Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

38 results about "Hostname" patented technology

In computer networking, a hostname (archaically nodename) is a label that is assigned to a device connected to a computer network and that is used to identify the device in various forms of electronic communication, such as the World Wide Web. Hostnames may be simple names consisting of a single word or phrase, or they may be structured.

Systems and methods for counter-reconnaissance in cloud infrastructure to disrupt adversarial targeting

The present invention relates to a cybersecurity system for preventing adversarial reconnaissance in cloud, hybrid, and multi-cloud environments by dynamically modifying user authentication identifiers, hostnames and fully qualified domain names. The system updates login usernames in real time using randomized, non-repeating values generated from a configurable dictionary. Updates occur at scheduled, random, coordinated, or event-triggered intervals to disrupt profiling and targeting attempts. When identifiers are changed, associated sessions and tokens are invalidated to prevent reuse. The system monitors expired credential usage to detect potential reconnaissance, generating alerts with intelligence such as IP addresses, timestamps, and affected resources. By eliminating predictable identity patterns, the system defends against reconnaissance-based attacks, unauthorized access attempts, and other credential-driven threats, thereby improving organizational security across cloud platforms.
Owner:FRENETIK LLC

Server name indication SNI identification method and device based on FPGA

The invention discloses a server name indication SNI identification method and device based on an FPGA, and the method comprises the steps: receiving an Ethernet data packet, obtaining a 72-byte data stream for a current clock period, moving one byte from the first byte of the data stream for one time according to a sliding window with the length of 9 bytes, carrying out the interception, obtaining 64 groups of sub-data streams, and carrying out the recognition of the SNI for each group of sub-data streams, matching the sub-data stream with a preset 9-byte server name indication SNI feature code, and if the matching is successful, obtaining the successfully matched sub-data stream; determining the length of a host name according to the values of the last two bytes in the successfully matched sub-data streams, determining the byte position of a host name field in the Ethernet data packet, and extracting a host name character string from the Ethernet data packet; and if the value of the extracted host name character string meets a preset character string threshold value, outputting a corresponding host name. According to the method and the device, the host name in the Ethernet data packet can be effectively identified at a line speed.
Owner:HANGZHOU XINQI ELECTRONIC TECH CO LTD

Inline detect and block relayed DNS tunneling traffic

The present application discloses a method, system, and computer system for detecting DNS tunneling traffic. The method includes (i) obtaining non-DNS network traffic across an enterprise network, (ii) obtaining a hostname comprised in the non-DNS network traffic, (iii) querying a security service for a Domain Name System (DNS) tunneling attack verdict based at least in part on the hostname, (iv) determining whether the non-DNS network traffic is malicious traffic based at least in part on the DNS tunneling attack verdict, and (v) handling the non-DNS network traffic based at least in part on a determination of whether the non-DNS network traffic is malicious traffic based at least in part on the DNS tunneling attack verdict.
Owner:PALO ALTO NETWORKS INC

Data protection in cloud data platform

A system is disclosed comprising a memory containing instructions and one or more computer processors. When the instructions are executed, the system performs an operation to configure a Domain Name System (DNS) proxy, executing in a node of a cloud data platform associated with a first account, to perform hostname resolution of an Account Host Identifier (AHID) of the first account. The DNS proxy receives a DNS request from a process executing in a pod of the node, and the system fails to resolve the DNS request if the name in the DNS request differs from the AHID of the first account. The system returns an Internet Protocol (IP) address if the name in the DNS request matches the AHID. The process executing in the pod of the node is configured to send data to data storage of the cloud data platform using the returned IP address.
Owner:SNOWFLAKE INC

Methods and Systems for Efficient Encrypted SNI Filtering for Cybersecurity Applications

A packet-filtering system described herein may be configured to filter packets with encrypted hostnames in accordance with one or packet-filtering rules. The packet-filtering system may resolve a plaintext hostname from ciphertext comprising an encrypted Server Name Indication (eSNI) value. The packet-filtering system may resolve the plaintext hostname using a plurality of techniques. Once the plaintext hostname is resolved, the packet-filtering system may then use the plaintext hostname to determine whether the packets are associated with one or more threat indicators. If the packet-filtering system determines that the packets are associated with one or more threat indicators, the packet-filtering system may apply a packet filtering operation associated with the packet-filtering rules to the packets.
Owner:CENTRIPETAL NETWORKS INC

