-
公开(公告)号:US11792284B1
公开(公告)日:2023-10-17
申请号:US17589361
申请日:2022-01-31
申请人: Lacework, Inc.
发明人: Anil K. Nanduri , Prakash Jalan , Matti A. Vanninen , Ammar G. Ekbote , Alex Ramachandran Nirmala , Yijou Chen
IPC分类号: H04L9/40 , H04L67/50 , G06F16/901 , G06F21/57 , H04L67/306 , G06F16/9038 , G06F16/9537 , G06F9/455 , G06F9/54 , H04L43/045 , H04L43/06 , G06F16/9535 , G06F16/2455
CPC分类号: H04L67/535 , G06F9/455 , G06F9/545 , G06F16/9024 , G06F16/9038 , G06F16/9535 , G06F16/9537 , G06F21/57 , H04L43/045 , H04L43/06 , H04L63/10 , H04L67/306 , G06F16/2456
摘要: Example systems and methods monitor a cloud compute environment. An example method includes an agent obtaining a data packet from an interface in the cloud compute environment, the data packet including a source address and a non-endpoint destination address; determining, based on the non-endpoint destination address and routing information for the data packet, an endpoint destination address associated with the non-endpoint destination address of the data packet; modifying the data packet by replacing the non-endpoint destination address with the endpoint destination address; and providing, based on the modified data packet, monitoring data to a data platform.
-
公开(公告)号:US12130878B1
公开(公告)日:2024-10-29
申请号:US17729256
申请日:2022-04-26
申请人: Lacework, Inc.
发明人: Anil K. Nanduri , Prakash Jalan , Matti A. Vanninen , Ammar G. Ekbote , Alex Ramachandran Nirmala , Yijou Chen
IPC分类号: G06F16/9537 , G06F9/455 , G06F9/54 , G06F16/2455 , G06F16/901 , G06F16/9038 , G06F16/9535 , G06F21/57 , H04L9/40 , H04L43/045 , H04L43/06 , H04L67/306 , H04L67/50
CPC分类号: G06F16/9537 , G06F9/455 , G06F9/545 , G06F16/9024 , G06F16/9038 , G06F16/9535 , G06F21/57 , H04L43/045 , H04L43/06 , H04L63/10 , H04L67/306 , H04L67/535 , G06F16/2456
摘要: Example systems and methods monitor a cloud compute environment. An example method includes: determining, by an agent deployed in a cloud environment and based on a plurality of data packets transmitted over a plurality of network interfaces of the cloud environment, a set of data packets that are associated with a communication between a first container and a second container; determining, by the agent and based on the set of data packets, communication data associated with the communication; and providing, by the agent, the communication data to a data platform, wherein providing the communication data to the data platform uses less network resources than providing the set of data packets to the data platform.
-