H04L67/566

SYSTEMS AND METHODS FOR PREVENTING DENIAL OF SERVICE ATTACKS UTILIZING A PROXY SERVER
20170366576 · 2017-12-21 · ·

Aspects of the present disclosure involve systems, methods, computer program products, and the like, for utilizing an access log of a proxy server device of a content delivery network (CDN) to detect and mitigate a denial of service (DOS) on a web or content server hosted by the CDN. Through an analysis of the content requests received at the proxy server listed in the access logs, one or more IP addresses may be identified as involved in a potential DOS attack or other suspicious behavior. Once identified, the suspicious activities of the one or more IP addresses may be tracked and aggregated over a particular period of time, with each detected suspicious request to the content server being counted. The count of suspicious requests to the content server may then be compared to one or more threshold values and a remediation action may occur when the thresholds are met or exceeded.

USER INTERFACE FOR INDUSTRIAL DIGITAL TWIN SYSTEM ANALYZING DATA TO DETERMINE STRUCTURES WITH VISUALIZATION OF THOSE STRUCTURES WITH REDUCED DIMENSIONALITY

Methods generally including determining a structure in the data; by the controller, determining a relevance of the determined structure in the data to at least one role type stored within a role taxonomy; by the controller, determining a reduced dimensionality view of the data in response to the determined structure in the data. The reduced dimensionality view comprises fewer dimensions than the data from the plurality of input sensors. The reduced dimensionality view further comprises a graphical element representing at least one of: mechanical portions of a machine of the industrial environment, or a sensor from the plurality of input sensors that provided data; and providing the reduced dimensionality view to a user interface that is associated with at least one entity associated with the at least one role type stored within the role taxonomy.

CONCURRENCY REDUCTION SERVICE

Reducing concurrency in a system comprising a plurality of services sending a plurality of concurrent requests to a back-end service through a concurrency reduction service. The concurrency reduction service maps each concurrent incoming request to a key; and determines if the key to which the concurrent incoming request is mapped matches a key mapped from another concurrent incoming request from the plurality of concurrent requests. If the key to which the concurrent incoming request is mapped matches a key mapped from at least one other concurrent incoming request from the plurality of concurrent requests, then the service groups the concurrent incoming request with the at least one other concurrent incoming request to be sent to the back-end service. The concurrency reduction service sends one outgoing request to the back-end service for each of the keys to which the plurality of concurrent incoming requests were mapped.

CONNECTIONS AGGREGATION AMONG RELATED DEVICES FOR EDGE COMPUTING

The present application relates to devices and components including apparatus, systems, and methods for connections aggregation among related devices for edge computing. Such techniques may include a grouping of related devices as an edge group, and assignment of a proxy device for distribution of edge server discovery information among the edge group.

CONNECTIONS AGGREGATION AMONG RELATED DEVICES FOR EDGE COMPUTING

The present application relates to devices and components including apparatus, systems, and methods for connections aggregation among related devices for edge computing. Such techniques may include a grouping of related devices as an edge group, and assignment of a proxy device for distribution of edge server discovery information among the edge group.

Assigning addresses in a communications network

A method and apparatus for addressing a message sent from a proxy node to a peer node in a communications network. The proxy node receives from a host node a plurality of multipath messages. Each message of the plurality of multipath messages has an address. The proxy node then applies a rule to assign an address for a single flow message towards the peer node. The single flow message comprises each message of the plurality of multipath messages. The single flow message is then sent towards the peer node.

Remote data object publishing/subscribing system having a multicast key-value protocol

Described are methods, systems and computer readable media for data object publishing/subscribing via a multicast key-value protocol.

Remote data object publishing/subscribing system having a multicast key-value protocol

Described are methods, systems and computer readable media for data object publishing/subscribing via a multicast key-value protocol.

Intelligent network operations for data communications between client-specific servers and data-center communications servers

Certain aspects of the disclosure are directed to context aggregation in a data communications network. According to a specific example, user-data communications between a client-specific endpoint device and the other participating endpoint device during a first time period can be retrieved from a plurality of interconnected data communications systems. The client station can be configured and arranged to interface with a data communications server providing data communications services on a subscription basis. Context information for each respective user-data communication between the client station and the participating station during the first time period can be aggregated, and operational statistics from network circuitry providing the user-data communications between the client station and the participating station can be retrieved. Network parameters can be configured to change performance of subsequent user-data communications between the client station and the participating station, based on patterns identified in the operational statistics and the aggregated context information.

Intelligent network operations for data communications between client-specific servers and data-center communications servers

Certain aspects of the disclosure are directed to context aggregation in a data communications network. According to a specific example, user-data communications between a client-specific endpoint device and the other participating endpoint device during a first time period can be retrieved from a plurality of interconnected data communications systems. The client station can be configured and arranged to interface with a data communications server providing data communications services on a subscription basis. Context information for each respective user-data communication between the client station and the participating station during the first time period can be aggregated, and operational statistics from network circuitry providing the user-data communications between the client station and the participating station can be retrieved. Network parameters can be configured to change performance of subsequent user-data communications between the client station and the participating station, based on patterns identified in the operational statistics and the aggregated context information.