IP Library Granted Patent US 11,758,025
Granted Patent B2
US 11,758,025 · App. 17/475,457 · Granted Sep 12, 2023

Adaptive tracing using one of a plurality of protocols

Inventors: Pankaj Chhabra (Surrey, CA); Sandeep Kamath (San Jose, CA)
Assignee: Zscaler, Inc.
H04L69/18H04L41/0893H04L43/0811H04L43/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,758,025
App. No.
17/475,457
Granted
Sep 12, 2023
Kind
B2
Abstract

Techniques for using trace with tunnels and cloud-based systems for determining measures of network performance are presented. Systems and methods include obtaining policy information related to a trace; performing a plurality of traces, from a start point to an end point in a network, using the different protocols based on the policy information; evaluating which of the plurality of traces reach the end point, and evaluating any of average latency of the plurality of traces, average loss of the plurality of traces, and a number of hops found, for each of the plurality of traces that reach the end point; and selecting a protocol of the different protocols to use for the trace based on the evaluating. The different protocols include Internet Control Message Protocol (ICMP), Transmission Control Protocol (TCP), and User Datagram Protocol (UDP).

Claims (34)

1. A method comprising steps of

obtaining policy information related to a trace;

performing a plurality of traces, from a start point to an end point in a network, using the different protocols based on the policy information;

evaluating which of the plurality of traces reach the end point, and evaluating any of average latency of the plurality of traces, average loss of the plurality of traces, and a number of hops found, for each of the plurality of traces that reach the end point; and

selecting a protocol of the different protocols to use for the trace based on the evaluating.

2. The method of claim 1 , wherein the different protocols include Internet Control Message Protocol (ICMP), Transmission Control Protocol (TCP), and User Datagram Protocol (UDP).

3. The method of claim 1 , wherein the selecting is based on any of a least average latency of the plurality of traces and a least average loss of the plurality of traces.

4. The method of claim 1 , wherein the policy information includes starting hop, ending hop, protocols to be used for egress and destination, number of packets to send, delay between the packets, User Datagram Protocol (UDP) and Transmission Control Protocol (TCP) ports for egress and destination, destination domain or address, intervals to be used, and a default protocol to used for egress and destination in case of failure.

5. The method of claim 1 , wherein the method is performed by a user device as the start point, and the end point includes an egress Internet Protocol (IP) address for an internal network.

6. The method of claim 5 , wherein the method is performed responsive to any of the egress IP address change and a defined interval.

7. The method of claim 5 , wherein, for a given user device, a given egress IP, and a destination, the selected protocol is different in the internal network from the selected protocol to the destination.

8. The method of claim 5 , wherein the steps further include making a call to a node in a cloud-based system to determine the egress IP.

9. The method of claim 1 , wherein the method is performed by a cloud node in a cloud-based system as the start point, and the end point includes a destination.

10. The method of claim 1 , wherein the steps further include

performing the trace with the selected protocol; and

combining a plurality of results including the trace to obtain data from a user device to a destination through an internal network.

11. A non-transitory computer-readable medium comprising instructions that, when executed, cause one or more processors to perform steps of:

obtaining policy information related to a trace;

performing a plurality of traces, from a start point to an end point in a network, using the different protocols based on the policy information;

evaluating which of the plurality of traces reach the end point, and evaluating any of average latency of the plurality of traces, average loss of the plurality of traces, and a number of hops found, for each of the plurality of traces that reach the end point; and

selecting a protocol of the different protocols to use for the trace based on the evaluating.

12. The non-transitory computer-readable medium of claim 11 , wherein the different protocols include Internet Control Message Protocol (ICMP), Transmission Control Protocol (TCP), and User Datagram Protocol (UDP).

13. The non-transitory computer-readable medium of claim 11 , wherein the selecting is based on any of a least average latency of the plurality of traces and a least average loss of the plurality of traces.

14. The non-transitory computer-readable medium of claim 11 , wherein the policy information includes

starting hop, ending hop, protocols to be used for egress and destination, number of packets to send, delay between the packets, User Datagram Protocol (UDP) and Transmission Control Protocol (TCP) ports for egress and destination, destination domain or address, intervals to be used, and a default protocol to used for egress and destination in case of failure.

15. The non-transitory computer-readable medium of claim 11 , wherein the method is performed by a user device as the start point, and the end point includes an egress Internet Protocol (IP) address for an internal network.

16. The non-transitory computer-readable medium of claim 15 , wherein the method is performed responsive to any of the egress IP address change and a defined interval.

17. The non-transitory computer-readable medium of claim 15 , wherein, for a given user device, a given egress IP, and a destination, the selected protocol is different in the internal network from the selected protocol to the destination.

18. The non-transitory computer-readable medium of claim 15 , wherein the steps further include

making a call to a node in a cloud-based system to determine the egress IP.

19. The non-transitory computer-readable medium of claim 11 , wherein the method is performed by a cloud node in a cloud-based system as the start point, and the end point includes a destination.

20. The non-transitory computer-readable medium of claim 11 , wherein the steps further include

performing the trace with the selected protocol; and

combining a plurality of results including the trace to obtain data from a user device to a destination through an internal network.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 15, 2021
From: CHHABRA, PANKAJ; KAMATH, SANDEEP
To: ZSCALER, INC.
Reel/Frame 057484/0006 →
Continuity (3)
Continuation In Part 17193019 · Mar 5, 2021
Continuation In Part 17149130 · Jan 14, 2021
Related Publication 20220224780A1 · Jul 14, 2022