IP Library Granted Patent US 11,785,104
Granted Patent B2
US 11,785,104 · App. 17/671,199 · Granted Oct 10, 2023

Learning from similar cloud deployments

Inventors: Úlfar Erlingsson (Palo Alto, CA); Yijou Chen (Cupertino, CA)
Assignee: LACEWORK, INC.
H04L67/535G06F9/455G06F9/545G06F16/9024G06F16/9038G06F16/9535G06F16/9537G06F21/57H04L43/06H04L63/10H04L67/306G06F16/2456H04L41/08
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,785,104
App. No.
17/671,199
Granted
Oct 10, 2023
Kind
B2
Abstract

Learning from similar cloud deployments, including: identifying, for at least a portion of a first cloud deployment, one or more additional cloud deployments to utilize for cross-customer learning; receiving information describing configurations associated with the additional cloud deployments; and identifying, based on the configurations, one or more configurations to adopt for the first cloud deployment.

Claims (52)

1. A method of learning from similar cloud deployments, the method comprising:

identifying, for at least a portion of a first cloud deployment, one or more additional cloud deployments to utilize for cross-customer learning;

receiving information describing configurations associated with the additional cloud deployments, including receiving information describing permissions for one or more users of the additional cloud deployments;

determining, based on the information describing permissions for one or more users of the additional cloud deployments, that one or more users of the first cloud deployment are over-permissioned; and

identifying, based on the configurations, one or more configurations to adopt for the first cloud deployment, including identifying a reduced privilege level to give to the one or more users.

2. The method of claim 1 further comprising:

receiving information describing one or more actions associated with the additional cloud deployments; and

wherein identifying the one or more configurations to adopt for the first cloud deployment is further based on the one or more actions.

3. The method of claim 2 wherein:

receiving information describing one or more actions associated with the additional cloud deployments further comprises receiving information describing a security threat to one or more of the additional cloud deployments; and

receiving information describing configurations associated with the additional cloud deployments further comprises receiving information describing configuration settings used to combat the security threat.

4. The method of claim 2 wherein:

receiving information describing one or more actions associated with the additional cloud deployments further comprises receiving information describing a detected vulnerability associated with one or more of the additional cloud deployments; and

receiving information describing configurations associated with the additional cloud deployments further comprises receiving information describing configuration settings used to address the vulnerability.

5. The method of claim 1 further comprising identifying abnormally configured components in the first cloud deployment.

6. The method of claim 1 further comprising receiving information describing one or more deployment processes associated with the additional cloud deployments.

7. The method of claim 1 wherein determining that one or more users of the first cloud deployment are over-permissioned comprises:

identifying the one or more users of the additional cloud deployments based on a similarity to the one or more users of the first cloud deployment; and

determining that the one or more users of the additional cloud deployments have permissions different or lesser than the one or more users of the first cloud deployment.

8. A system for learning from similar cloud deployments, the system comprising at least one processor and memory storing computer program instructions that, when executed, cause the system to carry out the steps of:

identifying, for at least a portion of a first cloud deployment, one or more additional cloud deployments to utilize for cross-customer learning;

receiving information describing configurations associated with the additional cloud deployments, including receiving information describing permissions for one or more users of the additional cloud deployments;

determining, based on the information describing permissions for one or more users of the additional cloud deployments, that one or more users of the first cloud deployment are over-permissioned; and

identifying, based on the configurations, one or more configurations to adopt for the first cloud deployment, including identifying a reduced privilege level to give to the one or more users.

9. The system of claim 8 wherein the computer program instructions, when executed, cause the system to carry out the step of:

receiving information describing one or more actions associated with the additional cloud deployments; and

wherein identifying the one or more configurations to adopt for the first cloud deployment is further based on the one or more actions.

10. The system of claim 9 wherein:

receiving information describing one or more actions associated with the additional cloud deployments further comprises receiving information describing a security threat to one or more of the additional cloud deployments; and

receiving information describing configurations associated with the additional cloud deployments further comprises receiving information describing configuration settings used to combat the security threat.

11. The system of claim 9 wherein:

receiving information describing one or more actions associated with the additional cloud deployments further comprises receiving information describing a detected vulnerability associated with one or more of the additional cloud deployments; and

receiving information describing configurations associated with the additional cloud deployments further comprises receiving information describing configuration settings used to address the vulnerability.

12. The system of claim 8 wherein the computer program instructions, when executed, cause the system to carry out the step of identifying abnormally configured components in the first cloud deployment.

13. The system of claim 8 wherein the computer program instructions, when executed, cause the system to carry out the step of receiving information describing one or more deployment processes associated with the additional cloud deployments.

14. A computer program product for learning from similar cloud deployments, the computer program product disposed on a non-transitory computer readable medium, the computer program product including computer program instructions that, when executed, carry out the steps of:

identifying, for at least a portion of a first cloud deployment, one or more additional cloud deployments to utilize for cross-customer learning;

receiving information describing configurations associated with the additional cloud deployments, including receiving information describing permissions for one or more users of the additional cloud deployments;

determining, based on the information describing permissions for one or more users of the additional cloud deployments, that one or more users of the first cloud deployment are over-permissioned; and

identifying, based on the configurations, one or more configurations to adopt for the first cloud deployment, including identifying a reduced privilege level to give to the one or more users.

15. The computer program product of claim 14 further comprising computer program instructions that, when executed, carry out the step of:

receiving information describing one or more actions associated with the additional cloud deployments; and

wherein identifying the one or more configurations to adopt for the first cloud deployment is further based on the one or more actions.

16. The computer program product of claim 15 wherein:

receiving information describing one or more actions associated with the additional cloud deployments further comprises receiving information describing a security threat to one or more of the additional cloud deployments; and

receiving information describing configurations associated with the additional cloud deployments further comprises receiving information describing configuration settings used to combat the security threat.

17. The computer program product of claim 15 further comprising computer program instructions that, when executed, carry out the step of creating a polygraph associated with the first cloud deployment.

18. The computer program product of claim 15 wherein:

receiving information describing one or more actions associated with the additional cloud deployments further comprises receiving information describing a detected vulnerability associated with one or more of the additional cloud deployments; and

receiving information describing configurations associated with the additional cloud deployments further comprises receiving information describing configuration settings used to address the vulnerability.

19. The computer program product of claim 15 further comprising computer program instructions that, when executed, carry out the step of identifying abnormally configured components in the first cloud deployment.

20. The computer program product of claim 15 further comprising computer program instructions that, when executed, carry out the step of receiving information describing one or more deployment processes associated with the additional cloud deployments.

Assignments (2)
MERGER Recorded Oct 7, 2024
From: LACEWORK, INC.
To: FORTINET, INC.
Reel/Frame 069113/0745 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 14, 2022
From: ERLINGSSON, ÚLFAR; CHEN, YIJOU
To: LACEWORK, INC.
Reel/Frame 059005/0972 →
Continuity (7)
Continuation In Part 17504311 · Oct 18, 2021
Continuation 16665961 · Oct 28, 2019
Continuation 16134794 · Sep 18, 2018
Provisional Application 63243013 · Sep 10, 2021
Provisional Application 62650971 · Mar 30, 2018
Provisional Application 62590986 · Nov 27, 2017
Related Publication 20220247769A1 · Aug 4, 2022
Cited By (12)
US 12,229,128 US 12,301,682 US 12,309,185 US 12,323,449 US 12,348,545 US 12,353,309 US 12,417,822 US 12,418,555 US 12,603,890 US 12,621,324 US 12,652,302 US 12,719,896