Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

28 results about "Hostname" patented technology

In computer networking, a hostname (archaically nodename) is a label that is assigned to a device connected to a computer network and that is used to identify the device in various forms of electronic communication, such as the World Wide Web. Hostnames may be simple names consisting of a single word or phrase, or they may be structured.

Inline detect and block relayed DNS tunneling traffic

The present application discloses a method, system, and computer system for detecting DNS tunneling traffic. The method includes (i) obtaining non-DNS network traffic across an enterprise network, (ii) obtaining a hostname comprised in the non-DNS network traffic, (iii) querying a security service for a Domain Name System (DNS) tunneling attack verdict based at least in part on the hostname, (iv) determining whether the non-DNS network traffic is malicious traffic based at least in part on the DNS tunneling attack verdict, and (v) handling the non-DNS network traffic based at least in part on a determination of whether the non-DNS network traffic is malicious traffic based at least in part on the DNS tunneling attack verdict.
Owner:PALO ALTO NETWORKS INC

Data protection in cloud data platform

A system is disclosed comprising a memory containing instructions and one or more computer processors. When the instructions are executed, the system performs an operation to configure a Domain Name System (DNS) proxy, executing in a node of a cloud data platform associated with a first account, to perform hostname resolution of an Account Host Identifier (AHID) of the first account. The DNS proxy receives a DNS request from a process executing in a pod of the node, and the system fails to resolve the DNS request if the name in the DNS request differs from the AHID of the first account. The system returns an Internet Protocol (IP) address if the name in the DNS request matches the AHID. The process executing in the pod of the node is configured to send data to data storage of the cloud data platform using the returned IP address.
Owner:SNOWFLAKE INC

Methods and Systems for Efficient Encrypted SNI Filtering for Cybersecurity Applications

A packet-filtering system described herein may be configured to filter packets with encrypted hostnames in accordance with one or packet-filtering rules. The packet-filtering system may resolve a plaintext hostname from ciphertext comprising an encrypted Server Name Indication (eSNI) value. The packet-filtering system may resolve the plaintext hostname using a plurality of techniques. Once the plaintext hostname is resolved, the packet-filtering system may then use the plaintext hostname to determine whether the packets are associated with one or more threat indicators. If the packet-filtering system determines that the packets are associated with one or more threat indicators, the packet-filtering system may apply a packet filtering operation associated with the packet-filtering rules to the packets.
Owner:CENTRIPETAL NETWORKS INC

Network device identification

ActiveUS12671689B2Data packInternet traffic
An apparatus in a computer network system extracts network traffic metadata related to a client computing device of a local network. The network traffic metadata is required by a device fingerprinting process. In response to detecting a multicast DNS (mDNS) packet query in the network traffic metadata, the apparatus collects an mDNS hostname related to the client computing device from the mDNS packet query. In response to determining, at a first point in time, that a dynamic host configuration protocol (DHCP) hostname related to the client computing device is unavailable in the network traffic metadata, the apparatus assigns the mDNS hostname to the client computing device.
Owner:CUJO LLC

Service discovery across tunnel endpoints in an overlay network

Embodiments of the present disclosure relate to service discovery across tunnel endpoints in overlay networks. In an example, a network device can receive, from a client device, a multicast query for a service advertised by a host device connected to another network device. The network device is configured as a first virtual tunnel endpoint (VTEP) in an overlay network, while the other network device is configured as a second VTEP. The network device can determine whether a hostname of the host device corresponding to a servicename in the multicast query exists in a resource record. In response to determining that the hostname exists in the resource record, the network device can identify an overlay network path corresponding to the hostname from the resource record. The network device can encapsulate the multicast query based on an overlay encapsulation protocol implemented at the first VTEP, and route the encapsulated multicast query to the host device via the overlay network path.
Owner:HEWLETT PACKARD ENTERPRISE DEV LP

Recommendation method and device of Internet of Things equipment, electronic equipment, storage medium and program product

