Change impact simulation analysis

US11765044B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11765044-B2
Application numberUS-202217814158-A
CountryUS
Kind codeB2
Filing dateJul 21, 2022
Priority dateNov 6, 2020
Publication dateSep 19, 2023
Grant dateSep 19, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A system for simulating network configurations includes data processing hardware and memory hardware in communication with the data processing hardware. The memory hardware stores instructions that when executed on the data processing hardware cause the data processing hardware to perform operations. The operations includes receiving one or more parameter changes for a production network model of a network. The operations also include generating a simulation network model including the one or more parameter changes. Another operation includes analyzing the simulated network flow within the simulation network model. The operations also include generating a report including an impact of the parameter changes on the network. The operations may also include receiving a production network log including a recorded workflow for the production network model and simulating the production workflow of the production network log within the simulation network model to generate a simulated network log.

First claim

Opening claim text (preview).

What is claimed is: 1. A computer-implemented method when executed by data processing hardware causes the data processing hardware to perform operations comprising: generating a simulation network model based on a workflow for a production network model of a network, the simulation network model including one or more parameter changes to the production network model; replaying the workflow for the production network model as a simulated network flow within the simulation network model; generating a report indicating differences between the production network model and the simulation network model based on the replaying of the workflow for the production network model as the simulated network flow within the simulation network model; and based on the report indicating the differences between the production network model and the simulation network model: receiving an acceptance of the one or more parameter changes included in the simulation network model; and implementing the one or more parameter changes in the production network model. 2. The method of claim 1 , further comprising: receiving a production network log including the workflow for the production network model; and generating a simulated network log based on the simulated network flow. 3. The method of claim 2 , wherein generating the report indicating the differences between the production network model and the simulation network model comprises: comparing the production network log to the simulation network log; and identifying differences between the production network log and the simulation network log. 4. The method of claim 2 , wherein the production network log is one of a virtual private connection flow log or a firewall rules log. 5. The method of claim 1 , wherein the operations further comprise determining an impact of the one or more parameter changes on the production network model. 6. The method of claim 5 , wherein determining the impact of the one or more parameter changes comprises determining an impact to at least one of network reachability, a firewall shadow rules predicted firewall hit rates, user intent rules, security compliance rules, or resource quotas and utilization. 7. The method of claim 1 , wherein generating the simulation network model comprises incrementally incorporating the one or more parameter changes into the production network model. 8. The method of claim 1 , wherein the operations further comprise receiving one or more invariant parameters of the production network model. 9. The method of claim 1 , wherein the operations further comprise changing a configuration of the network when an impact of the one or more parameter changes on the network is acceptable. 10. The method of claim 1 , wherein analyzing the simulated network flow within the simulation network model comprises determining whether the simulation network model impacts a network intent of the production network model. 11. A system comprising: data processing hardware; and memory hardware in communication with the data processing hardware, the memory hardware storing instructions that when executed on the data processing hardware cause the data processing hardware to perform operations comprising: generating a simulation network model based on a workflow for a production network model of a network, the simulation network model including one or more parameter changes to the production network model; replaying the workflow for the production network model as a simulated network flow within the simulation network model; generating a report indicating differences between the production network model and the simulation network model based on the replaying of the workflow for the production network model as the simulated network flow within the simulation network model; and based on the report indicating the differences between the production network model and the simulation network model: receiving an acceptance of the one or more parameter changes included in the simulation network model; and implementing the one or more parameter changes in the production network model. 12. The system of claim 11 , wherein the operations further comprise: receiving a production network log including the workflow for the production network model; and generating a simulated network log based on the simulated network flow. 13. The system of claim 12 , wherein generating the report indicating the differences between the production network model and the simulation network model comprises: comparing the production network log to the simulation network log; and identifying differences between the production network log and the simulation network log. 14. The system of claim 12 , wherein the production network log is one of a virtual private connection flow log and a firewall rules log. 15. The system of claim 11 , wherein the operations further comprise determining an impact of the one or more parameter changes on the production network model. 16. The system of claim 15 , wherein determining the impact of the one or more parameter changes comprises determining an impact to at least one of network reachability, a firewall shadow rules predicted firewall hit rates, user intent rules, security compliance rules, or resource quotas and utilization. 17. The system of claim 11 , wherein generating the simulation network model comprises incrementally incorporating the one or more parameter changes into the production network model. 18. The system of claim 11 , wherein the operations further comprise receiving one or more invariant parameters of the production network model. 19. The system of claim 11 , wherein the operations further comprise changing a configuration of the network when an impact of the one or more parameter changes on the network is acceptable. 20. The system of claim 11 , wherein analyzing the simulated network flow within the simulation network model comprises determining whether the simulation network model impacts a network intent of the production network model.

Assignees

Inventors

Classifications

  • H04L41/145Primary

    involving simulating, designing, planning or modelling of a network · CPC title

  • Checking the configuration · CPC title

  • Processing captured monitoring data, e.g. for logfile generation · CPC title

  • Rule management · CPC title

  • Virtual private networks · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11765044B2 cover?
A system for simulating network configurations includes data processing hardware and memory hardware in communication with the data processing hardware. The memory hardware stores instructions that when executed on the data processing hardware cause the data processing hardware to perform operations. The operations includes receiving one or more parameter changes for a production network model …
Who is the assignee on this patent?
Google Llc
What technology area does this patent fall under?
Primary CPC classification H04L41/145. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Sep 19 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 5 related publications on this page (citations in our corpus or others sharing the same primary CPC).