IP Library › Granted Patent US 11,379,612
Granted Patent B2
US 11,379,612 · App. 16/655,924 · Granted Jul 5, 2022

Method and system for securing cloud storage and databases from insider threats and optimizing performance

Inventors: Vijay Madisetti (Johns Creek, GA); Arshdeep Bahga (Chandigarh, IN)
Assignee: Vijay Madisetti
G06F21/6245G06F16/95
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,379,612
App. No.
16/655,924
Filed
Oct 17, 2019
Granted
Jul 5, 2022
Kind
B2
Art Unit
2497
USPC
726/1
Abstract

A method of optimizing performance of and securing cloud storage and databases including analyzing data comprised by a data request by an agent application on a computerized device, the data request being generated by a client application and inserting a tag into the data request responsive to the analysis of the data comprised by the data request, the tag indicating storage requirements for at least one of security, access speed, or fault tolerance.

Claims (38)

1. A router for optimizing performance of and securing cloud storage and databases operable to:

receive a data request from an application on a computerized device, defining a client application;

analyze data comprised by the data request;

map the data request to a routing database comprised by the router, the routing database comprising a plurality of rules;

insert a tag into the data request responsive to the analysis of the data comprised by the data request, the tag enabling the router to choose between storage options including secure areas for storage of types of tagged data, faster storage locations for access, and storage with fault-tolerant features;

identify tracing information added to the data request transmitted by the client application;

receive tracing information from a storage intelligence service to which the tracing information was transmitted by an agent application asynchronously, defining asynchronous tracing information, via a pathway other than a pathway through which the data request was transmitted;

receive an update to a rule comprised by the routing database from the storage intelligence service, defining an updated rule, the updated rule having been created from a real-time analysis of the tracing information using machine learning by the storage intelligence service; and

update a rule comprised by the routing database responsive to receiving the updated rule.

2. The router of claim 1 wherein the tracing information comprises one or more of a span and a trace.

3. The router of claim 1 wherein the agent application is executed by one of a client computerized device, a load balancer, a proxy server, or an application server.

4. The router of claim 1 wherein the router is further operable to add tracing information to the data request.

5. The router of claim 1 wherein the agent application obtains the asynchronous tracing information by listening to tracing information injected in the client application.

6. A method of optimizing performance of and securing cloud storage and databases comprising:

receiving a data request at a router from an agent application on a computerized device, defining a client application;

analyzing data comprised by the data request;

mapping the data request to a routing database comprised by the router, the routing database comprising a plurality of rules;

inserting a tag into the data request responsive to the analysis of the data comprised by the data request, the tag enabling the router to choose between storage options including secure areas for storage of types of tagged data, faster storage locations for access, and storage with fault-tolerant features;

identifying tracing information added to the data request transmitted by the client application;

receiving, by the router, tracing information from a storage intelligence service to which the tracing information was transmitted by an agent application asynchronously, defining asynchronous tracing information and via a pathway other than a pathway through which the data request was transmitted;

receiving an update to a rule comprised by the routing database from the storage intelligence service, defining an updated rule, the updated rule having been created from a real-time analysis of the tracing information using machine learning by the storage intelligence service; and

updating a rule comprised by the routing database responsive to receiving the updated rule.

7. The method of claim 6 wherein the tracing information comprises one or more of a span and a trace.

8. The method of claim 6 wherein the agent application is executed by one of a client computerized device, a load balancer, a proxy server, or an application server.

9. The method of claim 6 further comprising adding tracing information to the data request.

10. The method of claim 6 wherein the agent application obtains the asynchronous tracing information by listening to tracing information injected in the client application.

11. A non-transitory computer readable medium storing instructions causing a computerized device to execute a cloud storage optimization and security method, the cloud storage optimization and security method comprising:

analyzing data comprised by a data request by an application on a client computerized device, defining a client application;

mapping the data request to a routing database comprised by the router, the routing database comprising a plurality of rules;

inserting a tag into the data request responsive to the analysis of the comprised by the data request, the tag enabling the router to choose between storage options including secure areas for storage of types of tagged data, faster storage locations for access, and storage with fault-tolerant features;

identifying tracing information added to the data request transmitted by the client application;

receiving, by a router, tracing information from a storage intelligence service to which the tracing information was transmitted by an agent application asynchronously, defining asynchronous tracing information and via a pathway other than a pathway through which the data request was transmitted;

receiving an update to a rule comprised by the routing database from the storage intelligence service, defining an updated rule, the updated rule having been created from a real-time analysis of the tracing information using machine learning by the storage intelligence service; and

updating a rule comprised by the routing database responsive to receiving the updated rule.

12. The method of claim 11 wherein the tracing information comprises one or more of a span and a trace.

13. The method of claim 11 wherein the agent application is executed by one of a client computerized device, a load balancer, a proxy server, or an application server.

14. The method of claim 11 further comprising adding tracing information to the data request.

15. The method of claim 11 wherein the agent application obtains the asynchronous tracing information by listening to tracing information injected in the client application.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 17, 2021
From: BAHGA, ARSHDEEP
To: MADISETTI, VIJAY
Reel/Frame 057196/0795 →
Continuity (4)
Continuation 16506285 · Jul 9, 2019
Continuation 16269948 · Feb 7, 2019
Provisional Application 62782428 · Dec 20, 2018
Related Publication 20200202039A1 · Jun 25, 2020
Cited By (1)
US 12,265,648