Overlay network ingress edge region selection

This disclosure relates to enhanced overlay network-based transport of traffic to and from customer branch office locations, facilitated through the use of the Internet-based overlay routing. A method of selecting an ingress edge region of the overlay network begins by mapping a service hostname to an IKEv2 destination of an outer IPsec tunnel associated with a first overlay network edge. An IKEv2 session is established from the first overlay network edge to the customer router. Upon tunnel establishment, a secondary lookup is performed to determine whether the first overlay network edge is an appropriate ingress region. Based on a response to the secondary lookup, a IKEv2 redirect is issued to a second overlay network edge. A new tunnel is then established from the second overlay network edge to the customer router. Thereafter, an additional lookup may also be performed to determine whether the second overlay network edge remains an appropriate ingress region.
Owner:AKAMAI TECHNOLOGIES INC

Network device identification

ActiveUS12671689B2Data packInternet traffic
An apparatus in a computer network system extracts network traffic metadata related to a client computing device of a local network. The network traffic metadata is required by a device fingerprinting process. In response to detecting a multicast DNS (mDNS) packet query in the network traffic metadata, the apparatus collects an mDNS hostname related to the client computing device from the mDNS packet query. In response to determining, at a first point in time, that a dynamic host configuration protocol (DHCP) hostname related to the client computing device is unavailable in the network traffic metadata, the apparatus assigns the mDNS hostname to the client computing device.
Owner:CUJO LLC

Service discovery across tunnel endpoints in an overlay network

Embodiments of the present disclosure relate to service discovery across tunnel endpoints in overlay networks. In an example, a network device can receive, from a client device, a multicast query for a service advertised by a host device connected to another network device. The network device is configured as a first virtual tunnel endpoint (VTEP) in an overlay network, while the other network device is configured as a second VTEP. The network device can determine whether a hostname of the host device corresponding to a servicename in the multicast query exists in a resource record. In response to determining that the hostname exists in the resource record, the network device can identify an overlay network path corresponding to the hostname from the resource record. The network device can encapsulate the multicast query based on an overlay encapsulation protocol implemented at the first VTEP, and route the encapsulated multicast query to the host device via the overlay network path.
Owner:HEWLETT PACKARD ENTERPRISE DEV LP

Recommendation method and device of Internet of Things equipment, electronic equipment, storage medium and program product

The invention provides an Internet of Things equipment recommendation method and device, electronic equipment, a storage medium and a program product, and relates to the technical field of Internet of Things. Wherein the index data set is determined through the IoT device data and the behavior data of the user, and the feature data is extracted according to the index data set, so that hidden information behind user behaviors can be further mined. Through the IoT device recommendation model, the most matched IoT device is automatically obtained, interference of human factors is avoided, and the accuracy of recommending the IoT device is improved. According to the method, the most matched IoT device is determined according to the effective HOSTNAME, the recombined URL and the initial weight, the practical flexibility of the IoT device is improved, and the application range of the IoT device is widened.
Owner:CHINA MOBILEHANGZHOUINFORMATION TECH CO LTD +3

Construction method and equipment of distributed training environment and storage medium

The invention discloses a construction method and device of a distributed training environment and a storage medium, and relates to the technical field of cloud computing, and the method comprises the steps that after a user selects a cluster identifier, a resource partition, a node number and a mirror image parameter, a deployment description containing a computing chip, a memory and a high-speed network is dynamically combined and generated from a resource configuration template library; according to the described computing resource requirements, comparing the real-time states of the nodes to determine an adaptive target node; matching calculation and communication resources of the configured target node to obtain the configured target node; and scheduling a container group defined by deployment description to the node, executing an entry script to complete safe mutual trust among containers, sequential host name allocation, environment variable injection and a synchronous barrier, ensuring consistent startup of multiple copies, and completing multi-machine training environment deployment. The problem that the multi-machine training environment construction efficiency is remarkably low is solved, the manual configuration cost of the network and resources is reduced, and the stability and isolation under multi-user concurrency are guaranteed.
Owner:SUN YAT SEN UNIV

