System and method of establishing seamless remote access virtual private network connections

    公开(公告)号:US11588679B2

    公开(公告)日:2023-02-21

    申请号:US17333381

    申请日:2021-05-28

    Abstract: A system and a method of establishing seamless remote access VPN connections are described. For establishment of a VPN connection for a user device, a cluster leader of a cluster of controllers identifies an active controller and a standby controller, based on network load of each controller of the cluster of controllers. An active VPN connection is established between the user device and the active controller and a standby VPN connection is established between the user device and the standby controller. The standby VPN connection is utilized in place of the active VPN connection during failover of the active controller. Because information of an active session is regularly shared by the active controller to the standby controller, the standby controller can seamlessly resume the active session during failover of the active controller.

    UPDATING CLUSTER DATA AT NETWORK DEVICES OF A CLUSTER

    公开(公告)号:US20230016602A1

    公开(公告)日:2023-01-19

    申请号:US17374368

    申请日:2021-07-13

    Abstract: Examples relate to maintaining consistent cluster data across a cluster in a network. A computing system may receive a first signature of a first state of the cluster data present at a leader gateway and a plurality of signatures of a plurality of states of the cluster data present at a plurality of member network devices of the cluster. The cluster may include a plurality of gateways including the leader gateway and a plurality of member gateways. The member network devices may include the plurality of member gateways and a plurality of interconnecting network devices. In response to determining that a signature of the plurality of signatures received from one of the member network devices is different from the first signature, the computing system may send a message to one of the plurality of gateways to update the cluster data at the member network device to represent the first state.

    SYSTEM AND METHOD FOR DYNAMIC ORCHESTRATION OF VIRTUAL GATEWAYS BASED ON USER ROLE

    公开(公告)号:US20220321571A1

    公开(公告)日:2022-10-06

    申请号:US17333451

    申请日:2021-05-28

    Abstract: A system and a method for configuring resources over a network cloud are described. Attributes related to user roles i.e. categories of user roles, network cloud based services associated with each category, and a number of users associated with each category are received. Hardware capabilities and/or network capabilities corresponding to the attributes are determined from a mapping table stored in a repository. A service set capable of providing the hardware capabilities and the network capabilities is determined from the mapping table stored in the repository. The mapping table is based on previous implementations and instructions associated with one or more service sets. Resources are configured over the network cloud to implement the service set.

    METRIC BASED DYNAMIC VIRTUAL PRIVATE NETWORK (VPN) TUNNEL BETWEEN BRANCH GATEWAY DEVICES

    公开(公告)号:US20220217015A1

    公开(公告)日:2022-07-07

    申请号:US17237256

    申请日:2021-04-22

    Abstract: Example implementation relates to a method for establishing a dynamic VPN tunnel between branch gateway devices based on metric data. A branch orchestrator receives metric data from VPNC device. The metric data includes data center bandwidth and processor utilization of the VPNC device. The metric data is derived from the traffic being routed via the VPNC device. When the metric data associated with traffic between a first branch gateway device and a second branch gateway device is above a Service Level Agreement (SLA), a dynamic branch to branch VPN tunnel is established to route the traffic between the first branch gateway device and the second branch gateway device. The VPN tunnel between the branch gateways can be teared when the load at the VPNC device reduces.

    Network link failure detection
    10.
    发明授权

    公开(公告)号:US10931516B2

    公开(公告)日:2021-02-23

    申请号:US16142085

    申请日:2018-09-26

    Abstract: Some examples relate to detecting network link failure. In an example, a determination may be made at a first network device on a network regarding an average round-trip delay time (RTD) between the first network device and a second network device over a given time interval during a given period of time. Then, for the given time interval, a keepalive packet may be sent from the first network device to the second network device at the average RTD of the given time interval for a keepalive time. In response to a determination, by the first network device that there is no acknowledgement of the keepalive packet from the second network device during the keepalive time, a network link between the first network device and the second network device may be identified as failed.

Patent Agency Ranking