SYSTEM AND METHOD FOR FILE SCANNING BETWEEN A SOURCE AND CLIENT IN A ZERO TRUST ENVIRONMENT

    公开(公告)号:US20250039195A1

    公开(公告)日:2025-01-30

    申请号:US18359527

    申请日:2023-07-26

    Abstract: A system and method for providing file scanning between a client device and a resource through a zero trust network environment (ZTNE) are disclosed. The method includes detecting in network traffic between the client device and the ZTNE a request to receive a first content from a resource deployed in a private network, wherein the resource is accessible to the user device making first request through the ZTNE; detecting in network traffic between the client device and the ZTNE a second request to send a second content from the client device to a public network, wherein the public network is accessible to the user device making the second request through the ZTNE; sending the request to the public network, in response to determining that the second content is allowable; and blocking the request to the public network, in response to determining that the second content is not allowable network traffic.

    MEASURING FILES BASED ON FILE PROPERTY-BASED SELECTION CRITERIA

    公开(公告)号:US20250039142A1

    公开(公告)日:2025-01-30

    申请号:US18359057

    申请日:2023-07-26

    Abstract: A technique includes registering, with a core of an operating system kernel, a hook that corresponds to a file event and associates the file event with an event-driven module of the operating system kernel. The core is associated with an integrity measurement architecture policy. The technique includes, responsive to an occurrence of the file event, triggering execution of the event-driven module to extend a scope of the integrity measurement architecture policy. Executing the module includes the operating system kernel determining a property of a file that is associated with the file event; and filtering a set of rules of an extended integrity measurement policy based on the property. The filtering includes identifying a given rule of the set of rules having a condition that is contingent on the file event being associated with the property. Executing the module includes the operating system kernel identifying an integrity measurement-affiliated action of the given rule and performing the integrity measurement-affiliated action on the file.

    PROGRAM RECOVERY
    43.
    发明申请

    公开(公告)号:US20250036533A1

    公开(公告)日:2025-01-30

    申请号:US18358558

    申请日:2023-07-25

    Abstract: In some examples, a system receives a request to recover a program. The system accesses metadata associated with a recovery copy of information for the program, and determines, based on the metadata, a compatibility of a storage arrangement of data in the recovery copy with the program. The system determines whether to fully recover the program using the recovery copy or to partially recover the program based on the determined compatibility.

    PROGRAMMING POWER CONTROLLERS VIA LOGIC DEVICE

    公开(公告)号:US20250036178A1

    公开(公告)日:2025-01-30

    申请号:US18361191

    申请日:2023-07-28

    Abstract: A computing device comprises a primary printed circuit board (PCB), one or more computing components mounted to the primary PCB, a baseboard management controller (BMC) mounted to the primary PCB, a power subsystem, and a logic device coupled to the primary PCB. The power subsystem comprises a power controller with a first logic pin, and the logic device is communicably connected to the first logic pin. The logic device is configured to program the power controller by placing the power controller in a programming mode and inputting programming information into the power controller via the first logic pin.

    DATATYPE ENGINE TO SUPPORT HIGH PERFORMANCE COMPUTING

    公开(公告)号:US20250028450A1

    公开(公告)日:2025-01-23

    申请号:US18905441

    申请日:2024-10-03

    Abstract: A method and apparatus are provided for facilitating a datatype engine (DTE) to support high performance computing. A network interface card (NIC) receives, via a message passing interface, a command to read data from a host memory. The NIC determines that the command indicates a first datatype descriptor stored in the NIC. The NIC forms, based on the command, a packet which indicates a base address and a length associated with the data to be read from the host memory and passes the packet to the DTE. The DTE generates a plurality of read requests comprising offsets from the base address and corresponding lengths based on the first datatype descriptor. The DTE passes the plurality of read requests to a direct memory access module, thereby allowing the NIC to access the host memory while eliminating copies of the data on the host during transfer of the command across a network.

    Facilitating fast re-route in high-availability networks

    公开(公告)号:US12206582B2

    公开(公告)日:2025-01-21

    申请号:US17976732

    申请日:2022-10-28

    Abstract: A system for efficiently determining a set of next-hop switches from a switch is provided. During operation, the system can determine the plurality of next-hop switches for an Internet Protocol (IP) address prefix. The system can then store, in an entry of a forwarding data structure of the switch, a list of identifying information indicating the plurality of next-hop switches corresponding to the IP address prefix. The identifying information for the plurality of next-hop switches can be stored in the list in an order of preference for forwarding traffic matching the IP address prefix. Upon receiving a packet with a destination IP address matching the IP address prefix, the system can select the entry from the forwarding data structure for determining a next-hop switch for forwarding the packet. The system can then determine the next-hop switch for the packet from the entry based on the order of preference.

    Power allotment adjustment in a power sourcing equipment (PSE) of a power over ethernet system based on event detection at another PSE

    公开(公告)号:US12206513B2

    公开(公告)日:2025-01-21

    申请号:US18324551

    申请日:2023-05-26

    Abstract: A Power-over-Ethernet (POE) powered device (PD) may be coupled to two power sourcing equipments (PSEs), a PSE and an additional PSE. The PSE may exchange a transport layer protocol communications with the additional PSE. The communications comprising a first communication from the PSE to the additional PSE indicative of a PoE configuration of the PSE and a second communication from the additional PSE to the PSE indicative of a PoE configuration of the additional PSE. The PSE may create a power availability table based on the communications. The PSE may detect occurrence of an event comprising at least one of a change in the power availability table or a change in ability of the PSE to provide power to the PD. On occurrence of the event, the PSE may send additional communications to the additional PSE, requesting to adjust its power allotment for the PD.

    RESONATORS-BASED PROGRAMMABLE OPTICAL NEURAL NETWORKS

    公开(公告)号:US20250021809A1

    公开(公告)日:2025-01-16

    申请号:US18487452

    申请日:2023-10-16

    Abstract: Systems and methods are provided for devices and methods for implementing an optical neural network (ONN) by leveraging resonator structures, such on micro-ring resonators (MRRs). Examples include unit cells configured to perform a linear transformation on optical signals. Each unit cell comprises a plurality of signal mixing components optically coupled to between adjacent waveguides, where each signal mixing component corresponds to a distinct wavelength and is configured to mix optical signals on the adjacent waveguides at the distinct wavelength. Each unit cell also includes a plurality of phase tuning components each corresponding to a distinct wavelength and configured to adjust a phase of a mixed optical signal at the distinct wavelength.

    FINE-GRAINED ROLE-BASED SEGMENTATION IN OVERLAY NETWORK

    公开(公告)号:US20250016091A1

    公开(公告)日:2025-01-09

    申请号:US18347459

    申请日:2023-07-05

    Abstract: A system for facilitating segmentation by a first switch of an overlay tunnel fabric is provided. During operation, the system can receive a route update packet for the fabric. The packet can be based on a control plane that allows the exchange of route information via the tunnel and can include a first media access control (MAC) address learned at a second switch and a first role identifier of a first role. The first role can indicate a level of access granted to a first device associated with the first MAC address. The system can store the first MAC address and the first role identifier in a local address data structure. Upon receiving a packet from the first device, the system can then determine, based on the first role identifier and a first segmentation policy, whether a local device is allowed to receive the packet from the first device.

Patent Agency Ranking