The invention provides an Internet of Things equipment recommendation method and device, electronic equipment, a storage medium and a program product, and relates to the technical field of Internet of Things. Wherein the index data set is determined through the IoT device data and the behavior data of the user, and the feature data is extracted according to the index data set, so that hidden information behind user behaviors can be further mined. Through the IoT device recommendation model, the most matched IoT device is automatically obtained, interference of human factors is avoided, and the accuracy of recommending the IoT device is improved. According to the method, the most matched IoT device is determined according to the effective HOSTNAME, the recombined URL and the initial weight, the practical flexibility of the IoT device is improved, and the application range of the IoT device is widened.
Owner:CHINA MOBILEHANGZHOUINFORMATION TECH CO LTD +3

Construction method and equipment of distributed training environment and storage medium

The invention discloses a construction method and device of a distributed training environment and a storage medium, and relates to the technical field of cloud computing, and the method comprises the steps that after a user selects a cluster identifier, a resource partition, a node number and a mirror image parameter, a deployment description containing a computing chip, a memory and a high-speed network is dynamically combined and generated from a resource configuration template library; according to the described computing resource requirements, comparing the real-time states of the nodes to determine an adaptive target node; matching calculation and communication resources of the configured target node to obtain the configured target node; and scheduling a container group defined by deployment description to the node, executing an entry script to complete safe mutual trust among containers, sequential host name allocation, environment variable injection and a synchronous barrier, ensuring consistent startup of multiple copies, and completing multi-machine training environment deployment. The problem that the multi-machine training environment construction efficiency is remarkably low is solved, the manual configuration cost of the network and resources is reduced, and the stability and isolation under multi-user concurrency are guaranteed.
Owner:SUN YAT SEN UNIV

A data processing method, device, storage medium and electronic device

The application discloses a data processing method and device, a storage medium and an electronic device, and relates to the technical field of computers. The method comprises the following steps: firstly, in response to the fact that a UDM server receives transparent data update information sent by an AS, acquiring number information corresponding to the transparent data update information; determining a target HSS corresponding to the transparent data update information, a host name and location information of the target HSS based on a number segment corresponding to the number information; according to the location information, if it is judged that the distance between the UDM server and the target HSS is less than or equal to a preset distance threshold, triggering a preset update transparent data switch to open a direct channel between the UDM server and the target HSS; and sending the transparent data update information to the target HSS through the direct channel according to the host name. Compared with the prior art, the application can enable the target HSS to receive the transparent data update information of the UDM server in real time, ensure that a supplementary service takes effect, and improve user experience.
Owner:CHINA MOBILE GROUP SICHUAN +1

Link tracking sampling rate adjusting method and device

PendingCN121858401AImplement tracking sampling rate adjustment methodAchieve automated real-time adjustmentsProgram initiation/switchingHardware monitoringData ingestionData mining
The invention discloses a link tracking sampling rate adjusting method and device, relates to the technical field of cloud computing and can also be used in the financial field, and the method comprises the following steps: obtaining tracking index data including a tracking sampling rate and index data of a JAVA virtual machine; extracting host name and service name information based on the index data of the JAVA virtual machine; and adjusting the tracking sampling rate corresponding to the corresponding service of the corresponding host based on the index data of the JAVA virtual machine, the tracking sampling rate, the host name and the service name information. Therefore, automatic real-time adjustment of the link tracking sampling rate of the specific service on the specific host is realized, manual intervention is not needed, the labor cost is reduced, and the problem of data redundancy caused by improper setting of the sampling rate is avoided.
Owner:CHINA CONSTRUCTION BANK +1

Network security with server name indication

A computing device receives an IP address extracted from an encrypted client hello (ECH) enabled transport layer security (TLS) connection request from a client computing device and identifies, from a list of a plurality of hostnames, a set of hostnames matching the IP address. The device generates a reduced list of the set hostnames matching the IP address and generates a reduced list of the set of hostnames matching the IP address by removing hostnames that do not support an ECH extension of a TLS standard from the set of hostnames matching the IP address. Finally, the device retrieves reputation information related to one or more hostnames of the reduced list for protecting the client computing device and / or a computer network based on the reputation information.
Owner:CUJO LLC