Inline detect and block relayed DNS tunneling traffic

ActiveUS12732521B2Domain nameInternet traffic
The present application discloses a method, system, and computer system for detecting DNS tunneling traffic. The method includes (i) obtaining non-DNS network traffic across an enterprise network, (ii) obtaining a hostname comprised in the non-DNS network traffic, (iii) querying a security service for a Domain Name System (DNS) tunneling attack verdict based at least in part on the hostname, (iv) determining whether the non-DNS network traffic is malicious traffic based at least in part on the DNS tunneling attack verdict, and (v) handling the non-DNS network traffic based at least in part on a determination of whether the non-DNS network traffic is malicious traffic based at least in part on the DNS tunneling attack verdict.
Owner:PALO ALTO NETWORKS INC

Routing application control and data-plane traffic in support of cloud-native applications

Techniques for using computer networking protocol extensions to route control-plane traffic and data-plane traffic associated with a common application are described herein. For instance, a traffic flow associated with an application may be established such that control-plane traffic is sent to a control-plane node associated with the application and data-plane traffic is sent to a data-plane node associated with the application. When a client device sends an authentication request to connect to the application, the control-plane node may send an indication of a hostname to be used by the client device to send data-plane traffic to the data-node. As such, when a packet including the hostname corresponding with the data-plane node is received, the packet may be forwarded to the data-plane node.
Owner:CISCO TECHNOLOGY INC

A data processing method, device, storage medium and electronic device

The application discloses a data processing method and device, a storage medium and an electronic device, and relates to the technical field of computers. The method comprises the following steps: firstly, in response to the fact that a UDM server receives transparent data update information sent by an AS, acquiring number information corresponding to the transparent data update information; determining a target HSS corresponding to the transparent data update information, a host name and location information of the target HSS based on a number segment corresponding to the number information; according to the location information, if it is judged that the distance between the UDM server and the target HSS is less than or equal to a preset distance threshold, triggering a preset update transparent data switch to open a direct channel between the UDM server and the target HSS; and sending the transparent data update information to the target HSS through the direct channel according to the host name. Compared with the prior art, the application can enable the target HSS to receive the transparent data update information of the UDM server in real time, ensure that a supplementary service takes effect, and improve user experience.
Owner:CHINA MOBILE GROUP SICHUAN +1

Link tracking sampling rate adjusting method and device

PendingCN121858401AImplement tracking sampling rate adjustment methodAchieve automated real-time adjustmentsProgram initiation/switchingHardware monitoringData ingestionData mining
The invention discloses a link tracking sampling rate adjusting method and device, relates to the technical field of cloud computing and can also be used in the financial field, and the method comprises the following steps: obtaining tracking index data including a tracking sampling rate and index data of a JAVA virtual machine; extracting host name and service name information based on the index data of the JAVA virtual machine; and adjusting the tracking sampling rate corresponding to the corresponding service of the corresponding host based on the index data of the JAVA virtual machine, the tracking sampling rate, the host name and the service name information. Therefore, automatic real-time adjustment of the link tracking sampling rate of the specific service on the specific host is realized, manual intervention is not needed, the labor cost is reduced, and the problem of data redundancy caused by improper setting of the sampling rate is avoided.
Owner:CHINA CONSTRUCTION BANK +1

Network security with server name indication

A computing device receives an IP address extracted from an encrypted client hello (ECH) enabled transport layer security (TLS) connection request from a client computing device and identifies, from a list of a plurality of hostnames, a set of hostnames matching the IP address. The device generates a reduced list of the set hostnames matching the IP address and generates a reduced list of the set of hostnames matching the IP address by removing hostnames that do not support an ECH extension of a TLS standard from the set of hostnames matching the IP address. Finally, the device retrieves reputation information related to one or more hostnames of the reduced list for protecting the client computing device and / or a computer network based on the reputation information.
Owner:CUJO LLC

FPGA-based server name indication (SNI) identification method and device

This application discloses a Server Name Indicator (SNI) identification method and apparatus based on FPGA. It receives Ethernet data packets and, for the current clock cycle, acquires a 72-byte data stream. Using a 9-byte sliding window, it truncates the data stream one byte at a time, resulting in 64 sub-data streams. For each sub-data stream, it matches it against a preset 9-byte Server Name Indicator (SNI) feature code. If a match is successful, the matched sub-data stream is acquired. The length of the hostname is determined based on the last two bytes of the matched sub-data stream, and the byte position of the hostname field in the Ethernet data packet is determined. The hostname string is extracted from the Ethernet data packet. If the extracted hostname string value meets a preset string threshold, the corresponding hostname is output. This application can efficiently identify the hostname in Ethernet data packets at line speed.
Owner:HANGZHOU XINQI ELECTRONIC TECH CO LTD

