Change impact simulation analysis
US-11424991-B2 · Aug 23, 2022 · US
US11765044B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11765044-B2 |
| Application number | US-202217814158-A |
| Country | US |
| Kind code | B2 |
| Filing date | Jul 21, 2022 |
| Priority date | Nov 6, 2020 |
| Publication date | Sep 19, 2023 |
| Grant date | Sep 19, 2023 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A system for simulating network configurations includes data processing hardware and memory hardware in communication with the data processing hardware. The memory hardware stores instructions that when executed on the data processing hardware cause the data processing hardware to perform operations. The operations includes receiving one or more parameter changes for a production network model of a network. The operations also include generating a simulation network model including the one or more parameter changes. Another operation includes analyzing the simulated network flow within the simulation network model. The operations also include generating a report including an impact of the parameter changes on the network. The operations may also include receiving a production network log including a recorded workflow for the production network model and simulating the production workflow of the production network log within the simulation network model to generate a simulated network log.
Opening claim text (preview).
What is claimed is: 1. A computer-implemented method when executed by data processing hardware causes the data processing hardware to perform operations comprising: generating a simulation network model based on a workflow for a production network model of a network, the simulation network model including one or more parameter changes to the production network model; replaying the workflow for the production network model as a simulated network flow within the simulation network model; generating a report indicating differences between the production network model and the simulation network model based on the replaying of the workflow for the production network model as the simulated network flow within the simulation network model; and based on the report indicating the differences between the production network model and the simulation network model: receiving an acceptance of the one or more parameter changes included in the simulation network model; and implementing the one or more parameter changes in the production network model. 2. The method of claim 1 , further comprising: receiving a production network log including the workflow for the production network model; and generating a simulated network log based on the simulated network flow. 3. The method of claim 2 , wherein generating the report indicating the differences between the production network model and the simulation network model comprises: comparing the production network log to the simulation network log; and identifying differences between the production network log and the simulation network log. 4. The method of claim 2 , wherein the production network log is one of a virtual private connection flow log or a firewall rules log. 5. The method of claim 1 , wherein the operations further comprise determining an impact of the one or more parameter changes on the production network model. 6. The method of claim 5 , wherein determining the impact of the one or more parameter changes comprises determining an impact to at least one of network reachability, a firewall shadow rules predicted firewall hit rates, user intent rules, security compliance rules, or resource quotas and utilization. 7. The method of claim 1 , wherein generating the simulation network model comprises incrementally incorporating the one or more parameter changes into the production network model. 8. The method of claim 1 , wherein the operations further comprise receiving one or more invariant parameters of the production network model. 9. The method of claim 1 , wherein the operations further comprise changing a configuration of the network when an impact of the one or more parameter changes on the network is acceptable. 10. The method of claim 1 , wherein analyzing the simulated network flow within the simulation network model comprises determining whether the simulation network model impacts a network intent of the production network model. 11. A system comprising: data processing hardware; and memory hardware in communication with the data processing hardware, the memory hardware storing instructions that when executed on the data processing hardware cause the data processing hardware to perform operations comprising: generating a simulation network model based on a workflow for a production network model of a network, the simulation network model including one or more parameter changes to the production network model; replaying the workflow for the production network model as a simulated network flow within the simulation network model; generating a report indicating differences between the production network model and the simulation network model based on the replaying of the workflow for the production network model as the simulated network flow within the simulation network model; and based on the report indicating the differences between the production network model and the simulation network model: receiving an acceptance of the one or more parameter changes included in the simulation network model; and implementing the one or more parameter changes in the production network model. 12. The system of claim 11 , wherein the operations further comprise: receiving a production network log including the workflow for the production network model; and generating a simulated network log based on the simulated network flow. 13. The system of claim 12 , wherein generating the report indicating the differences between the production network model and the simulation network model comprises: comparing the production network log to the simulation network log; and identifying differences between the production network log and the simulation network log. 14. The system of claim 12 , wherein the production network log is one of a virtual private connection flow log and a firewall rules log. 15. The system of claim 11 , wherein the operations further comprise determining an impact of the one or more parameter changes on the production network model. 16. The system of claim 15 , wherein determining the impact of the one or more parameter changes comprises determining an impact to at least one of network reachability, a firewall shadow rules predicted firewall hit rates, user intent rules, security compliance rules, or resource quotas and utilization. 17. The system of claim 11 , wherein generating the simulation network model comprises incrementally incorporating the one or more parameter changes into the production network model. 18. The system of claim 11 , wherein the operations further comprise receiving one or more invariant parameters of the production network model. 19. The system of claim 11 , wherein the operations further comprise changing a configuration of the network when an impact of the one or more parameter changes on the network is acceptable. 20. The system of claim 11 , wherein analyzing the simulated network flow within the simulation network model comprises determining whether the simulation network model impacts a network intent of the production network model.
involving simulating, designing, planning or modelling of a network · CPC title
Checking the configuration · CPC title
Processing captured monitoring data, e.g. for logfile generation · CPC title
Rule management · CPC title
Virtual private networks · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.