Hostname pre-localization

Examples of the present disclosure relate to hostname pre-localization. In examples, a service uses a content distribution network (CDN) to provide at least a part of the computing functionality associated with the service. A pre-localized hostname may be used to direct the client computing device to a specific edge server of the CDN that is associated with the computing functionality. In examples, a service receives an initiation request from a client computing device for the computing functionality provided by the CDN. The service generates a pre-localization request comprising pre-localization information and provides the pre-localization request to the CDN. Accordingly, the CDN generates a pre-localized hostname associated with an edge server based on the pre-localization information. The pre-localized hostname is provided to the service, which is then provided to the client computing device, thereby directing the client computing device to the specific edge server of the CDN.
Owner:SANDPIPER CDN LLC

Managing webtop resource hostname resolution

Technology related to resolution of hostname for webtop resource access is disclosed. In one example, a method includes receiving request for accessing one or more resources from the webtop associated with the user. A usage pattern data of the user for the webtop is determined. For the requested resource, hostname pre-resolution data is determined based on the usage pattern data and an access policy before a given resource is requested for access. A response for the resource access request is generated based on the determined hostname pre-resolution data and the access policy. The response for the resource access request comprises an address of at least one corresponding backend server for redirecting the user to access the requested resource.
Owner:F5 NETWORKS INC

Telemetry-driven automatic identity-based micro-segmentation recommendations and runtime enforcement

In an embodiment, a method manages application security in a microservices environment. A local control plane collects telemetry data from microservices via their APIs, aggregates the data into a payload, and transmits it to a central control plane through a message queue. The central control plane constructs a graph representing microservice interactions based on the telemetry data and compares the current graph to a previous version. The method further includes checking whether a destination service matches a malicious hostname or IP address and marking the connection as denied if malicious. The method further includes evaluating compliance with predefined policies and denying interactions that violate those policies for each interaction.
Owner:OPERANT AI INC

Interface test task access request address directing method, system and storage medium

This application provides a method, system, and storage medium for redirecting access request addresses in interface testing tasks. The method includes: parsing a preset access request address redirection instruction to obtain a target domain name and a target network address; generating access address redirection rules associated with the test task based on the matching relationship between the target domain name and the original access request address of the test case; intercepting access requests in the test task; mapping the hostname in the access request address to the target domain name according to the access address redirection rules; and resolving the target domain name to point to the target network address. This application decouples the interface testing environment configuration from the original address of the test case, allowing temporary verification of new domain names and addresses without modifying the test cases, significantly reducing the workload of modifying and restoring interface addresses. The configuration automatically expires after testing, and the entire process is automated without manual intervention, avoiding test environment chaos caused by configuration remnants.
Owner:FUJIAN TQ DIGITAL

Data protection in cloud data platform

A system is disclosed comprising a memory containing instructions and one or more computer processors. When the instructions are executed, the system performs an operation to configure a Domain Name System (DNS) proxy, executing in a node of a cloud data platform associated with a first account, to perform hostname resolution of an Account Host Identifier (AHID) of the first account. The DNS proxy receives a DNS request from a process executing in a pod of the node, and the system fails to resolve the DNS request if the name in the DNS request differs from the AHID of the first account. The system returns an Internet Protocol (IP) address if the name in the DNS request matches the AHID. The process executing in the pod of the node is configured to send data to data storage of the cloud data platform using the returned IP address.
Owner:SNOWFLAKE INC

Determining and Enforcing Data Location of Internet Traffic Routing Using Transport Layer Security (TLS) Server Name Indication (SNI)

