Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

130 results about "Cloud service provider" patented technology

A cloud service provider, or CSP, is a company that offers some component of cloud computing -- typically infrastructure as a service (IaaS), software as a service (SaaS) or platform as a service (PaaS) -- to other businesses or individuals.

System and methods for generation of a network topology and corresponding user interfaces

A distributed cloud computing system is disclosed that includes a controller configured to deploy network constructs including any of transit gateways, spoke gateways, subnets, or private networks and logic that, upon execution by one or more processors, causes performance of operations including: causing rendering of a graphical user interface that includes a display panel configured to display progress of a build process for a network topology graph, receiving first user input through the graphical user interface indicating selection of a first cloud service provider, a first access account, and a first cloud region, receiving second user input through the graphical user interface indicating selection of one or more of the network constructs to be deployed in the first cloud region, instructing the controller to deploy the one or more of the network constructs in the first cloud region according to the first user input and the second user input.
Owner:AVIATRIX SYSTEMS INC

Incremental enrichment of threat data

A threat management facility receives data from a variety of sources such as compute instances within an enterprise network, cloud service providers supporting the enterprise network, and third-party data providers such as geolocation services. In order to facilitate prompt notification of potential risks, the threat management facility may incrementally update data for use in threat assessments as the data becomes available from these different sources, and create suitable alerts or notifications whenever the currently accumulated data provides an indication of threat meeting a predetermined threshold.
Owner:SOPHOS LTD

Identity privacy protection system and method for safe sharing of power data

PendingCN121561950AData processing applicationsDigital data protectionChosen-plaintext attackAttack
The invention discloses an identity privacy protection system and method oriented to power data security sharing, which combine single-factor combination authentication and identity traceability and utilize the transparency and tamper resistance of a block chain. Comprising an electric power key generation center, an electric power cloud service provider, an electric power data owner, an electric power data user and a block chain, user identity privacy is ensured, safe identity verification is supported, identity traceability is achieved under necessary conditions, and meanwhile safe distribution of keys is achieved. In addition, services and resources are isolated by using groups, so that the flexibility and the expandability of the services and the resources are enhanced. Security analysis and experimental evaluation prove that the method can effectively resist selected plaintext attacks, and meanwhile, high efficiency and practicability are kept.
Owner:STATE GRID HENAN INFORMATION & TELECOMM CO

Cloud instance privacy security enhancement method based on security channel dynamic measurement

The invention discloses a cloud instance privacy security enhancement method based on security channel dynamic measurement, and the method comprises the steps: building a secure and credible communication channel through a secure communication client, and connecting the communication channel to a local user side through the Internet; a local user side deploys a TPCM secure communication module which is responsible for secure communication with the multi-cloud service rental instance. And the trusted software base is responsible for maintaining a measurement strategy and performing measurement judgment and control when a user process runs in the cloud service lease instance. The system specifically comprises a judgment mechanism module, a control mechanism module, a measurement mechanism module and a credible reference library. On the premise that infrastructures of cloud service providers are not trusted, in order to achieve safety and credibility of user remote cloud service lease instance data and application during operation and privacy protection of users, a measurement agent and a safety communication client are deployed in a cloud service lease instance; meanwhile, the tenant can perform deep monitoring on the process in the cloud instance, and it is ensured that sensitive information such as a monitoring strategy and reference data is not exposed to a cloud service provider.
Owner:BEIJING UNIV OF TECH

Security integration for cloud services

A threat management facility for an enterprise network integrates native threat management capabilities with threat data from a cloud service provider used by the enterprise. By properly authenticating to the cloud service and mapping data feeds from the cloud service to a native threat management environment, the threat management facility can extend threat detection and management capabilities beyond endpoint-centric techniques.
Owner:SOPHOS LTD

A service provider sla evaluation dynamic business model implementation method and system

