Pre-processing system for minimizing application-level denial-of-service in a multi-tenant system

Denial-of-service attacks are prevented or mitigated in a cloud compute environment, such as a multi-tenant, collaborative SaaS system. This is achieved by providing a mechanism by which characterization of "legitimate" behavior is defined for tenant applications or application classes, pr...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Holden Russell L, McGloin Mark, Mierswa Peter Otto, Curtis John Douglas, Pieczul Olgierd S
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator Holden Russell L
McGloin Mark
Mierswa Peter Otto
Curtis John Douglas
Pieczul Olgierd S
description Denial-of-service attacks are prevented or mitigated in a cloud compute environment, such as a multi-tenant, collaborative SaaS system. This is achieved by providing a mechanism by which characterization of "legitimate" behavior is defined for tenant applications or application classes, preferably along with actions to be taken in the event a request to execute an application is anticipated to exceed defined workflow limits. A set of application profiles are generated. Typically, a profile comprises information, such as a request defined by one or more request variables, one or more "constraints," one or more "request mappings," and one or more "actions." A constraint is a maximum permitted workload for the application. A request mapping maps a request variable to the constraint, either directly or indirectly. The profile information defines how a request is mapped to a workload to determine whether the request is in policy or, if not, what action to take.
format Patent
fullrecord <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_US9444838B2</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>US9444838B2</sourcerecordid><originalsourceid>FETCH-epo_espacenet_US9444838B23</originalsourceid><addsrcrecordid>eNqNjDEKAjEQRbexEPUOc4E07hZrqyiWglovQ_wrA8kkZOKCnl6EPYDVg8fjLRu-FLhckoeZ6JPsbRWRxlQoikqUz89yzkE8V0nqAiYEekCFg0ujM5RJPEiUmOIrVHEVylrn17pZjBwMm5mrhk7H2-HskNMAy-yhqMP9uuu6rm_7_bb9I_kC9SQ-Jw</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>Pre-processing system for minimizing application-level denial-of-service in a multi-tenant system</title><source>esp@cenet</source><creator>Holden Russell L ; McGloin Mark ; Mierswa Peter Otto ; Curtis John Douglas ; Pieczul Olgierd S</creator><creatorcontrib>Holden Russell L ; McGloin Mark ; Mierswa Peter Otto ; Curtis John Douglas ; Pieczul Olgierd S</creatorcontrib><description>Denial-of-service attacks are prevented or mitigated in a cloud compute environment, such as a multi-tenant, collaborative SaaS system. This is achieved by providing a mechanism by which characterization of "legitimate" behavior is defined for tenant applications or application classes, preferably along with actions to be taken in the event a request to execute an application is anticipated to exceed defined workflow limits. A set of application profiles are generated. Typically, a profile comprises information, such as a request defined by one or more request variables, one or more "constraints," one or more "request mappings," and one or more "actions." A constraint is a maximum permitted workload for the application. A request mapping maps a request variable to the constraint, either directly or indirectly. The profile information defines how a request is mapped to a workload to determine whether the request is in policy or, if not, what action to take.</description><language>eng</language><subject>CALCULATING ; COMPUTING ; COUNTING ; ELECTRIC COMMUNICATION TECHNIQUE ; ELECTRIC DIGITAL DATA PROCESSING ; ELECTRICITY ; PHYSICS ; TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><creationdate>2016</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20160913&amp;DB=EPODOC&amp;CC=US&amp;NR=9444838B2$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,776,881,25542,76289</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20160913&amp;DB=EPODOC&amp;CC=US&amp;NR=9444838B2$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>Holden Russell L</creatorcontrib><creatorcontrib>McGloin Mark</creatorcontrib><creatorcontrib>Mierswa Peter Otto</creatorcontrib><creatorcontrib>Curtis John Douglas</creatorcontrib><creatorcontrib>Pieczul Olgierd S</creatorcontrib><title>Pre-processing system for minimizing application-level denial-of-service in a multi-tenant system</title><description>Denial-of-service attacks are prevented or mitigated in a cloud compute environment, such as a multi-tenant, collaborative SaaS system. This is achieved by providing a mechanism by which characterization