IP Library Patent Application 11349589
Patent Application
App. No. 11/349,589

Methods and systems for reputation based resource allocation for networking

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
11/349,589
Abstract

A method and system for reputation-based resource allocation for networking. The present invention provides a method for determining an allocation of a plurality of computer resources based on a reputation factor for each of the one ore more clients. Clients associated with bad reputation factors may be denied or delayed from computer resources. According to an embodiment, the method is used in a computer network environment wherein one or more clients share a plurality of computer resources. The method includes a step of providing a network appliance. The network appliance includes one or more memories and a central processing unit. The networking appliance has at least a first port and a second port. The first port and the second port exchanges a stream of information. The network appliance is characterized by a limited quantity of system resources. The method also includes a step for processing the stream of network traffic.

Claims (39)

1 . In a computer network environment wherein one or more clients share a plurality of computer resources, a method for determining an allocation of the plurality of computer resources based on a reputation factor for each of the one ore more clients comprising:

providing a network appliance including one or more memories and a central processing unit, the networking appliance having at least a first port and a second port, the first port and the second port exchanging a stream of information, the network appliance being characterized by a limited quantity of system resources;

processing the stream of network traffic including a first plurality of activities associated with a first client, the first client being coupled to a world wide area of network of computers;

storing a first set of attributes associated with the first plurality of activities associated with the first client;

obtaining a first formula for determining a first reputation factor associated for the first client;

obtaining a first computation factor for determining the first reputation factor associated for the first client;

determining the first reputation factor for the first client based on the first set of attributes and the first computation factor using the first formula, the reputation factor comprising a numerical value;

receiving a request for a quantity of the limited system resources from the first client;

determining a usage of the computer resources;

determining an allocation of the quantity of limited system resources associated with the first client based on the reputation factor; and

maintaining a reserve allocation of the quantity of limited resources for a second request from a second client.

2 . The method of claim 1 wherein the first port and the second port is the same port.

3 . The method of claim 1 further comprising updating the first set of attributes in response to a second plurality of activities associated with the first client.

4 . The method of claim 1 wherein the plurality of computer resources comprises network bandwidth.

5 . The method of claim 1 wherein the plurality of computer resources comprises new session initiation rate.

6 . The method of claim 1 wherein the plurality of computer resources comprises a plurality number of sessions.

7 . The method of claim 1 wherein the plurality of computer resources comprises processing power.

8 . The method of claim 1 wherein the plurality of computer resources comprises a memory.

9 . The method of claim 1 further comprising using a trie to prevent DOS attacks associated with a plurality of attackers from a same group.

10 . The method of claim 1 wherein the first computation factor comprises a first matrix, the first matrix including a plurality of weights.

11 . The method of claim 1 further comprising associating the first client to a first group.

12 . The method of claim 11 further comprising determining a second reputation factor associate with the first group.

13 . The method of claim 1 further comprising determining the first reputation factor into a trie data structure.

14 . The method of claim 1 wherein the determining the allocation of the plurality computer resources comprises determining a verdict.

15 . The method of claim 1 wherein the determining the first reputation factor is based on a hierarchy topology of the computer network.

16 . In a computer network environment wherein one or more clients share a plurality of network resources, the plurality of network resources including a memory and a network bandwidth, a system for determining an allocation of the plurality of network resources based on a reputation factor for each of the one ore more clients comprising:

a network interface configured to receive and send information from the one or more clients over the computer network environment, wherein the network interface including a first port and a second port;

a reputation database configured to store at least one reputation factor, wherein the at least one reputation factor is determined based on a plurality of activities associated with a first client;

a configuration database for storing a plurality of configuration information, the plurality of configuration information including at least a first formula for determining the at least one reputation factor;

a delegator configured to allocate the plurality of network resources based on the first reputation factor, wherein the delegator maintains a reserve allocation of the quantity of limited resources for a second request from a second client.

17 . The system of claim 16 wherein the first port and the second port is the same port.

18 . A method for processing a stream of data, the method comprising:

providing a network appliance including one or more memories and a central processing unit, the networking appliance having at last a first port and a second port, the first port and the second port exchanging a stream of information, the network appliance being characterized by a limited quantity of system resources;

providing a hierarchy, the hierarch includes a first node, the first node being associated with a first portion of a network, the first portion of the network includes a second portion, the first node including a first reputation factor;

identifying a second node, the second node being associated with the second portion;

associating the second node to the first node;

providing a second reputation factor for the second node, the second reputation factor being the same as the first reputation if the second node is free from a reputation factor; and

allocating a plurality of resources for the second node based on the second reputation factor.

19 . The method of claim 18 wherein the first port and the second port is the same port.

Assignments (7)
RELEASE OF SECURITY INTEREST Recorded Feb 28, 2022
From: WEBSTER BANK, NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
To: UNTANGLE HOLDINGS, INC.
Reel/Frame 059118/0319 →
SECURITY INTEREST Recorded Jan 12, 2018
From: UNTANGLE HOLDINGS, INC.
To: WEBSTER BANK, NATIONAL ASSOCIATION, AS AGENT
Reel/Frame 044608/0657 →
INTELLECTUAL PROPERTY ASSIGNMENT Recorded Sep 12, 2016
From: UNTANGLE, INC.; CYMPHONIX CORPORATION
To: UNTANGLE HOLDINGS, INC.
Reel/Frame 040003/0420 →
SECURITY AGREEMENT Recorded Nov 10, 2009
From: UNTANGLE, INC.
To: SQUARE 1 BANK
Reel/Frame 023502/0110 →
CHANGE OF NAME Recorded Jan 19, 2007
From: METAVIZE, INC.
To: UNTANGLE NETWORKS, INC.
Reel/Frame 018782/0842 →
CHANGE OF NAME Recorded Jan 19, 2007
From: UNTANGLE NETWORKS, INC.
To: UNTANGLE, INC.
Reel/Frame 018782/0861 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 11, 2006
From: MORRIS, DIRK A.; IRWIN, JOHN D.; SCOTT, ROBERT B.
To: METAVIZE, INC.
Reel/Frame 018409/0454 →