The application belongs to the technical field of business intelligence evaluation, and specifically provides a service provider SLA evaluation dynamic business model implementation method and system. The method mainly comprises: obtaining SLA evaluation source data of a service provider, wherein the SLA evaluation source data comprises operator SLA data, enterprise end-to-end APM data, third-party network quality data and dependent link probe data between service providers; taking the service provider as a node, setting a credibility weight for each node according to a preset rule, determining a directed edge between nodes according to a preset dependent relationship between service providers, and determining a connection weight of the directed edge according to the dependent link probe data. The application realizes dynamic and accurate evaluation under multi-dimensional data fusion, improves the objectivity and credibility of SLA achievement rate evaluation results, and provides reliable decision support for enterprise screening of cloud service providers and optimization of service deployment.
Owner:CHINA COMPUTER DIGITAL (BEIJING) INFORMATION TECHNOLOGY CO LTD

Cloud service management and control method and device, computer program product and storage medium

The embodiment of the invention provides a cloud service management and control method and device, a computer program product and a storage medium. In the embodiment of the invention, a cloud service management and control system can create a second private network in a first area where a cloud service provider is located as a cross-area access entrance of a cloud service provider side, and can create an exclusive fourth private network for the cloud service provider in other areas as required according to an access request of a user; as a cross-regional access exit of a user side, users in other regions except the region where the cloud service provider is located are supported to access any service provided by the cloud service provider in a cross-regional mode. Therefore, flexible expansion and contraction of the service area can be realized for the cloud service provider, and the cloud service provider does not need to deploy services in multiple areas, so that the service cost can be effectively saved.
Owner:ALIBABA CLOUD COMPUTING CO LTD

Token exchange service for customer workloads

A token exchange framework between two different cloud service providers is described herein. A multi-cloud infrastructure included in a first cloud environment provided by a first cloud service provider (CSP) receives a first request from a user associated with an account in a second cloud environment provided by a second CSP. The first request corresponds to use of a service provided by the first cloud environment and includes a first token issued by the second CSP. Based on verifying the first token with respect to a trust configuration corresponding to the second CSP, the multi-cloud infrastructure obtains a second token issued by the first CSP. The trust configuration is pre-generated and maintained by the first CSP in the first cloud environment. The multi-cloud infrastructure sends the second token to the service to enable the user to utilize the service provided by the first cloud environment.
Owner:ORACLE INT CORP

A video cloud transcoding task scheduling method based on HHO algorithm

The application discloses a video cloud transcoding task scheduling method based on a HHO algorithm, and belongs to the technical field of cloud computing optimization scheduling, and comprises the following steps: S1: splitting a video stream into multiple GOP tasks capable of independent transcoding through a video splitter; and S2: establishing a target function required by video cloud transcoding task scheduling.In the application, a Harris hawk optimization scheduler is designed to schedule video transcoding tasks, a reverse learning strategy and a logarithmic spiral factor are used to improve the HHO algorithm, the convergence speed and optimization precision of the application are improved, a double-target function of transcoding time and transcoding overhead is established, the improved HHO algorithm is used to iteratively optimize the target function, and the best mapping scheme of the video transcoding task and the virtual machine resource is found out.The application can reduce the video transcoding completion time, reduce the user cost overhead, better meet the QoS demand of video users, and improve the task scheduling efficiency of cloud service providers.
Owner:SHENZHEN UNIV

Method and system for realizing service provider SLA (Service Level Agreement) evaluation dynamic business model

ActiveCN121940311ARealize dynamic and accurate assessmentimprove objectivityTransmissionThird partyEvaluation result
The invention belongs to the technical field of service intelligent evaluation, and particularly provides a service provider SLA evaluation dynamic service model implementation method and system, and the method mainly comprises the steps: obtaining the SLA evaluation source data of a service provider, the SLA evaluation source data comprises operator SLA data, enterprise end-to-end APM data, third-party network quality data, and dependency link probe data between service providers; the method comprises the following steps: by taking service providers as nodes, setting a credibility weight for each node according to a preset rule, determining directed edges between the nodes according to a preset dependency relationship between the service providers, and determining a connection weight of the directed edges according to dependency link probe data; according to the method, dynamic accurate evaluation under multi-dimensional data fusion is realized, the objectivity and credibility of an SLA achievement rate evaluation result are improved, and reliable decision support is provided for enterprises to screen cloud service providers and optimize service deployment.
Owner:CHINA COMPUTER DIGITAL (BEIJING) INFORMATION TECHNOLOGY CO LTD

