Patent · US Active

Preventing application-level denial-of-service in a multi-tenant system

US9942265B2 · kind B2 · utility

3Cited by
3References
14Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 6, 2014
Grant dateApr 10, 2018
Priority date
Expiry dateJun 5, 2035

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2463/141
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Denial-of-service attacks are prevented or mitigated in a cloud compute environment, such as a multi-tenant, collaborative SaaS system. This is achieved by providing a mechanism by which characterization of “legitimate” behavior is defined for accessor classes, preferably along with actions to be taken in the event an accessor exceeds those limits. A set of accessor “usage profiles” are generated. Typically, a profile comprises information, such as a “request time window,” one or more “constraints,” and one or more “actions.” A request time window defines a time period over which request usage is accumulated and over which constraints are applied. A constraint may be of various types (e.g., number of transactions, defined resource usage limits, etc.) to be applied for the usage monitoring An action defines how the system will respond if a particular constraint is triggered. By applying the constraints to accessor requests, over-utilization of compute resources is enabled.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.