Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

1118 results about "Network address" patented technology

A network address is an identifier for a node or host on a telecommunications network. Network addresses are designed to be unique identifiers across the network, although some networks allow for local, private addresses or locally administered addresses that may not be unique. Special network addresses are allocated as broadcast or multicast addresses. These too are not unique.

Optimized registration method and system based on micro-service architecture

The invention discloses an optimized registration method and system based on a micro-service architecture. The invention relates to the technical field of Nacos systems. The health monitoring center is started and starts to send a health examination request to a downstream service at regular time; the gateway access layer service receives a client request; obtaining a network address of a target service instance through a Nacos service discovery mechanism according to a service name in the request; then forwarding the request to a target service instance for processing; when the configuration information is changed, the Nacos configuration management center pushes an update notification to all subscribed service instances; the service instance pulls the latest configuration information and updates the local cache; according to the method, a secondary hand waving mechanism is implemented in Nacos cluster node, gateway service and downstream service communication, so that the offline condition of the downstream service can be accurately judged, and the problem of data inconsistency caused by node faults or network partition is avoided.
Owner:BEIJING BAIJU YIXING TECH CO LTD

Fraud website identification early warning method, device and equipment and storage medium thereof

The invention relates to a fraud website identification early warning method, device and equipment and a storage medium thereof. The method comprises the following steps: firstly, acquiring network address information, then extracting feature data from dimensions such as structure, semantics, behavior and vision, accelerating similarity detection by applying a graphics processor parallel computing technology, and generating a composite feature vector containing a domain name similarity score and a registration feature; constructing fraud features in combination with the composite feature vector, mining a data association relationship through a graph neural network, and forming multi-dimensional risk feature data; and finally, processing the risk feature data by using a deep learning model, generating a risk probability, and when the risk probability exceeds a preset threshold, determining that the network address is a high-risk network address and generating an early warning report. By adopting the method, the comprehensiveness and accuracy of fraud website identification can be improved, complex fraud means such as domain name variation and semantic camouflage can be effectively dealt with, the real-time early warning capability for potential risks is enhanced, and efficient technical support is provided for network security protection.
Owner:CHONGQING JIAOTONG UNIV

Multi-communication group fusion holding method and system of intelligent door lock

The invention discloses a multi-communication group fusion holding method and system for an intelligent door lock, and the method comprises the steps: building an independent multicast tree taking a feature vector as an identifier according to a communication group request initiated by each main control door lock; generating a multicast message containing a target communication group feature vector and a digital signature according to a merging request sent by the first master control door lock; according to feature vectors exchanged by the master control door locks of the two parties through a secure channel, a target master control door lock initiates feature interception registration, and negotiates and establishes a boundary feature tag rewriting rule; and according to the established forwarding path and the rewriting rule, the audio and video streams of the communication groups of the two parties are subjected to feature tag rewriting through the network boundary router, and then bidirectional intercommunication is realized. By utilizing the embodiment of the invention, the dynamic security isolation and seamless fusion of multiple communication groups can be realized, the network load and transmission delay are reduced, meanwhile, the terminal door lock can realize audio and video intercommunication without sensing the network address of the opposite end or changing the configuration, and the expansibility, the security and the user experience of the system are improved.
Owner:DESSMANN CHINA MACHINERY & ELECTRONICS

Communication method and device

The invention provides a communication method and device, and the method comprises the steps: a label management function network element sends first information to a network warehouse function network element, and the first information comprises the information of an area corresponding to the label management function network element; a first checking request is received, the first checking request carries information of a target area, and the target area belongs to an area corresponding to the label management function network element; determining a first device serving a target reader-writer corresponding to the target area; and sending a second checking request to the first device. Through the technical scheme provided by the invention, network addressing from the requester to the reader-writer can be realized.
Owner:HUAWEI TECH CO LTD