PendingUS20260100970A1Securing communicationServer agentInternet traffic
A compute server receives a secure session request as part of a secure session handshake. The request includes a Server Name Indication (SNI) field. The compute server determines a hostname from the SNI field and determines that a policy is applicable for the determined hostname. The policy indicates a first location where decrypting and servicing traffic for the determined hostname is permitted. The compute server determines that its location does not satisfy the determined policy. The compute server proxies the secure session handshake between the client network application and a second server that satisfies the determined policy. The compute server proxies layer 4 traffic transmitted over the secure session between the client network application and the second server.
Owner:CLOUDFLARE INC

Data synchronization method of master application server, storage medium and electronic device

The application discloses a data synchronization method of a main application server, which comprises the following steps: analyzing an instruction sent by an external device and obtaining a plurality of instruction data; each kind of instruction data is to be synchronized to a target; a plurality of log files are generated according to each target; each log file comprises a generation time stamp of the file and a host name of the target; an index file is generated according to all the log files corresponding to the same target; each index file comprises the host name of the target, current write file information and current synchronization information; a log file to be written is acquired according to the host name of the target and the current write file information, so as to write corresponding instruction data into the log file to be written; a log file to be synchronized is acquired according to the host name of the target and the current synchronization information, so as to read the instruction data written in the log file to be synchronized; and when a synchronization task triggering condition is met, the instruction data read from the log file to be synchronized is synchronized to the corresponding target.
Owner:CASCO SIGNAL LTD

System and method for storage based path discovery

ActiveUS12699529B2Computer hardwarePathPing
A method, computer program product, and computing system for processing fabric device management interface (FDMI) information about one or more initiator devices from a fibre channel (FC) switch to allow a storage array to associate host bus adapter worldwide name (HBA-WWN) port information with one or more hostnames corresponding to the one or more initiator devices. The method may further include transmitting from each port available in the storage array, at predetermined intervals, a remote link service (RLS) signal to each HBA-WWN port in communication with the storage array. Further, the method may include processing a confirmation signal associated with receipt of the RLS signal at a first HBA-WWN port on a first initiator device, and in response to processing the confirmation signal, marking a successful path used to transmit the RLS signal as valid.
Owner:DELL PROD LP

IPv6 single stack network address efficient scanning method and system based on host name association

The invention relates to the technical field of IPv6 network scanning and network security monitoring, in particular to an IPv6 single-stack network address high-efficiency scanning method and system based on host name association, and the method comprises the steps: obtaining a host name: in an IPv6 single-stack network environment, through a mode of combining host name active discovery and host name passive monitoring, obtaining the host name of the IPv6 single-stack network address; acquiring host name information of survival nodes on a local link, and constructing a host name list; and IPv6 address discovery: based on the host name list, the scanning host sends a query message in parallel by using a multicast domain name system protocol, namely an mDNS protocol and a link local multicast name resolution protocol, namely an LLMNR protocol, receives a node response message, analyzes the message, obtains IPv6 address configuration information corresponding to the host name, and forms an IPv6 address list. Through a host name discovery mechanism combining active triggering and passive monitoring and dual-protocol parallel query, efficient scanning of addresses in an IPv6 single-stack network is realized, and coverage breadth, scanning integrity and operation efficiency are considered.
Owner:Chinese People's Liberation Army Cyberspace Force Information Engineering University

Hostname based reverse split tunnel with wildcard support

The present solution provides systems and methods for establishing and implementing a hostname-based split tunneling of client-side network traffic. A driver on a client can receive a first packet of an application that includes a hostname of a destination. The driver can receive from an agent of the client a real IP address and a spoofed IP address corresponding to the hostname, when the hostname matches one of a plurality of hostnames to exclude packet traffic from a VPN tunnel of the agent. The driver can receive from the agent a domain name service (DNS) response that includes the spoofed IP address and send the DNS response to cause the application to include the spoofed IP address in a second packet for the destination.
Owner:CITRIX SYSTEMS INC

Method, device, electronic equipment and storage medium for deploying domain name resolution service