of "legitimate" behavior is defined for tenant applications or application classes, preferably along with actions to be taken in the event a request to execute an application is anticipated to exceed defined workflow limits. A set of application profiles are generated. Typically, a profile comprises information, such as a request defined by one or more request variables, one or more "constraints," one or more "request mappings," and one or more "actions." A constraint is a maximum permitted workload for the application. A request mapping maps a request variable to the constraint, either directly or indirectly. The profile information defines how a request is mapped to a workload to determine whether the request is in policy or, if not, what action to take.</description><subject>CALCULATING</subject><subject>COMPUTING</subject><subject>COUNTING</subject><subject>ELECTRIC COMMUNICATION TECHNIQUE</subject><subject>ELECTRIC DIGITAL DATA PROCESSING</subject><subject>ELECTRICITY</subject><subject>PHYSICS</subject><subject>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2016</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNqNjDEKAjEQRbexEPUOc4E07hZrqyiWglovQ_wrA8kkZOKCnl6EPYDVg8fjLRu-FLhckoeZ6JPsbRWRxlQoikqUz89yzkE8V0nqAiYEekCFg0ujM5RJPEiUmOIrVHEVylrn17pZjBwMm5mrhk7H2-HskNMAy-yhqMP9uuu6rm_7_bb9I_kC9SQ-Jw</recordid><startdate>20160913</startdate><enddate>20160913</enddate><creator>Holden Russell L</creator><creator>McGloin Mark</creator><creator>Mierswa Peter Otto</creator><creator>Curtis John Douglas</creator><creator>Pieczul Olgierd S</creator><scope>EVB</scope></search><sort><creationdate>20160913</creationdate><title>Pre-processing system for minimizing application-level denial-of-service in a multi-tenant system</title><author>Holden Russell L ; McGloin Mark ; Mierswa Peter Otto ; Curtis John Douglas ; Pieczul Olgierd S</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_US9444838B23</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>eng</language><creationdate>2016</creationdate><topic>CALCULATING</topic><topic>COMPUTING</topic><topic>COUNTING</topic><topic>ELECTRIC COMMUNICATION TECHNIQUE</topic><topic>ELECTRIC DIGITAL DATA PROCESSING</topic><topic>ELECTRICITY</topic><topic>PHYSICS</topic><topic>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</topic><toplevel>online_resources</toplevel><creatorcontrib>Holden Russell L</creatorcontrib><creatorcontrib>McGloin Mark</creatorcontrib><creatorcontrib>Mierswa Peter Otto</creatorcontrib><creatorcontrib>Curtis John Douglas</creatorcontrib><creatorcontrib>Pieczul Olgierd S</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>Holden Russell L</au><au>McGloin Mark</au><au>Mierswa Peter Otto</au><au>Curtis John Douglas</au><au>Pieczul Olgierd S</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>Pre-processing system for minimizing application-level denial-of-service in a multi-tenant system</title><date>2016-09-13</date><risdate>2016</risdate><abstract>Denial-of-service attacks are prevented or mitigated in a cloud compute environment, such as a multi-tenant, collaborative SaaS system. This is achieved by providing a mechanism by which characterization of "legitimate" behavior is defined for tenant applications or application classes, preferably along with actions to be taken in the event a request to execute an application is anticipated to exceed defined workflow limits. A set of application profiles are generated. Typically, a profile comprises information, such as a request defined by one or more request variables, one or more "constraints," one or more "request mappings," and one or more "actions." A constraint is a maximum permitted workload for the application. A request mapping maps a request variable to the constraint, either directly or indirectly. The profile information defines how a request is mapped to a workload to determine whether the request is in policy or, if not, what action to take.</abstract><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language eng
recordid cdi_epo_espacenet_US9444838B2
source esp@cenet
subjects CALCULATING
COMPUTING
COUNTING
ELECTRIC COMMUNICATION TECHNIQUE
ELECTRIC DIGITAL DATA PROCESSING
ELECTRICITY
PHYSICS
TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION
title Pre-processing system for minimizing application-level denial-of-service in a multi-tenant system
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-02-08T15%3A03%3A10IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=Holden%20Russell%20L&rft.date=2016-09-13&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3EUS9444838B2%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true