Distributed Source Network Address Translation (SNAT) Enabled LEAF

PendingUS20250323866A1TransmissionDistributed sourceDistributed Computing Environment
Various methods and processing systems for the effective management of network traffic and facilitating data forwarding within distributed computing environments. Network components may be configured to amalgamate the Border Gateway Protocol (BGP) with Source Network Address Translation (SNAT) or network address port translation (NAPT) technologies to facilitate dynamic notification of network address accessibility and use port index identifiers to augment the precision and resilience of routing. A distributed SNAT / NAPT virtual network function (VNF) or cloud-native network function (CNF) may collaborate with LEAF switches or server aggregation devices to refine data transmission via adaptable address mapping and forwarding and enhance network scalability and resilience.
Owner:CHARTER COMM OPERATING LLC

API interface security protection method based on anomaly detection

The invention relates to the technical field of security protection, in particular to an API (Application Program Interface) security protection method based on anomaly detection, which comprises the following steps of: based on a received API request, analyzing the API request, extracting a request source network address and a target API calling instruction, and carrying out source authenticity verification and instruction validity judgment. According to the method, the initial security context is established by analyzing the source network address and the interface calling instruction of the API request in combination with the timestamp and the request type, so that the pre-modeling of the environment state of each request is realized, and the basic credibility of the request can be judged immediately before the request is subjected to deep business processing. On the basis, a sequence mode of the request load is combined with a parameter boundary for comparison, the behavior deviation degree is used as a reference item, interface sensitivity information in the context is introduced to complete quantitative judgment on the risk level, and a judgment result has dynamic adaptability and structural relevance.
Owner:SHANGHAI FULEIDE INFORMATION TECH CO LTD

Fusion quantum security communication method of NAT gateway

The invention discloses a fusion quantum secure communication method of an NAT gateway, and relates to the technical field of communication network information security and quantum information. Comprising the steps of 1, creating a fusion quantum security communication system of an NAT gateway, 2, adopting a quantum hybrid encryption architecture through a quantum security module, and internally arranging a quantum key distribution unit and an anti-quantum computing acceleration chipset, 3, expanding a quintuple mapping structure of NAT through a dynamic address mapping and quantum encryption module, newly adding a quantum security dimension field QSV, and carrying out quantum encryption on the quantum key distribution unit and the anti-quantum computing acceleration chipset. And 4, developing a protocol non-inductive conversion engine through a hybrid protocol stack cooperation module, supporting an IPv4 / IPv6 dual-stack quantum tunnel and a quantum key inheritance protocol to realize cross-protocol family encryption parameter migration, dynamically adjusting a quantum encapsulation mode in an address conversion process, and dynamically associating an internal network address port with a quantum key parameter and a channel fingerprint feature. And 5, constructing a quantum perception type session state machine through an anti-quantum attack session management module, and performing a joint decision-making mechanism through quantum entanglement state monitoring and classical traffic feature analysis.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

Host routing with virtual machine mobility

A method for supporting virtual machine (VM) mobility between network devices connected to a network includes: selecting a first type of route for interconnecting VMs that are connected to the network devices; and adding a feature of a second type of route to the first type of route to enable the network devices to execute proxy address resolution protocol (ARP) for transmitting network traffic between the VMs without requiring each of the network devices to store a physical address of each of the VMs in respective ones of a network address table.
Owner:ARISTA NETWORKS INC

Attack chain restoration method and system based on large language model and traditional AI model

The invention provides an attack link restoration method and system based on a large language model and a traditional AI model, and effectively solves the problem that attack link restoration is incomplete and inaccurate when a current attack link restoration scheme faces complex factors such as network address translation. The method comprises the following steps: acquiring an attack semantic knowledge base containing an attack context knowledge matrix, wherein the knowledge base is generated by processing an attack framework, a security log and a traceability report by a generative large model; obtaining an asset access relation graph generated by analyzing the metadata of the target network infrastructure by the large model and reasoning in combination with an attack semantic knowledge base; regularly acquiring security alarm logs in a first time window and scoring, and acquiring context logs if the security alarm logs exceed a threshold value; based on a time sequence diagram attention network model, determining the confidence degree that edges in an asset access relation graph corresponding to logs containing access pairs in the alarm logs and the context logs belong to attack links; and performing sub-graph extraction in the atlas to obtain candidate sub-graphs, and then determining a target attack link.
Owner:ULTRAPOWER SOFTWARE +1

