DOCUMENT DRIVEN NETWORK CONFIGURATION UPDATER

    公开(公告)号:US20230239207A1

    公开(公告)日:2023-07-27

    申请号:US17712206

    申请日:2022-04-04

    申请人: VMWARE, INC.

    摘要: Systems and methods are disclosed for updating network configuration documentation. In an example, a user can upload network configuration documentation with updates to a network to a server. The server can create an update topology corresponding to the documentation by identifying symbols that represent network components. The server can identify changes by comparing the update topology to a configuration data of an existing network. For example, the address of a gateway or the connections to the gateway can change. The server can cause the changes to be presented to a user, such as by highlighting the changes in a diagram. The user can confirm the changes, such as with a conversational workflow, and the server can save the changes to a database. The system can also send commands to the applicable network components to effectuate the confirmed changes.

    USER INTERFACE FOR DEFINING SECURITY GROUPS

    公开(公告)号:US20210194931A1

    公开(公告)日:2021-06-24

    申请号:US16799871

    申请日:2020-02-25

    申请人: VMWARE, INC.

    摘要: Some embodiments provide a method for defining security groups in a network. In a user interface, the method displays (i) a set of existing security groups and (ii) a set of recommend security groups based on monitored network flows in the network. Each existing security group and recommended security group includes at least one data compute node (DCN). The method provides a user interface tool for (i) accepting recommended security groups to be part of the set of existing security groups and (ii) adding DCNs from the recommended security groups to the existing security groups. Security rules are defined and implemented in the network for DCNs belonging to existing security groups.

    SECURITY POSTURE VISUALIZATION
    3.
    发明公开

    公开(公告)号:US20240244082A1

    公开(公告)日:2024-07-18

    申请号:US18129902

    申请日:2023-04-03

    申请人: VMWARE, INC.

    IPC分类号: H04L9/40

    CPC分类号: H04L63/20

    摘要: The disclosure provides an approach for visualizing a security posture of a network entity. Embodiments include a method including displaying, on a display of a computing device, a security posture summary screen of a network entity. The method further includes receiving a first input on a first connection depicted in the security posture summary screen, the first connection between the network entity and a first entity of one or more source entities or one or more destination entities. The method further includes in response to the first input, displaying, on the display, a drill down view screen of first security rules applicable to communication between the network entity and the first entity.

    DATABASE-PLATFORM-AGNOSTIC PROCESSING OF NATURAL LANGUAGE QUERIES

    公开(公告)号:US20230033887A1

    公开(公告)日:2023-02-02

    申请号:US17499901

    申请日:2021-10-13

    申请人: VMWARE, INC.

    摘要: Examples herein include systems and methods for processing natural language queries across database platforms. An example method can include storing relational graphs representing relational paths between resources, such as by using nodes and edges. When a user inputs a query in natural language format, the method can identify and extract a matching intent and entity using a natural language understanding tool trained with an automated script. The method can include fetching a relational path and formatting it as an ordered list of nodes and edges. The list can be translated into a framework specific to a first database relevant to the query to obtain a translated path. The translated path can be used to execute the query at the database. Returned results can be displayed as a list of objects on a GUI.

    SCALABLE VISUALIZATION OF NETWORK FLOWS

    公开(公告)号:US20210194849A1

    公开(公告)日:2021-06-24

    申请号:US16799868

    申请日:2020-02-25

    申请人: VMWARE, INC.

    摘要: Some embodiments provide a method for visualizing network flows between multiple security groups in a network. Each security group includes a set of one or more data computer nodes (DCNs). The method receives data regarding network flows between the DCNs of the security groups. In a scalable user interface visualization, the method displays the network flows by aggregating the network flows between DCNs in pairs of security groups. The method provides a filtering tool to enable visualization in the user interface of specific flows between the DCNs of the plurality of security groups.