Method to establish a secure channel

Method to establish a secure channel between the owner of a software payload and the software payload itself when running into a hardware-based trusted execution environment, HW TEE, at the instance of a cloud service provider, including sending, by the owner, a nonce to the software payload; generating, by the software payload, a payload key pair: public key and private key; mixing, by the software payload, the payload public key with the nonce; computing, by the HW TEE, an attestation using this nonce mixed with the payload public key; sending, by the software payload, the attestation, and the payload public key to the owner; verifying, by the owner, the attestation using the sent nonce mixed with the received payload public key; generating, by the software payload and the owner, a session key; and establishing a secure channel between the owner and the software payload running into the HW TEE.
Owner:THALES DIS FRANCE SA

Multi-region login

A system for providing login to a network of a cloud service provider via more than one region is described herein. For example, the system and approaches may store authentication information in multiple regions allowing for authentication in the multiple regions.
Owner:ORACLE INT CORP

Computer and Network Interface Controller Offloading Encryption Processing to the Network Interface Controller and Using Derived Encryption Keys

Encryption operations are securely offloaded to a network interface controller (NIC). Encryption keys are securely transferred from a virtual machine (VM) to the NIC and data is securely transferred from encrypted VM memory to secure buffers in the NIC. The NIC handles the encryption and decryption operations in hardware, greatly increasing encryption performance while not reducing security. This is especially useful in cloud server environments, so the cloud service provider does not have access to the encryption keys or the unencrypted data. The offloaded operations are performed with numerous different communication protocols, including RDMA, QUIC, IPsec underlay and WireGuard.
Owner:DREAMBIG SEMICON INC

System and method for connecting virtual networks in branch sites to the cloud

The present technology relates to controlling and managing resources in both a software-defined cloud interconnect (SDCI) provider and a cloud service provider via a single network controller, and further connecting virtual networks in branch sites to virtual networks in the cloud service provider. The network controller can perform the following operations: establishing a network gateway in the SDCI provider, establishing cross-connectivity between the network gateway in the SDCI provider and one or more clouds, grouping one or more virtual networks in the one or more clouds and one or more virtual networks in the branch sites into a tag, and establishing a connection between the one or more virtual networks in the one or more clouds and the one or more virtual networks in the branch sites using the tag.
Owner:CISCO TECHNOLOGY INC

Architecture for offering a service of a first cloud service provider via a second cloud service provider

An architecture for offering a service of a first cloud service provider via a second cloud service provider is disclosed. A first cloud service provider infrastructure includes a first infrastructure and a second infrastructure. The first infrastructure is physically connected to a third infrastructure of a second cloud service provider infrastructure based on a first protocol. The first infrastructure is also physically connected to the second infrastructure based on a second protocol that is different from the first protocol. Using the first and second infrastructures, low latency high-bandwidth cross-cloud services can be provisioned and managed between private clouds of different cloud service providers.
Owner:ORACLE INT CORP

System and method for describing and visualizing allowed, denied, chained and effective access to a system

Systems and methods are disclosed relating to identity governance and privileged access control in a distributed networked computing environment for cloud based computing services. Embodiments disclosed include a logical model developed to describe the effective access of multiple cloud service providers (CSPs), each of which may be based on different access systems. The resulting system can then provide a singular experience across all CSPs used by users, giving users a clear picture of how access is achieved.
Owner:SAILPOINT TECHNOLOGIES INC

Provisioning cloud service of first cloud service provider using control plane of second cloud service provider

Techniques for provisioning cloud services of a first cloud service provider using a control plane of a second cloud service provider are disclosed. Technologies include detecting that a request for a cloud service provided by a first cloud service provider has been received from a second cloud environment of a second cloud service provider different from the first cloud service provider. The technique further includes, upon detecting that the request for the cloud service has been received, provisioning the first set of resources within the first cloud environment and linking the first set of resources to a second set of resources within the second cloud environment. Linking the first set of resources to the second set of resources enables data about the cloud service to be transferred from the second cloud environment to the first cloud environment.
Owner:ORACLE INT CORP