Efficient task scheduling strategy recommendation method and system for distributed network surveying and mapping scene

The invention provides an efficient task scheduling strategy recommendation method and system for a distributed network surveying and mapping scene, and relates to the crossing field of network space surveying and mapping, network security, distributed scheduling and intelligent optimization recommendation algorithms. Analyzing the task request to extract a task type, a task target network address set, a regional distribution feature, a task execution timeliness requirement and calculation and bandwidth resources required by estimation, and forming a task feature vector; and performing state acquisition and capability evaluation on the distributed surveying and mapping nodes based on task resource requirements defined by the task feature vectors, and performing normalization processing to form node capability vectors. Through multi-source information vectorization and closed-loop optimization, adaptive matching of task scheduling and resource dynamics is realized.
Owner:HARBIN INST OF TECH AT WEIHAI +1

Open platform management method and system based on dynamic reflection calling

The invention provides an open platform management method and system based on dynamic reflection calling in the technical field of distributed micro-services and gateways. The method comprises the following steps: S1, forwarding an access request to an authentication center; s2, the authentication center executes identity authentication and issues an access token, and the client sends a request message to the open platform based on the access token; s3, the open platform carries out authentication, decryption and signature verification on the request message to obtain message content containing request parameters and a target service subsystem; s4, searching interface metadata and a network address of the target service subsystem; and S5, through a dynamic reflection calling engine, generating a proxy instance based on the interface metadata, mapping the request parameter into a target parameter, and through the proxy instance and the network address, calling the target service subsystem to execute the target parameter. The method has the advantages that the safe, uniform and non-intrusive open service capability is realized, and the maintainability, the safety and the evolution capability of the platform are greatly improved.
Owner:FUJIAN ECAN INFORMATION TECH CO LTD

Proactive reservations of network address blocks for client-specified operation categories at isolated virtual networks

In response to receiving a reservation request at a provider network, metadata indicating that a group of network addresses of a subnet is reserved for operations of a particular category is stored. A first request for an operation, requiring assignment of an address of the reserved group is rejected if the operation does not belong to the particular category, even if the address is not in use. In response to a second request for an operation which does belong to the particular category, an address of the reserved group is assigned.
Owner:AMAZON TECH INC

Server configuration method and device, electronic equipment, storage medium and product

The invention provides a server configuration method and device, electronic equipment, a storage medium and a product, and the method comprises the steps: determining whether a to-be-configured server is in communication connection with an execution server or not based on an operation command set, and the execution server is used for configuring a processor of the to-be-configured server; when the to-be-configured server is in communication connection with the execution server, acquiring a preset attachment file in the first file path; and based on the preset attachment file, configuring a processor of the to-be-configured server. According to the method, the attachment file is preset, so that the execution server can obtain the corresponding relation between the configuration mode and the configuration option and the BMC network address of the to-be-configured server, and the execution server can configure the to-be-configured server according to the corresponding relation between the configuration mode and the configuration option; therefore, manual configuration operation and verification on each to-be-configured server are not needed, the configuration efficiency of the to-be-configured servers is improved, and the delivery time of the servers is shortened.
Owner:INSPUR SUZHOU INTELLIGENT TECH CO LTD

Method and apparatus for traffic scheduling implementation, device, storage medium, and program product

The present disclosure provides a method of traffic scheduling implementation, including: receiving a domain name resolution request sent by a first business application on a first terminal device, and performing domain name resolution on the domain name resolution request to determine a to-be-resolved domain name; if the to-be-resolved domain name is a target domain name, determining, from a preset network segment, a first virtual network address corresponding to the to-be-resolved domain name, and using the first virtual network address as a first traffic destination address corresponding to the to-be-resolved domain name, where the preset network segment includes a plurality of virtual network addresses; and sending the first traffic destination address to the first business application on the first terminal device, to cause the first business application to perform data transmission based on the first traffic destination address.
Owner:BEIJING VOLCANO ENGINE TECH CO LTD