The application provides a method and device for deploying a domain name resolution service, electronic equipment and a storage medium. The method comprises: generating an rpm package according to the processor architecture and kernel version of a target server and uploading the rpm package to a yum source; selecting a deployment node, adding the IP address, hostname and login password information of the target server to the hosts file of the deployment node; installing each service relied on by the domain name resolution service on the target server according to the yum source; generating and running a network configuration file based on an ansible var variable file and a template file; running a monitoring script and starting preprocessing before starting the domain name resolution service when the network configuration file is found; starting an nginx component process, specifying a config file and a log saving path; generating a fast_cgi component configuration file and starting a fast_cgi component process; starting a named component process in response to monitoring that the network configuration file exists; and configuring the interface IP address, route and vxlan.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Content delivery system using embedded requester information

A DNS resolution request for a hostname of a CDN is received. An edge server of the CDN may be identified, which may be associated with a subnet. The subnet is used to generate a response IP address, where the remaining bits of the response IP address may be used to store requestor information (e.g., a requestor IP address). When a client computing device uses the response IP address to access the edge server, requestor information is extracted and associated with client computing device information (e.g., an IP address and / or location, etc.) in an association record. Association records may be used to determine predicted characteristics for devices served by a requestor. When the authoritative DNS server resolves a request from the requestor, such predicted characteristics may be used rather than relying solely on information about a requestor. Thus, an edge server proximate to the predicted location may be returned instead.
Owner:LEVEL 3 COMMUNICATIONS LLC

Methods and systems for implementing very large DNS zones

PendingUS20250379847A1TransmissionDomain nameFully qualified domain name
Systems, methods and devices are provided for registering DNS hostnames of Internet host devices for very large domain zones (VLZ) stored on a DNS server on a network, including setting a pseudo-zone as the VLZ, intercepting DNS updates to the pseudo-zone, mapping the entries in the pseudo-zone into a hierarchy of real parent zones and sub-zones using a mapping formula, and translating DNS updates to the pseudo-zone from an original fully qualified domain name (FQDN) into a at least one new FQDNs and adding the at least one new FQDNs to an authoritative DNS Server.
Owner:BLUECAT NETWORKS USA

Method and system for efficient encrypted SNI filtering for network security applications

The invention relates to a method and system for efficient encrypted SNI filtering for network security applications. A packet filtering system described herein may be configured to filter a filtered packet having an encrypted host name according to one or more packet filtering rules. A packet filtering system may parse a plaintext host name from a ciphertext including an encrypted server name indication (eSNI) value. The packet filtering system may parse a plaintext host name using a variety of techniques. Once the plaintext hostname is parsed, the packet filtering system may then use the plaintext hostname to determine whether the packet is associated with one or more threat indicators. If the packet filtering system determines that the packet is associated with the one or more threat indicators, the packet filtering system may apply a packet filtering operation associated with the packet filtering rule to the packet.
Owner:CENTRIPETAL LTD

Methods and apparatus for designing datacenter facilities

Methods, apparatuses, and computer-readable mediums for designing a datacenter facility include receiving a first request to create a first facility; loading a set of predefined templates comprising at least one of a site template and a rack template; associating, with the first facility, one or more instances of at least one predefined template of the set of predefined templates; determining cable connectivity information of the first facility; displaying a first graphical representation of the first facility indicating the respective locations of the set of equipment associated with the first facility; generating one or more hostnames for addressable equipment of the set of equipment associated with the first facility; submitting the first facility for approval; and notifying the facility designer whether the first facility has been approved by the facility manager.
Owner:RAKUTEN SYMPHONY INC

Information processing device

This invention provides an information processing device that can distinguish which web page a user accessed and interacted with on a website, even if the URL and window title are the same. [Solution] The information processing device determines whether the hostname of the web browser being operated by the information processing device matches a pre-configured globally unique identifier (GUID). If a match is found, it obtains the URL of the web page being viewed by the web browser. Depending on whether the URL contains a string that matches a pre-configured condition file, it determines whether or not to create an operation log. If it determines to create an operation log, it creates a window title change log by changing the window title of the web browser based on the condition file.
Owner:CANON DENSHI KK