Method, system, and apparatus for delegating control over the configuration of multi-tenant network devices

    公开(公告)号:US10469476B1

    公开(公告)日:2019-11-05

    申请号:US16163036

    申请日:2018-10-17

    Abstract: The disclosed apparatus may include (1) providing a framework that enables a customer entity of a service provider to configure, via a customer portal, a network device of the service provider that directs network traffic of the customer entity, (2) creating, for the customer entity by way of the framework, a virtual network that includes at least a portion of the network device of the service provider, (3) detecting an attempt by the customer entity to configure at least a portion of the virtual network via the customer portal, and then in response to detecting the attempt by the customer entity, (4) performing a configuration operation that configures the portion of the virtual network as directed by the customer entity via the customer portal. Various other apparatuses, systems, and methods are also disclosed.

    Network services using pools of pre-configured virtualized network functions and service chains

    公开(公告)号:US10063415B1

    公开(公告)日:2018-08-28

    申请号:US15197754

    申请日:2016-06-29

    CPC classification number: H04L41/5054 H04L41/0806 H04L67/10 H04L67/16

    Abstract: Techniques are disclosed for reducing the time required to instantiate network services in a service provider network to service requests by subscriber devices. In one example, an orchestration engine pre-creates pools of different virtual network functions (VNFs). Upon receiving a request to service network traffic from a subscriber device, the orchestration engine dynamically creates a service chain using the appropriate VNFs from the pools of different VNFs. In another example, the orchestration engine pre-creates pools of common service chains. Upon receiving a request to service network traffic from a subscriber device, the orchestration engine selects the appropriate service chain from the pools of service chains. After configuring the service chain, the orchestration engine issues instructions to a Software-Defined Networking (SDN) controller causing the SDN controller to update forwarding information in the service provider network to enable the service chain to service the subscriber traffic.

    Method, system, and apparatus for delegating control over the configuration of multi-tenant network devices

    公开(公告)号:US10230709B1

    公开(公告)日:2019-03-12

    申请号:US15197756

    申请日:2016-06-30

    Abstract: The disclosed apparatus may include (1) providing a framework that enables a customer entity of a service provider to configure, via a customer portal, a network device of the service provider that directs network traffic of the customer entity, (2) creating, for the customer entity by way of the framework, a virtual network that includes at least a portion of the network device of the service provider, (3) detecting an attempt by the customer entity to configure at least a portion of the virtual network via the customer portal, and then in response to detecting the attempt by the customer entity, (4) performing a configuration operation that configures the portion of the virtual network as directed by the customer entity via the customer portal. Various other apparatuses, systems, and methods are also disclosed.

    Traffic migration based on traffic flow and traffic path characteristics

    公开(公告)号:US10389575B2

    公开(公告)日:2019-08-20

    申请号:US15655496

    申请日:2017-07-20

    Abstract: A device may include one or more processors to detect an issue in a universal customer premises equipment (uCPE) platform; select a traffic flow to migrate from the uCPE platform to a virtual customer premises equipment (vCPE) platform, the traffic flow may be selected based on a characteristic of the traffic flow; determine a traffic path of the traffic flow through the vCPE platform; select a point of presence (PoP) of the vCPE platform to host a virtual network function (VNF) associated with the traffic flow based on the PoP being situated along the traffic path; and perform an action associated with the PoP or the traffic flow to resolve the issue.

    System and method for authorizing usage of network devices

    公开(公告)号:US09647841B1

    公开(公告)日:2017-05-09

    申请号:US14871228

    申请日:2015-09-30

    Abstract: The disclosed system may include (1) a detection module, stored in memory, that detects that a user is attempting to operate a network peripheral device configured for connecting into a base network device, at least one of the network peripheral device and the base network device including a trusted platform module that further includes an endorsement key that identifies the trusted platform module, (2) an obtaining module, stored in memory, that obtains a digitally signed indication that the user is authorized by a vendor to operate the network peripheral device, (3) an enablement module, stored in memory, that enables the user to operate the network peripheral device based on obtaining the digitally signed indication that the user is authorized by the vendor to operate the network peripheral device, and (4) at least one physical processor configured to execute these modules. Various other systems and methods are also disclosed.

    APPARATUS AND METHOD FOR AUTHENTICATING NETWORK DEVICES
    9.
    发明申请
    APPARATUS AND METHOD FOR AUTHENTICATING NETWORK DEVICES 有权
    用于认证网络设备的装置和方法

    公开(公告)号:US20160286392A1

    公开(公告)日:2016-09-29

    申请号:US14668834

    申请日:2015-03-25

    Abstract: The disclosed apparatus may include (1) a reply-reception module, stored in memory, that receives, from a satellite device, an authentication reply that includes an original authentication message digitally signed by the aggregation device using a private key of the aggregation device and that is digitally signed by the satellite device using a private key of the satellite device, (2) a forwarding module, stored in memory, that forwards the authentication reply to a network management server, (3) a validation-reception module, stored in memory, that receives, from the network management server in response to forwarding the authentication reply, a validation message, and (4) an authentication module, stored in memory, that authenticates the satellite device based at least in part on receiving the validation message. Various other apparatuses, systems, and methods are also disclosed.

    Abstract translation: 所公开的装置可以包括:(1)存储在存储器中的应答接收模块,其从卫星设备接收包括由聚合设备使用聚合设备的私钥进行数字签名的原始认证消息的认证回复,以及 由卫星设备使用卫星设备的私钥进行数字签名,(2)存储在存储器中的转发模块,其将认证回复转发给网络管理服务器,(3)验证接收模块,存储在 存储器,其从网络管理服务器接收响应于转发认证答复的验证消息,以及(4)存储在存储器中的至少部分地基于接收验证消息来认证卫星设备的认证模块。 还公开了各种其它装置,系统和方法。

    Network services using pools of pre-configured virtualized network functions and service chains

    公开(公告)号:US10547508B1

    公开(公告)日:2020-01-28

    申请号:US16102417

    申请日:2018-08-13

    Abstract: Techniques are disclosed for reducing the time required to instantiate network services in a service provider network to service requests by subscriber devices. In one example, an orchestration engine pre-creates pools of different virtual network functions (VNFs). Upon receiving a request to service network traffic from a subscriber device, the orchestration engine dynamically creates a service chain using the appropriate VNFs from the pools of different VNFs. In another example, the orchestration engine pre-creates pools of common service chains. Upon receiving a request to service network traffic from a subscriber device, the orchestration engine selects the appropriate service chain from the pools of service chains. After configuring the service chain, the orchestration engine issues instructions to a Software-Defined Networking (SDN) controller causing the SDN controller to update forwarding information in the service provider network to enable the service chain to service the subscriber traffic.

Patent Agency Ranking