-
公开(公告)号:US11350254B1
公开(公告)日:2022-05-31
申请号:US15147272
申请日:2016-05-05
申请人: F5 Networks, Inc.
发明人: Ravi Natarajan , Bipin Kumar , Sergey Bimatov
IPC分类号: H04W4/20 , H04W72/10 , H04L47/50 , H04W12/10 , H04L69/28 , H04W72/04 , H04W88/02 , H04L12/46 , H04L41/026
摘要: A method, non-transitory computer readable medium, and mobile application manager computing device that determines a priority level for a mobile device requiring a compliance check based on characteristic data associated with, or an identified user of, the mobile device. An entry comprising identifying data for the mobile device is inserted into a processing queue associated with the priority level. A determination is made when each of the processing queues associated with a higher priority level than the one priority level is empty. The entry is retrieved from the processing queue, the compliance check is performed on the mobile device, and a status of the mobile device is marked as out-of-compliance or in-compliance based on a result of the compliance check, when the determining indicates each of the processing queues associated with a higher one of the priority levels than the one priority level determined for the mobile device is empty.
-
公开(公告)号:US11343237B1
公开(公告)日:2022-05-24
申请号:US15941498
申请日:2018-03-30
申请人: F5 Networks, Inc.
发明人: Ravi Natarajan , Wui Chung Lie , Bipin Kumar , Gauravsingh Khatri , Deepali Shah
摘要: Methods, non-transitory computer readable media, network traffic manager apparatuses, and systems that assist with managing a federated identity environment includes performing one or more first access control checks on a client upon receiving a request to access one or more web applications. A new signature including data associated with the performed one or more access control checks is generated. Next, the client is redirected to a first server with the generated signature to determine when to authorize the client to access the requested one or more web applications. The client is granted access to the requested one or more web applications when the client is determined to be authorized to access the requested one or more web applications based on one or more second access control checks enforced on the client using the generated signature, and wherein data associated with the enforced one or more second access control checks is included in a response signature.
-
公开(公告)号:US20220150303A1
公开(公告)日:2022-05-12
申请号:US17091093
申请日:2020-11-06
申请人: F5 Networks, Inc.
发明人: Mark Ernest Quevedo
IPC分类号: H04L29/08 , H04L12/707
摘要: Technology related to managing network services using multipath protocols is disclosed. In one example, a method includes intercepting a multipath protocol request from a requesting host for a connection to a service. The multipath protocol request is intercepted by an intermediary server. A target host different than the intermediary server can be selected to provide the service. A multipath protocol packet can be sent from the intermediary server to the requesting host. The multipath protocol packet can add a subflow of the connection using an address of the target host. The subflow can enable a path between the requesting host and the target host that does not traverse the intermediary server.
-
公开(公告)号:US20210399954A1
公开(公告)日:2021-12-23
申请号:US16904934
申请日:2020-06-18
申请人: F5 Networks, Inc.
摘要: Technology related to orchestrating a configuration of a programmable accelerator is disclosed. In one example, a method includes executing a service within a container runtime. The service can include a software application and an orchestrator application, where the orchestrator application is adapted to configure a programmable hardware accelerator and the software application adapted to interoperate with the programmable hardware accelerator. The orchestrator application, executing within the container runtime, can be used to retrieve a system image from a file repository. The system image can include configuration data for the programmable hardware accelerator. The orchestrator application, executing within the container runtime, can be used to configure the programmable hardware accelerator.
-
公开(公告)号:US11044200B1
公开(公告)日:2021-06-22
申请号:US16505094
申请日:2019-07-08
申请人: F5 Networks, Inc.
发明人: Sumandra Majee
IPC分类号: H04L12/28 , H04L12/851 , H04L29/06
摘要: Methods, non-transitory computer readable media, network traffic manager apparatuses, and systems that assist with service stitching using a packet header includes identifying a type of service (TOS) or differentiated services code point (DSCP) value in a header field in each of a plurality of received network packets. One or more value added service chains are identified based on the identified TOS or DSCP value. The plurality of network packets are forwarded to a destination after processing each of the plurality of network packets through the identified one or more value added service chains.
-
公开(公告)号:US10931662B1
公开(公告)日:2021-02-23
申请号:US15803914
申请日:2017-11-06
申请人: F5 Networks, Inc.