Configuring application availability using anycast addressing

Anycast addressing is utilized to support the connection of multiple application connectors fronting an application(s) to a network element and anycast routing of network traffic destined for the application(s). When an application is indicated for onboarding in a tenant's network fabric, a network controller allocates virtual and anycast addresses to the application. Allocation of anycast addresses is per domain name and port / protocol combination. Upon determining that the application is available, the application connector(s) advertises reachability of the application via the anycast address. The network controller orchestrates configuration of a domain name system entry that resolves the application name to its virtual Internet Protocol (IP) address and destination network address translation rules that translate the virtual IP address to the anycast address and the anycast address to the application's private IP address. Application network traffic can thus be forwarded to the application via any application connector that advertised the anycast address.
Owner:PALO ALTO NETWORKS INC

Controller-based traffic filtering and address modification

In communication with components of a cloud platform, namely a software-defined network constructed to overlay at least one public cloud network, a controller features a virtual processor and a data store. The data store includes network address translation (NAT) processing logic configured to determine whether a control plane message from tenant resources is associated with a network address overlapping condition, which represents a first network address included in the control plane message overlaps a network address range relied upon by either (a) at least one of the components of the cloud platform or (b) a component associated with other tenant resources. The NAT processing logic is further configured to alter routing data stores that maintain routing information for each of the components of the cloud platform to substitute the first network address with a first virtual network address for subsequent data message routing.
Owner:AVIATRIX SYSTEMS INC

Communication method and apparatus

A communication method and apparatus. The method comprises: a label management function network element sending first information to a network repository function network element, wherein the first information comprises information of an area corresponding to the label management function network element; receiving a first inventory request, wherein the first inventory request carries information of a target area, the target area belonging to the area corresponding to the label management function network element; determining a first device which serves a target reader corresponding to the target area; and sending a second inventory request to the first device. By means of the technical solution provided in the present application, network addressing from a requester to a reader can be realized.
Owner:HUAWEI TECH CO LTD

Railway driver driving behavior monitoring method based on artificial intelligence

The invention discloses a railway driver driving behavior monitoring method based on artificial intelligence. An artificial intelligence processing unit completes hardware interface initialization; the integrated wireless equipment of the railway locomotive sends a network IP address and equipment identification information of the main control end to a host process of the artificial intelligence processing unit; a host process of the artificial intelligence processing unit initiates a video stream pulling request to a digital camera at a corresponding end through an RTSP protocol; the main process of the artificial intelligence processing unit receives the RTSP code stream and then decodes the RTSP code stream into a picture in a JPEG format, the image is cut and zoomed, and complete metadata information is added for each picture; three reasoning processes of the artificial intelligence processing unit run in parallel, and each process performs targeted reasoning detection on the decoded JPEG picture and metadata based on a self-loaded model: a main process receives a reasoning detection result, performs comprehensive judgment in combination with a preset threshold value and an abnormal state duration, and sends the result to the main process; triple alarms of local reminding, driver informing and remote monitoring are realized, and the driving behavior of the driver is standardized.
Owner:天津七一二移动通信股份有限公司

Aircraft in-flight entertainment devices installation verification by machine vision-assisted identification

Systems, devices, and methods for aircraft in-flight entertainment (IFE) devices installation verification are disclosed herein. In some implementations, a verification system includes a computing device that can operably connect to multiple IFE devices and a reader device. Each IFE device can report its own stored identity to the computing device, and the computing device can determine the position of each IFE device based on a network topology-based network address assigned to each IFE device. The reader device can obtain and communicate, to the computing device, actual identities and expected installation positions of the IFE devices. The verification system can then compare, for each position, the actual identity, which indicates which IFE device should be installed in that position, against the reported stored identity, which indicates which IFE device has been installed in that position. The verification system can display, on a graphical user interface, the comparison.
Owner:PANASONIC AVIONICS CORP

A railway driver driving behavior monitoring method based on artificial intelligence