Multi-cloud bill charging method and system, electronic equipment and medium

The invention relates to the technical field of financial management, in particular to a multi-cloud bill charging method and system, electronic equipment and a medium, and the method comprises the steps: obtaining original bill data provided by a plurality of cloud service providers; performing standardized conversion processing on the obtained original bill data provided by the cloud service provider to obtain bill data in a unified format; on the basis of a pre-established customer pricing rule configuration table, matching a corresponding pricing rule for each customer, and performing expense calculation on the bill data in the unified format according to the matched pricing rule to generate a settlement bill containing the expense payable by the customer; the whole process is driven through a bill pulling configuration table, a field mapping configuration table and a customer pricing rule configuration table, so that'configuration namely access' is realized, and the maintenance cost and the iteration period of the system are greatly reduced; and full-link automation from data acquisition and standardization conversion to cost calculation and bill generation is realized.
Owner:XIAN DIANGAO NET TECH CO LTD

A cloud computing-based cross-platform big data resource optimization method and system

PendingCN122285448AVirtualizationEngineering
This invention discloses a cross-platform big data resource optimization method and system based on cloud computing, relating to the fields of cloud computing and big data technology. It includes: S1, collecting raw indicator data from different cloud service providers, different virtualization technologies, and different big data frameworks, and simultaneously extracting descriptive information corresponding to each raw indicator data. The descriptive information includes the indicator name, resource type, statistical caliber, aggregation method, and collection source. This invention constructs a unified resource indicator semantic library by collecting raw indicators and descriptive information from multiple sources to achieve indicator semantic parsing and mapping, eliminating semantic ambiguity between indicators on different platforms; it compares and synchronously calibrates the time of each monitoring source by marking and calibrating the time base; it unifies the indicator time step through sampling feature normalization processing, and then constructs accurate task-level resource profiles with coverage, consistency, and integrity labels according to task instances and stages.
Owner:LUOYANG HONGLIN NETWORK TECHNOLOGY CO LTD

Provisioning and managing resources within a cloud infrastructure of a first cloud service provider for a cloud service offered by a second cloud service provider

Techniques are disclosed for provisioning and managing resources within a cloud infrastructure of a first cloud service provider for a cloud service offered by a second cloud service provider. Cross-cloud services can be provisioned and managed by and between private clouds of cloud service providers. The techniques include receiving a request for a cloud service by a component of a first private cloud within a first cloud environment and from a component of a second private cloud within a second cloud environment. The techniques further include the component of the first private cloud performing one or more operations to establish network connectivity prerequisites for network connectivity between the first private cloud and the second private cloud and causing one or more components of the first private cloud to provision the cloud service in the second private cloud.
Owner:ORACLE INT CORP

Method and system for routing traffic to a local application interface

PendingUS20260039587A1TransmissionPathPingEngineering
Aspects of the subject disclosure may include, for example, selecting between paths for traffic to be routed between a communication device and an application of a cloud service provider, where the selecting is based on receiving or otherwise obtaining a local path identifier (e.g., announced by a local RIB associated with an intra-metro network over which a local path is connected); and routing the traffic between the communication device and the application of the cloud service provider via the local path responsive to the local path identifier, where the local path bypasses or otherwise avoids an MPLS core, and where a non-local path of the paths is over the MPLS core. Other embodiments are disclosed.
Owner:AT&T INTELLECTUAL PROPERTY I L P

Factory management system data access method and system based on double-entrance hybrid deployment

According to the factory management system data access method and system based on double-entrance hybrid deployment provided by the invention, through a double-entrance hybrid deployment architecture and a dynamic perception control mechanism, deep decoupling of client-side independent deployment sense and actual cloud storage is effectively realized; users of small and medium-sized enterprises can perceive a traditional local deployment system in a use process, so that psychological obstacles on data cloud are eliminated; meanwhile, all core production data are centrally stored in the cloud, the professional safety protection capability and the low-cost storage advantage of a cloud service provider are fully utilized, a company headquarters can directly access production operation data of customer factories in real time through an independent public network entrance, and efficient remote management and control and unification and coordination of multiple factories are achieved. According to the scheme, on the premise that local hardware burdens of clients are not increased and data consistency is not sacrificed, contradictions in three aspects of safety, cost and management efficiency are balanced, and the digital transformation requirements of vast small and medium-sized manufacturing enterprises in China at present are particularly met.
Owner:NANJING FRONTIER VENTURE CAPITAL CO LTD