发明人: William Church
摘要: Methods, non-transitory computer readable media, network traffic management apparatuses, and network traffic management systems that receive a directory service authentication request from an application. The directory service authentication request comprising a first password. The first password is compared to a stored second password received from a previously-authenticated client to determine when there is a match. A positive authentication result is returned to the application in response to the directory service authentication request, when the determining indicates that there is a match. This technology advantageously facilitates client certificate authentication for applications that only support password-based login.
-
公开(公告)号:US10863410B1
公开(公告)日:2020-12-08
申请号:US16363188
申请日:2019-03-25
申请人: F5 Networks, Inc.
发明人: Vernon Wells , Akihiko Maruse , Barry Goh , Antonio Torzillo
IPC分类号: H04W40/02 , H04L12/725 , H04W48/18 , H04W88/18 , H04W88/16 , H04L12/46 , H04W28/10 , H04L12/741 , H04L29/12 , H04W28/08
摘要: Methods, non-transitory computer readable media, session director apparatuses, and network traffic management systems that facilitate packet data network (PDN) service slicing with microsegmentation in an evolved packet core are disclosed. With this technology, a create session request (CSR) general packet radio service (GPRS) tunneling protocol (GTP) control (GTP-c) message is intercepted. A lookup key is then determined based on content of the intercepted CSR GTP-c message. A PDN gateway (PGW) identifier for a PGW is obtained using a slice name obtained using the lookup key. The intercepted CSR GTP-c message is modified to include the obtained PGW identifier. Subsequently, the modified CSR GTP-c message is steered based on the obtained PGW identifier, such as directly to the PGW or to a serving gateway (SGW) module associated with the PGW.
-
98.
公开(公告)号:US10721269B1
公开(公告)日:2020-07-21
申请号:US12614373
申请日:2009-11-06
申请人: Ron Talmor , Nir Shahaf , Orna Zackaria
发明人: Ron Talmor , Nir Shahaf , Orna Zackaria
摘要: Client requests for server resources are received by a network traffic management device (NTMD). The NTMD initially responds to the client requests on behalf of the associated servers. The initial responses include client side language scripts for execution by the clients. Executing the scripts causes the clients to resend their initial requests identified as a potential attack by the NTMD along with information indicating the client's legitimacy, such as the result of a computational JavaScript challenge. The NTMD receives the resent initial request, determines it was sent from a legitimate requestor and is therefore not an attack, and forwards it to the associate server.
-
公开(公告)号:US10708393B1
公开(公告)日:2020-07-07
申请号:US16119985
申请日:2018-08-31
申请人: F5 Networks, Inc.
IPC分类号: G06F15/16 , H04L29/06 , H04L12/823 , H04L29/08
摘要: Embodiments are directed to stateless communication using a stateful protocol. One or more NTMAs may establish a connection with a client computer based on data exchanged with a the client computer using the stateful protocol. The exchanged data may include validation information provided by the one or more NTMAs. The exchanged data and other information associated with the connection may be discarded from one or more memories of the one or more NTMAs. A network packet communicated over the network using the stateful protocol may be obtained. Verification information and candidate validation information may be generated based on one or more characteristics of the network packet. The network packet may be validated based on a comparison of the verification information and the candidate validation information. A reply that adheres to the stateful protocol may be provided to the client computer based on the validated network packet.
-
100.
公开(公告)号:US10412198B1
公开(公告)日:2019-09-10
申请号:US15721184
申请日:2017-09-29
申请人: F5 Networks, Inc.
发明人: Martin Duke , Saxon Amdahl
IPC分类号: H04L1/00 , H04L29/06 , H04L12/801
摘要: Methods, non-transitory computer readable media, network traffic management apparatuses, and network traffic management systems that generate a duration corresponding to a current one of a plurality of states in a TCP connection. The duration is generated based on a difference between a stored time recorded at a previous transition to the current one of the states and a current time. The duration is stored or output as associated with the current one of the states. The stored time recorded at the previous transition to the current one of the states is then replaced with the current time. A determination is made when one or more TCP configurations should be modified based on the duration for the current one of the states. The one or more TCP configurations are automatically modified to improve TCP performance, when the determining indicates that the one or more TCP configurations should be modified.
-
-
-
-
-
-
-
-
-