US 12,341,769 B2
Automatic generation of network access policies
Krishna Prabhakar, Los Altos Hills, CA (US); Rajarao Bhagya Prasad Nittur, Milpitas, CA (US); Anoop Kumaran Nair, Thrikkakara (IN); Rajesh Kumar Ganapathy Achari, Perumbavoor (IN); Madhusudhan Chitradurga Sethuram Setty, Bengaluru (IN); and Venkatesh Ramachandran, Bengaluru (IN)
Assigned to Arista Networks, Inc., Santa Clara, CA (US)
Filed by Arista Networks, Inc., Santa Clara, CA (US)
Filed on Dec. 27, 2023, as Appl. No. 18/397,939.
Claims priority of application No. 202341039926 (IN), filed on Jun. 12, 2023.
Prior Publication US 2024/0414058 A1, Dec. 12, 2024
Int. Cl. G06F 15/173 (2006.01); G06F 11/07 (2006.01); G06F 11/22 (2006.01); G06F 16/242 (2019.01); G06F 16/245 (2019.01); G06F 40/295 (2020.01); G06F 40/40 (2020.01); G06N 5/022 (2023.01); H04L 9/08 (2006.01); H04L 9/40 (2022.01); H04L 41/0806 (2022.01); H04L 41/0893 (2022.01); H04L 41/0894 (2022.01); H04L 41/0895 (2022.01); H04L 41/14 (2022.01); H04L 41/149 (2022.01); H04L 41/28 (2022.01); H04L 43/0876 (2022.01)
CPC H04L 63/083 (2013.01) [G06F 11/0709 (2013.01); G06F 11/079 (2013.01); G06F 11/0793 (2013.01); G06F 11/2257 (2013.01); G06F 16/242 (2019.01); G06F 16/245 (2019.01); G06F 40/295 (2020.01); G06F 40/40 (2020.01); G06N 5/022 (2013.01); H04L 9/0825 (2013.01); H04L 41/0806 (2013.01); H04L 41/0893 (2013.01); H04L 41/0894 (2022.05); H04L 41/0895 (2022.05); H04L 41/145 (2013.01); H04L 41/149 (2022.05); H04L 41/28 (2013.01); H04L 43/0876 (2013.01); H04L 63/0823 (2013.01); H04L 63/0876 (2013.01); H04L 63/10 (2013.01); H04L 63/102 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method of operating a network comprising:
identifying a plurality of client devices connected to the network;
categorizing the client devices into respective client groups based on device characteristics of each of the client devices;
analyzing traffic patterns among the client groups and assigning the client groups to respective network segments based on the traffic patterns; and
automatically generating a network access policy for at least one of the network segments based on the traffic patterns associated with a portion of the client devices belonging to the at least one of the network segments.