A kind of railway driver driving behavior monitoring method based on artificial intelligence, artificial intelligence processing unit completes hardware interface initialization;Railway locomotive comprehensive wireless device sends the network IP address of main control end, device identification information to the main process of artificial intelligence processing unit;Artificial intelligence processing unit main process initiates video stream pull request to the digital camera of corresponding end by RTSP protocol;Artificial intelligence processing unit main process decodes into JPEG format picture after receiving RTSP code stream, trims zoom image, adds complete metadata information to each picture;Three inference processes of artificial intelligence processing unit run in parallel, each process is based on the model loaded by itself to decode the JPEG picture and metadata for targeted inference detection:Main process receives inference detection result, carries out comprehensive judgment in conjunction with preset threshold and abnormal state duration, realizes local reminder, driver notification, remote monitoring triple alarm, standardizes driver driving behavior.
Owner:天津七一二移动通信股份有限公司

Network address translation gateway implementation method and device based on flow control transmission protocol, equipment and medium

The invention discloses a network address translation gateway implementation method and device based on a flow control transmission protocol, equipment and a medium, and relates to the technical field of computer networks and data transmission, and the method comprises the following steps: after receiving a network message, identifying the network message by using a P4 technology through a message identification end, determining whether the network message is a target message of a flow control transmission protocol; if the network message is determined to be a target message, determining connection information of the target message by using a P4 technology through a message processing end, allocating a unique internal address and a port number for connection of the target message according to the connection information, and packaging the target message so as to send the packaged message to a gateway conversion end; and converting the internal address and the port number of the packaged message through a gateway conversion end so as to forward the converted message to a target address. Therefore, smooth traversal and forwarding of the SCTP message can be realized on the premise of not modifying the existing NAT gateway equipment or introducing new equipment.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

Method for correspondingly managing IPV4 and IPV6 addresses of same user of network dual stacks

The invention discloses a corresponding management method for IPV4 and IPV6 addresses of the same user of network dual stacks, and relates to the technical field of network address management, network system nodes are divided into a main control node, a replica synchronization node and an edge cache node, a layered management architecture is constructed, hotspot users with frequent write-in are identified, a flow partitioning and path arbitration strategy is adopted, and the IPV4 and IPV6 addresses of the same user of the network dual stacks are correspondingly managed. The method comprises the following steps of: dynamically allocating an auxiliary book group, constructing a state deviation evaluation function, judging the consistency degree according to a version and hash information, selecting a corresponding synchronization strategy, fusing various mechanisms to form an execution layer consistency maintenance closed loop, and performing IPV4 and IPV6 address mapping relation management in a distributed environment. According to the management method, the stability, the accuracy and the reliability of the dual-stack user address mapping management system in a multi-source asynchronous operation environment are effectively enhanced by constructing a layered execution architecture which takes a main control node as a core, a copy synchronization node as a distribution guarantee and an edge cache node as a response terminal.
Owner:SHENYANG QIANGXIN COMM TECH CO LTD

Private artificial intelligence and data exchange

In an embodiment, a method provides an environment for privately exchanging data for AI tasks. Identification of a task to perform, and a characteristic describing data needed to execute the task, is received. A data provider within the environment is located that has access to a data set according to the characteristic. A task provider within the environment is located. The located task provider is configured to execute the task. A real-time, private, and secure network connection between the data provider and the task provider is established. The established connection is configured such that the data provider and the task provider are able to communicate via the network connection without using publicly accessible network addresses. The data set is transferred from the data provider to the task provider via the established network connection. In response to the transfer, the task provider executes the task using the data set.
Owner:DIGITAL PORPOISE LLC

Service debugging method and device, electronic equipment and computer readable storage medium

The invention provides a service debugging method and device, electronic equipment and a computer readable storage medium, and relates to the technical field of service debugging. Initiating a debugging request for a target service instance based on a local agent, and obtaining a short-term security credential by the local agent; wherein the short-term security credential comprises the target service instance identifier; establishing, by the local agent, an encrypted communication channel with a remote agent using the short-term security credential; the remote agent extracts the target service instance identifier from the short-term security credential and obtains a real-time network address of the target service instance; and sending, by the remote agent, the received debugging traffic to the real-time network address of the target service instance. Identity authentication and authorization are realized through a short-term security certificate, and security and credibility of a debugging request are ensured; the security risk in the debugging process is reduced, and the flexibility and efficiency of cross-network environment debugging are enhanced.
Owner:BEIJING CHUANGXIN JOURNEY NETWORK TECH CO LTD

