H04L61/4541

UTILIZING SERVICE TAGGING FOR ENCRYPTED FLOW CLASSIFICATION

In one embodiment, a device in a network receives domain name system (DNS) information for a domain. The DNS information includes one or more service tags indicative of one or more services offered by the domain. The device detects an encrypted traffic flow associated with the domain. The device identifies a service associated with the encrypted traffic flow based on the one or more service tags. The device prioritizes the encrypted traffic flow based on the identified service associated with the encrypted traffic flow.

Systems and Methods for Detecting Conflicts in Internet Services

The technology disclosed relates to detection and resolution of conflicts between requested internet services and package of internet services associated with a domain. The method disclosed includes receiving a request from a client to add a requested internet service to a package of internet services. The method includes searching a domain name system (DNS) database for DNS records or a DNS server for external domains having attribute fields indicating attributes of the internet services in the package of internet services. The method includes comparing attributes of the requested internet service to attribute fields for the internet services in the package of internet services using a set of conflict definitions to identify attributes of the internet service requested conflicting with attributes of the package of internet services. When conflicting attributes are identified, the method includes invoking a resolution process to resolve the conflict.

Systems and Methods for Resolving Conflicts in Internet Services

The technology disclosed relates to resolution of conflicts between a requested internet service, requested by an internet service requesting server, and a package internet services. The method disclosed includes sending a conflict check result message to an internet service requesting server, indicating a presence of a conflict between a requested internet service requested by the requesting server and a package of internet services. The method includes receiving from the internet service requesting server a response including a selection from (i) an alternate internet service in the package of internet services to substitute for the requested internet service; (ii) a request to replace an existing connection with a service in the package of internet services with the requested internet service; and (iii) a request to initiate a custom resolution application. The method then responsively performs a respective conflict resolution step.

SYSTEM AND METHOD FOR RECONFIGURING A NETWORK USING NETWORK TRAFFIC COMPARISIONS

Example implementations relate to a method for reconfiguring a network based on network traffic comparison. The first network supports multicast Domain Name Service (mDNS) query with multicast query-response messages. The method includes determining a client type for each client device and a first average packet count for each client type in a first network. The method includes receiving a second average packet count for each corresponding client type from a second network. The second network supports mDNS query with unicast query-response messages. A difference between the first average packet counts and the second average packet counts for corresponding client types is computed. The first network is reconfigured to respond to mDNS query with unicast query-response messages when the difference computed for at least one client type in the first network and each corresponding client type in the second network is above a predefined threshold.

NETWORK SERVICE DISCOVERY

Examples described herein provide network service discovery in a network. Examples herein include receiving, from a network device in the network, a set of records corresponding to a set of service advertisements indicative of capabilities of services hosted by respective host devices connected to the network device. Examples herein include determining, a set of neighbor network devices corresponding to the network device, based on radio frequency (RF) data in the network and a predefined set of policies associated with each of the set of records. Examples herein further include sending the set of records to the set of the neighbor network devices, where each of the set of neighbor network devices is to serve service discovery requests based on the set of records.

Information processing device and non-transitory computer readable medium

An information processing device includes storage and a controller. In a case where a change of network address occurs in a communication channel, the storage stores a pre-change network address for a terminal connected to the communication channel in association with a post-change network address for a terminal whose network address has changed. In a case where communication to a terminal is performed using the pre-change network address, the controller controls the communication by using the storage such that, in a case where the network address of the terminal has not changed, the communication is performed as-is, whereas in a case where the network address of the terminal has changed, the pre-change network address is converted to the post-change network address to communicate with the terminal.

Providing virtual server identity to nodes in a multitenant serverless execution service

Computer systems and methods are disclosed to implement a virtual server using a multitenant serverless execution service (MTSES) and a request labeling endpoint outside the MTSES to identify the virtual server to worker nodes in the service. The MTSES is configured to host multiple virtual servers, and forward requests for the different virtual servers to dynamically selected worker nodes. However, in embodiments, the MTSES is not configured to determine the virtual server targeted by the requests. Accordingly, to allow the MTSES to support virtual servers that require knowledge of their identity, for example to authorize incoming requests, a request labeling endpoint is provided outside the MTSES to forward requests to the MTSES and automatically label individual requests with an endpoint identifier associated with their target virtual servers. In this manner, nodes in the MTSES can dynamically determine the virtual server that they are to assume for each request.

METHOD AND APPARATUS FOR IMPROVING SERVICE DISCOVERY
20210385286 · 2021-12-09 ·

Various embodiments of the present disclosure provide a method for improving service discovery. The method comprises determining identification information of a service instance by a network node according to a profile of the service instance registered at the network node. The network node can resolve address information of the service instance based at least in part on the identification information. The method further comprises storing the address information in the profile of the service instance. According to the embodiments of the present disclosure, the maintenance of a NF profile can be improved and the service discovery and the resource configuration in a network may be optimized.

Layer-2 Grouping of Electronic Devices Across Heterogeneous Networks
20220201469 · 2022-06-23 · ·

A computer that segments traffic associated with different entities across heterogeneous networks is described. During operation, the computer may provide, addressed to a second computer, information that specifies a mapping of an identifier of an electronic device in a wireless network and a second identifier of a virtual container for traffic associated with the electronic device in the wireless network to a third identifier of the electronic device in a cellular-telephone network, where the electronic device and the virtual container are associated with an entity. Then, the computer may communicate the traffic between the wireless network and the cellular-telephone network within the virtual container based at least in part on the mapping, where the virtual container isolates the traffic from other traffic in the wireless network. Note that the identifier may include a MAC address and the third identifier may include an IMSI.

Layer-2 Grouping of Electronic Devices Across Heterogeneous Networks
20220201469 · 2022-06-23 · ·

A computer that segments traffic associated with different entities across heterogeneous networks is described. During operation, the computer may provide, addressed to a second computer, information that specifies a mapping of an identifier of an electronic device in a wireless network and a second identifier of a virtual container for traffic associated with the electronic device in the wireless network to a third identifier of the electronic device in a cellular-telephone network, where the electronic device and the virtual container are associated with an entity. Then, the computer may communicate the traffic between the wireless network and the cellular-telephone network within the virtual container based at least in part on the mapping, where the virtual container isolates the traffic from other traffic in the wireless network. Note that the identifier may include a MAC address and the third identifier may include an IMSI.