H04L12/24

ENGINE ARCHITECTURE FOR PROCESSING FINITE AUTOMATA

An engine architecture for processing finite automata includes a hyper non-deterministic automata (HNA) processor specialized for non-deterministic finite automata (NFA) processing. The HNA processor includes a plurality of super-clusters and an HNA scheduler. Each super-cluster includes a plurality of clusters. Each cluster of the plurality of clusters includes a plurality of HNA processing units (HPUs). A corresponding plurality of HPUs of a corresponding plurality of clusters of at least one selected super-cluster is available as a resource pool of HPUs to the HNA scheduler for assignment of at least one HNA instruction to enable acceleration of a match of at least one regular expression pattern in an input stream received from a network.

IDENTIFYING MOBILE DEVICE LOCATION AND CORRESPONDING SUPPORT CENTER LOCATIONS TO PROVIDE SUPPORT SERVICES OVER A NETWORK
20180007506 · 2018-01-04 ·

A mobile device may receive updates, support and other data from a current data center agent platform. When the mobile device travels to another location the nearest data center agent may be different from the previous agent. A changeover determination must be performed prior to determining whether the new agent should be assigned to the mobile device. One example method of operation may include receiving current location information of the mobile device and identifying a present location of the mobile device and a current service center assigned to the mobile device. The method may also provide determining whether a new service center location at a remote location from the current service center location should be assigned to the mobile device based on predefined assignment criteria.

METHODS AND SYSTEMS FOR MANAGING INTERCONNECTION OF VIRTUAL NETWORK FUNCTIONS

A method and apparatus is disclosed herein for use of a connectivity manager and a network infrastructure including the same. In one embodiment, the network infrastructure comprises one or more physical devices communicably coupled into a physical network infrastructure or via the overlay provided by the physical servers; and a virtual network domain containing a virtual network infrastructure executing on the physical network infrastructure. In one embodiment, the virtual network domain comprises one or more virtual network functions connected together through one or more links and executing on the one or more physical devices, and one or more interfaces coupled to one or more network functions via one or more links to communicate data between the virtual network domain and at least one of the one or more physical devices of the physical network infrastructure while the virtual network domain is isolated from other virtual infrastructures executing on the physical network infrastructure.

TRANSFORMING EVENT DATA USING REMOTE CAPTURE AGENTS AND TRANSFORMATION SERVERS
20180006911 · 2018-01-04 ·

The disclosed embodiments provide a method and system for processing network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network data obtained from network packets at the remote capture agent. The system then uses the configuration information to configure transformation of the event data or the network data into transformed event data at the remote capture agent.

Network Control

Systems and methods for managing a network are disclosed. For example, systems and methods are disclosed for selectively disabling and/or otherwise configuring devices to avoid interference, overlapping service, and/or the like. Signal information for nearby devices can be detected and analyzed to determine device configuration settings.

ANOMALY AND MALWARE DETECTION USING SIDE CHANNEL ANALYSIS

The present disclosure describes systems and methods for detecting malware. More particularly, the system includes a monitoring device that monitors side-channel activity of a target device. The monitoring device that can work in conjunction with (or independently of) a cloud-based security analytics engine to perform anomaly detection and classification on the side-channel activity. For example, the monitoring device can calculate a first set of features that are then transmitted to the security analytics engine for anomaly detection and classification.

Router Controlling
20180006890 · 2018-01-04 ·

In an example, an aggregation router encapsulates a first Console command as a control packet in an Ethernet format, determines a target branch router of the control packet, and transmits the control packet to the target branch router via an Ethernet link between the aggregation router and the target branch router, so that the target branch router can decapsulate the control packet to obtain and execute the first Console command. The aggregation router receives a feedback packet from the target branch router via the Ethernet link between the aggregation router and the target branch router, wherein the feedback packet comprises an output result obtained by the target branch router through executing the first Console command.

NETWORK RELAY APPARATUS, GATEWAY REDUNDANCY SYSTEM, PROGRAM, AND REDUNDANCY METHOD
20180006876 · 2018-01-04 ·

A network relay device of a gateway redundancy system is provided with: a storage unit which stores, as an internal status, a redundancy status indicating, for each subscriber terminal or for each subscriber terminal group, whether a subject device is operating as an active system or a backup system, and a subscriber status indicating a list of usage address information for each subscriber terminal; and a management unit which monitors communications between a set of subscriber terminals and another network relay device in which a redundant configuration is adopted, records in the storage unit, as a part of the subscriber status, the usage address information provided to the subscriber terminal by the other network relay device, and, with a prescribed timing, successively notifies/advertises the successively recorded internal status to a notification destination.

TROUBLESHOOTING METHOD BASED ON NETWORK FUNCTION VIRTUALIZATION, AND DEVICE
20180004589 · 2018-01-04 · ·

A troubleshooting method based on network function virtualization is provided, where the troubleshooting method may include: obtaining, by a first function management entity, fault information of a function entity; triggering, by the first function management entity, fault correlation processing according to the fault information, and formulating a troubleshooting policy according to a result of the fault correlation processing; and if the troubleshooting policy is formulated when troubleshooting time arrives, processing, by the first function management entity, a fault according to the troubleshooting policy; or if the troubleshooting policy is not formulated, processing, by the first function management entity, a fault according to a preset troubleshooting policy, where the preset troubleshooting policy is a policy formulated for a fault generated due to a reason of the function entity, so as to ensure that a service is not interrupted in a troubleshooting process, so that user experience is improved.

METHOD AND APPARATUS FOR PERFORMING COMMUNICATION IN SOFTWARE-DEFINED NETWORKING, AND COMMUNICATIONS SYSTEM
20180006891 · 2018-01-04 ·

Embodiments of the present disclosure provide a method and an apparatus for performing communication in software-defined networking, and a communications system. The method includes: receiving a message sent by a network device, where the message includes a signaling message; determining, according to a control policy, a matching condition that matches the message, where the control policy includes a matching condition and operation information corresponding to the matching condition; processing the message according to the operation information corresponding to the matching condition that matches the message; and sending the processed message to the network device. According to the method and the apparatus for performing communication in software-defined networking, and the communications system in the present disclosure, a problem in the prior art that a control device serving as a network control center cannot communicate with a base station is resolved.