Hostname pre-localization

Examples of the present disclosure relate to hostname pre-localization. In examples, a service uses a content distribution network (CDN) to provide at least a part of the computing functionality associated with the service. A pre-localized hostname may be used to direct the client computing device to a specific edge server of the CDN that is associated with the computing functionality. In examples, a service receives an initiation request from a client computing device for the computing functionality provided by the CDN. The service generates a pre-localization request comprising pre-localization information and provides the pre-localization request to the CDN. Accordingly, the CDN generates a pre-localized hostname associated with an edge server based on the pre-localization information. The pre-localized hostname is provided to the service, which is then provided to the client computing device, thereby directing the client computing device to the specific edge server of the CDN.
Owner:SANDPIPER CDN LLC

Systems and methods implementing name resolution and virtual addresses to enable network connections

Systems for performing methods which include receiving by a VPN server, from a VPN client operating on a computing device, over a VPN connection a first message including a first IP address. The VPN server determines a hostname based on the first IP address, resolves the hostname to a second IP address, and transmits the first message to a network device at the second IP address.
Owner:GEN DIGITAL INC

Managing webtop resource hostname resolution

Technology related to resolution of hostname for webtop resource access is disclosed. In one example, a method includes receiving request for accessing one or more resources from the webtop associated with the user. A usage pattern data of the user for the webtop is determined. For the requested resource, hostname pre-resolution data is determined based on the usage pattern data and an access policy before a given resource is requested for access. A response for the resource access request is generated based on the determined hostname pre-resolution data and the access policy. The response for the resource access request comprises an address of at least one corresponding backend server for redirecting the user to access the requested resource.
Owner:F5 NETWORKS INC

Telemetry-driven automatic identity-based micro-segmentation recommendations and runtime enforcement

In an embodiment, a method manages application security in a microservices environment. A local control plane collects telemetry data from microservices via their APIs, aggregates the data into a payload, and transmits it to a central control plane through a message queue. The central control plane constructs a graph representing microservice interactions based on the telemetry data and compares the current graph to a previous version. The method further includes checking whether a destination service matches a malicious hostname or IP address and marking the connection as denied if malicious. The method further includes evaluating compliance with predefined policies and denying interactions that violate those policies for each interaction.
Owner:OPERANT AI INC

Interface test task access request address directing method, system and storage medium

This application provides a method, system, and storage medium for redirecting access request addresses in interface testing tasks. The method includes: parsing a preset access request address redirection instruction to obtain a target domain name and a target network address; generating access address redirection rules associated with the test task based on the matching relationship between the target domain name and the original access request address of the test case; intercepting access requests in the test task; mapping the hostname in the access request address to the target domain name according to the access address redirection rules; and resolving the target domain name to point to the target network address. This application decouples the interface testing environment configuration from the original address of the test case, allowing temporary verification of new domain names and addresses without modifying the test cases, significantly reducing the workload of modifying and restoring interface addresses. The configuration automatically expires after testing, and the entire process is automated without manual intervention, avoiding test environment chaos caused by configuration remnants.
Owner:FUJIAN TQ DIGITAL

Data protection in cloud data platform

A system is disclosed comprising a memory containing instructions and one or more computer processors. When the instructions are executed, the system performs an operation to configure a Domain Name System (DNS) proxy, executing in a node of a cloud data platform associated with a first account, to perform hostname resolution of an Account Host Identifier (AHID) of the first account. The DNS proxy receives a DNS request from a process executing in a pod of the node, and the system fails to resolve the DNS request if the name in the DNS request differs from the AHID of the first account. The system returns an Internet Protocol (IP) address if the name in the DNS request matches the AHID. The process executing in the pod of the node is configured to send data to data storage of the cloud data platform using the returned IP address.
Owner:SNOWFLAKE INC

Determining and Enforcing Data Location of Internet Traffic Routing Using Transport Layer Security (TLS) Server Name Indication (SNI)

PendingUS20260100970A1Securing communicationServer agentInternet traffic
A compute server receives a secure session request as part of a secure session handshake. The request includes a Server Name Indication (SNI) field. The compute server determines a hostname from the SNI field and determines that a policy is applicable for the determined hostname. The policy indicates a first location where decrypting and servicing traffic for the determined hostname is permitted. The compute server determines that its location does not satisfy the determined policy. The compute server proxies the secure session handshake between the client network application and a second server that satisfies the determined policy. The compute server proxies layer 4 traffic transmitted over the secure session between the client network application and the second server.
Owner:CLOUDFLARE INC

