysis

    公开(公告)号:US11381460B1

    公开(公告)日:2022-07-05

    申请号:US17117376

    申请日:2020-12-10

    Applicant: Google LLC

    Abstract: A method includes receiving a plurality of network configuration snapshots for a network and determining whether a first data plane model protocol of a first snapshot is the same as a second data plane model protocol of a second snapshot consecutive with the first snapshot. When the snapshots are the same, the method includes determining whether a third snapshot is the same as the second snapshot. When the snapshots are different, the method includes selecting the first snapshot and the second snapshot. The method includes generating a first reachability graph representing packet reachability of the network for the first snapshot and generating a second reachability graph representing packet reachability of the network for the second snapshot. The method includes computing a reachability differentiation graph identifying a net change to reachability from the first reachability graph to the second reachability graph and generating a report of the net change to reachability.

    Firewall rules intelligence
    5.
    发明授权

    公开(公告)号:US12294565B2

    公开(公告)日:2025-05-06

    申请号:US18443233

    申请日:2024-02-15

    Applicant: Google LLC

    Abstract: A firewall intelligence system, includes a data storage storing a set of firewall rules for a network; a recommendation engine that receives, from a log service, traffic logs detailing traffic for the network and firewall logs detailing the usage of firewall rules in response to the traffic for the network, accesses, from the data storage, the set of firewall rules for the network; processes the set of firewall rules to evaluate the firewall rules against a set of quantitative evaluation rules to determine one or more firewall rule recommendations, wherein each firewall rule recommendation is a recommendation to change at least one of the firewall rules in the set of firewall rules; and a front end API that provides data describing the one or more firewall rule recommendations to a user device.

    Scalable Event Driven Auto-Diagnosis System

    公开(公告)号:US20230038986A1

    公开(公告)日:2023-02-09

    申请号:US17817330

    申请日:2022-08-03

    Applicant: Google LLC

    Abstract: A method for scalable event driven auto-diagnosis systems includes obtaining a data packet configured for transmission across a network from a source address to a destination address. The method includes obtaining a list of changes to the network. The method also includes analyzing, based on a network model, the data packet using a plurality of analyzers. The method includes correlating the list of changes to the network and the analysis of the data packet. The method further includes determining, based on the correlation between the list of changes to the network and the analysis of the data packet, a configuration status of the network. The method also includes reporting the configuration status to a user.

    Firewall rules intelligence
    9.
    发明授权

    公开(公告)号:US11516182B2

    公开(公告)日:2022-11-29

    申请号:US16845771

    申请日:2020-04-10

    Applicant: Google LLC

    Abstract: A firewall intelligence system, includes a data storage storing a set of firewall rules for a network; a recommendation engine that receives, from a log service, traffic logs detailing traffic for the network and firewall logs detailing the usage of firewall rules in response to the traffic for the network, accesses, from the data storage, the set of firewall rules for the network; processes the set of firewall rules to evaluate the firewall rules against a set of quantitative evaluation rules to determine one or more firewall rule recommendations, wherein each firewall rule recommendation is a recommendation to change at least one of the firewall rules in the set of firewall rules; and a front end API that provides data describing the one or more firewall rule recommendations to a user device.

    FIREWALL RULES INTELLIGENCE
    10.
    发明申请

    公开(公告)号:US20200329011A1

    公开(公告)日:2020-10-15

    申请号:US16845771

    申请日:2020-04-10

    Applicant: Google LLC

    Abstract: A firewall intelligence system, includes a data storage storing a set of firewall rules for a network; a recommendation engine that receives, from a log service, traffic logs detailing traffic for the network and firewall logs detailing the usage of firewall rules in response to the traffic for the network, accesses, from the data storage, the set of firewall rules for the network; processes the set of firewall rules to evaluate the firewall rules against a set of quantitative evaluation rules to determine one or more firewall rule recommendations, wherein each firewall rule recommendation is a recommendation to change at least one of the firewall rules in the set of firewall rules; and a front end API that provides data describing the one or more firewall rule recommendations to a user device.

Patent Agency Ranking