Network address configuration method and electronic equipment

The invention discloses a network address configuration method and electronic equipment, and relates to the technical field of network address configuration, and the method comprises the following steps: setting a special static network address configuration item in a preset storage area; when the system is started, the static network address is read from the special static network address configuration item, and the static network address is configured to a network interface of the baseboard management controller by using an adding command; initiating a dynamic host configuration protocol request to obtain a dynamic network address, and intercepting default configuration operation of a dynamic host configuration protocol request process on a network interface; configuring the dynamic network address to a network interface of the baseboard management controller by using an adding command; the static network address and the dynamic network address are configured at the same network interface of the baseboard management controller. The technical problem that static network address configuration and dynamic network address configuration are not compatible in the prior art is solved, and the substrate management controller can be accessed through at least one of the dynamic network address and the static network address.
Owner:INSPUR SUZHOU INTELLIGENT TECH CO LTD

System and Method for Network Policy-Based Traffic Management of Data Flows

A system featuring a controller and a plurality of nodes operating as a Kubernetes cluster. The plurality of nodes includes a master node communicatively coupled to the controller, and an ingress node being configured to (i) access the master node to obtain at least a first attribute associated with a data flow received by the ingress node based on a network address associated with a source of the data flow, (ii) determine one or more network policies applicable to the data flow based on at least the first attribute, and (iii) determine a classification identifier based on the one or more network policies. The classification identifier provides context associated with the data flow and a reliable association between an application and the data flow associated with the application during propagation of the data flow over a cloud network.
Owner:AVIATRIX SYSTEMS INC

Intelligent DNS load balancing using combination of dynamic DNAT pool and application probing in connector based solution for private application access

PendingUS20260032115A1Securing communicationDomain nameFully qualified domain name
The present application discloses a method, system, and computer system for providing intelligent DNS load balancing using a combination of a dynamic DNAT pool and application providing in a connector-based solution for private application access. The method includes: (a) performing a DNS re-resolution for resolving an application Fully Qualified Domain Name (FQDN) to obtain a plurality of IP addresses for a plurality of application servers, (b) performing periodic application server probing, and (c) dynamically updating a destination network address translation (DNAT) to provide DNS load balancing for application traffic. The DNAT is updated based at least in part on one or more of the DNS re-resolution and the application server probing.
Owner:PALO ALTO NETWORKS INC

Method for Configuring Network Address Translation Gateway and Cloud Management Platform

A method for configuring a network address translation NAT gateway based on a public cloud service including: a cloud management platform obtains NAT gateway creation information that is input by a tenant; The cloud management platform creates the NAT gateway in the first VPC based on the NAT gateway creation information; The cloud management platform obtains configuration information that is input by the tenant and applied to the NAT gateway; The cloud management platform sets, based on the identifier of the second VPC, the NAT gateway to be connected to the second VPC, and sends the first NAT rule to the NAT gateway, where the first NAT rule is used to indicate the NAT gateway to: bind a first network segment in the first VPC to a first elastic IP address EIP; and bind the first network segment in the first VPC to a first transit private IP address.
Owner:HUAWEI CLOUD COMPUTING TECHNOLOGIES CO LTD

Address translation method, device and system

The invention provides an address conversion method, device and system, and belongs to the technical field of networks. According to the scheme provided by the invention, based on the fact that the first message of the first user is the message of the target application, the source address of the first message is converted from the first private network address to the target address and then is sent to the first forwarding device. Moreover, the source tracing information of the first user not only comprises a target address corresponding to the first private network address, but also comprises a first public network address and a first port range corresponding to the first private network address. In the tracing information of the first user, the first private network address corresponds to two different addresses, so that the source address of the message can be converted into different network addresses from the first private network address based on the type of the application to which the message belongs when network address conversion is performed on the message of the first user; therefore, the flexibility of address translation is effectively improved.
Owner:HUAWEI TECH CO LTD