Data synchronization method of master application server, storage medium and electronic device

The application discloses a data synchronization method of a main application server, which comprises the following steps: analyzing an instruction sent by an external device and obtaining a plurality of instruction data; each kind of instruction data is to be synchronized to a target; a plurality of log files are generated according to each target; each log file comprises a generation time stamp of the file and a host name of the target; an index file is generated according to all the log files corresponding to the same target; each index file comprises the host name of the target, current write file information and current synchronization information; a log file to be written is acquired according to the host name of the target and the current write file information, so as to write corresponding instruction data into the log file to be written; a log file to be synchronized is acquired according to the host name of the target and the current synchronization information, so as to read the instruction data written in the log file to be synchronized; and when a synchronization task triggering condition is met, the instruction data read from the log file to be synchronized is synchronized to the corresponding target.
Owner:CASCO SIGNAL LTD

System and method for storage based path discovery

ActiveUS12699529B2Computer hardwarePathPing
A method, computer program product, and computing system for processing fabric device management interface (FDMI) information about one or more initiator devices from a fibre channel (FC) switch to allow a storage array to associate host bus adapter worldwide name (HBA-WWN) port information with one or more hostnames corresponding to the one or more initiator devices. The method may further include transmitting from each port available in the storage array, at predetermined intervals, a remote link service (RLS) signal to each HBA-WWN port in communication with the storage array. Further, the method may include processing a confirmation signal associated with receipt of the RLS signal at a first HBA-WWN port on a first initiator device, and in response to processing the confirmation signal, marking a successful path used to transmit the RLS signal as valid.
Owner:DELL PROD LP

IPv6 single stack network address efficient scanning method and system based on host name association

The invention relates to the technical field of IPv6 network scanning and network security monitoring, in particular to an IPv6 single-stack network address high-efficiency scanning method and system based on host name association, and the method comprises the steps: obtaining a host name: in an IPv6 single-stack network environment, through a mode of combining host name active discovery and host name passive monitoring, obtaining the host name of the IPv6 single-stack network address; acquiring host name information of survival nodes on a local link, and constructing a host name list; and IPv6 address discovery: based on the host name list, the scanning host sends a query message in parallel by using a multicast domain name system protocol, namely an mDNS protocol and a link local multicast name resolution protocol, namely an LLMNR protocol, receives a node response message, analyzes the message, obtains IPv6 address configuration information corresponding to the host name, and forms an IPv6 address list. Through a host name discovery mechanism combining active triggering and passive monitoring and dual-protocol parallel query, efficient scanning of addresses in an IPv6 single-stack network is realized, and coverage breadth, scanning integrity and operation efficiency are considered.
Owner:Chinese People's Liberation Army Cyberspace Force Information Engineering University

Location aware trusted cloud resource provisioning

A system can receive an untrusted onboard announcement message from a remote computer. The system can, based on the untrusted onboard announcement message, initiate an onboarding service policy to verify a device location claims policy associated with the remote computer. The system can receive an indication of a remote access controller hardware component of the remote computer, wherein the indication is of verifying a network port authentication policy applicable to determine whether a port-based network access control protocol certificate hostname that is associated with the remote computer matches an entity attestation token attribute extensible authentication protocol-transport layer platform certificate hostname of the remote access controller hardware component to determine a network authentication status. The system can determine whether device onboard location is successful based on a device location verification policy status and the indication.
Owner:DELL PROD LP

Establishing and using a tunnel from an origin server in a distributed edge compute and routing service

An edge server of a distributed edge compute and routing service receives a tunnel connection request from a tunnel client residing on an origin server, that requests a tunnel be established between the edge server and the tunnel client. The request identifies the hostname that is to be tunneled. An IP address is assigned for the tunnel. DNS record(s) are added or changed that associate the hostname with the assigned IP address. Routing rules are installed in the edge servers of the distributed edge compute and routing service to reach the edge server for the tunneled hostname. The edge server receives a request for a resource of the tunneled hostname from another edge server that received the request from a client, where the other edge server is not connected to the origin server. The request is transmitted from the edge server to the origin server over the tunnel.
Owner:CLOUDFLARE INC