Anti-collusion efficient multi-user searchable encryption method

The invention is suitable for the technical field of network information security, provides an anti-collusion efficient multi-user searchable encryption method, and relates to a cloud service provider, a data owner and a data user. A data owner encrypts data, constructs an encrypted index and then hosts the encrypted index to a cloud server, and an authorized user realizes effective retrieval and analysis under the condition of not decrypting the data. According to the method, an Obliview Map (OMAP) and a symmetric encryption algorithm are combined, and an independent key is adopted for each data user, so that cross-user leakage (anti-collusion) is prevented; the scheme that the auxiliary data is stored in the server through the OMAP is adopted, the problem of information synchronization between a data owner and a data user in multi-user searchable encryption is solved, meanwhile, the access mode of the auxiliary data is hidden, and forward privacy is guaranteed. According to the method, the security and the efficiency in a multi-user scene are considered, and the method is suitable for efficiently retrieving and sharing various encrypted files hosted remotely.
Owner:BEIJING SHENZHOU BANGBANG TECH SERVICE CO LTD

Systems and methods for data migration

Systems and methods for data migration are provided. A method for migrating bulk data from a first data platform to a second data platform includes: providing a virtual machine (VM) on a cloud service provider subscription, migrating access control list (ACL) information, one or more legal tags, and reference data from the first data platform to the second data platform, using the VM, analyzing data types of the bulk data, generating a file-generic data migration pipeline from the first data platform to the second data platform, using the VM, fetching storage records for the bulk data from the first data platform using the VM, migrating the bulk data from the first data platform to the second data platform, using the VM, validating the migrated bulk data in the second data platform, and synchronizing the migrated bulk data in the second data platform with changes made since the migrating began.
Owner:SCHLUMBERGER TECH CORP

processing and sending usage information of a private cloud network available from a first cloud service provider to a second cloud service provider

PendingCN122295653APrivate networkEngineering
Disclosed is a technique for providing a first service from a first computing resource of a first cloud service provider (CSP) to a user having a first user account at a second CSP, the first service being provided via the user's first private network at the second CSP. The technique also includes transmitting data between second private networks communicatively coupled to the first private network, the second private network being associated with the user's second user account at the first CSP. The technique further includes collecting usage data associated with at least one of the first or second private networks by the second computing resource of the first CSP. The technique also includes transmitting usage data from the second computing resource of the first CSP to a second service of the second CSP.
Owner:ORACLE INT CORP

Enabling services based on infrastructure distributed between multiple cloud service providers using overlay bridge

The techniques described herein relate to a first infrastructure provided by a first cloud service provider, wherein the first infrastructure is connected, using an overlay bridge, to a second infrastructure of a second cloud service provider that is different from the first cloud service provider, wherein the first infrastructure comprises a first set of compute resources and the second infrastructure comprises a second set of compute resources; the first infrastructure is configured to form a cloud network between the first set of compute resources and a second set of compute resources; and the cloud network is configured to provide a cloud service of the second cloud service provider to a customer of the first cloud service provider using the first set of compute resources and the second set of compute resources.
Owner:ORACLE INT CORP

Inventory monitoring for cloud resource protection in real time

Disclosed are systems, apparatuses, methods, and computer-readable media for inventory monitoring in a multi-cloud network environment. A method includes receiving user input via a controller's interface, wherein the input includes first account information granting access to a first virtual private cloud and a second virtual private cloud, both hosted by a cloud service provider (CSP). The controller queries the first and second virtual private clouds using the respective account information and the CSP's APIs to identify resources, gathering them into an inventory, and maintains a mapping of tags to the resources, associating each tag with a specific security policy. The controller forwards a first subset of tag-resource mappings to a first security gateway in the first virtual private cloud, enabling automatic application of corresponding security policies upon instantiation of tagged resources.
Owner:CISCO TECHNOLOGY INC