-
公开(公告)号:US11496337B2
公开(公告)日:2022-11-08
申请号:US17148481
申请日:2021-01-13
Applicant: Cisco Technology, Inc.
Inventor: Vincent Cuissard , Domenico Ficara , Amine Choukir , Roberto Muccifora
Abstract: A method for establishing a VPN with a client device is provided. In the method, an AP can receive an access request directed to an OpenRoaming (OR) Service Set Identifier (SSID) from the client device. The AP can send the access request to an OR connector. In response to the access request, the AP may receive an access response from the OR connector. The access response can include an attribute indicating an address to connect to a company Virtual Private Network (VPN) headend. The AP may then use the attribute to establish the VPN connection with the company VPN headend.
-
公开(公告)号:US20210092021A1
公开(公告)日:2021-03-25
申请号:US16576387
申请日:2019-09-19
Applicant: Cisco Technology Inc.
Inventor: Amine Choukir , Roberto Muccifora , Antonio Trifilo , Domenico Ficara , Vincent Cuissard , Salvatore Valenza
Abstract: A method is provided in a wireless local area network controller in a wireless communication network. The wireless communication network includes one or more virtual networks identified with virtual network IDs, VNIDs. A request is received from a wireless client to onboard onto the network and the wireless client is mapped to an onboarding VNID. The onboarding VNID is associated with an onboarding virtual network that does not require an authentication of the wireless client. An Internet Protocol address assignment is forwarded to the wireless client. The wireless client is remapped from the onboarding VNID to the destination VNID after authenticating the wireless client. The wireless client maintains the assigned IP address after moving from the onboarding VNID to the destination VNID. Access to the wireless client on a virtual network identified by the destination VNID is provided via the assigned IP address.
-
公开(公告)号:US12177943B2
公开(公告)日:2024-12-24
申请号:US17111625
申请日:2020-12-04
Applicant: Cisco Technology, Inc.
Inventor: Vincent Cuissard , Domenico Ficara , Alessandro Erta , Luca Bisti , Kasi Nalamalapu , Sudhir Kumar Jain , Salvatore Valenza , Arun Khanna , Stefano Ferrari , Loris Gazzarrini
IPC: H04W76/00 , H04W4/40 , H04W40/24 , H04W76/11 , H04W76/12 , H04W88/16 , H04W36/00 , H04W92/02 , H04W92/24
Abstract: In one embodiment, a gateway to a Layer-3 network forms a first Layer-2 tunnel between the gateway and a first wireless access point (AP) that communicates wirelessly with a first mobile node of a mobile system (MS) via a first wireless connection. The gateway generates a mapping that associates an onboard device of the MS with the first AP and an identifier for the MS, based on traffic conveyed via the first Layer-2 tunnel and associated with the onboard device, the traffic comprising a header that indicates the identifier for the MS. The gateway receives, from a second AP, an indication that the MS is roaming from the first wireless connection to a second wireless connection, the indication including the identifier for the MS. The gateway updates the mapping to associate the onboard device of the MS with a second AP, based on the indication that the MS is roaming.
-
14.
公开(公告)号:US20240422846A1
公开(公告)日:2024-12-19
申请号:US18817885
申请日:2024-08-28
Applicant: Cisco Technology, Inc.
Inventor: Amine Choukir , Robert Barton , Anirban Karmakar , Domenico Ficara , Vincent Cuissard , Jerome Henry
Abstract: A user device connected to a wireless network maintains session persistence through a MAC address change of a user device. The user device establishes a multi-path communication session including a first subflow associated with a first MAC address for the user device. When the user device changes from the first MAC address to a second MAC address. the user device establishes a second subflow of the multi-path communication session. The second subflow is associated with the second MAC address. After establishing the second subflow associated with the second MAC address, the user device ends the first subflow associated with the first MAC address.
-
公开(公告)号:US11962461B1
公开(公告)日:2024-04-16
申请号:US18357497
申请日:2023-07-24
Applicant: Cisco Technology, Inc.
Inventor: Domenico Ficara , Amine Choukir , Salvatore Valenza , Vincent Cuissard
IPC: H04L41/0806 , H04L41/0853 , H04L41/0893
CPC classification number: H04L41/0806 , H04L41/0853 , H04L41/0893
Abstract: A system and a method to dynamically reprovision network devices may include a first network device configured to reprovision a second network device in accordance with a specific location of the second network device in a predefined area. The first network device may be configured to sense the second device at the specific location in the predefined area, identify reprovisioning parameters associated with the specific location, and provide the reprovisioning parameters to the second network device. In turn, the second network device may be configured to perform one or more roles associated with the specific location in the predefined area based at least in part upon information in the reprovisioning parameters.
-
公开(公告)号:US20240064125A1
公开(公告)日:2024-02-22
申请号:US18501275
申请日:2023-11-03
Applicant: Cisco Technology, Inc.
Inventor: Roberto Muccifora , Domenico Ficara , Amine Choukir , Anirban Karmakar , Vincent Cuissard , Sudhir Kumar Jain
IPC: H04L61/5061 , H04L61/5053
CPC classification number: H04L61/5061 , H04L61/5053 , H04W88/02
Abstract: Techniques are provided that rotate a device address used to identify a wireless client device on a wireless network. The wireless client device and at least one network infrastructure component identify a plurality of device addresses associated with the wireless client device. In some embodiments, the plurality of device addresses are generated via a corresponding plurality of invocations of a stateful random number generator, such as a cryptographically secure pseudorandom number generator.
-
公开(公告)号:US11855961B2
公开(公告)日:2023-12-26
申请号:US17329827
申请日:2021-05-25
Applicant: Cisco Technology, Inc.
Inventor: Roberto Muccifora , Domenico Ficara , Amine Choukir , Anirban Karmakar , Vincent Cuissard , Sudhir Kumar Jain
IPC: H04L61/5061 , H04L61/5053 , H04W88/02
CPC classification number: H04L61/5061 , H04L61/5053 , H04W88/02
Abstract: Techniques are provided that rotate a device address used to identify a wireless client device on a wireless network. The wireless client device and at least one network infrastructure component identify a plurality of device addresses associated with the wireless client device. In some embodiments, the plurality of device addresses are generated via a corresponding plurality of invocations of a stateful random number generator, such as a cryptographically secure pseudorandom number generator.
-
公开(公告)号:US11678250B2
公开(公告)日:2023-06-13
申请号:US17240116
申请日:2021-04-26
Applicant: Cisco Technology, Inc.
Inventor: Alessandro Erta , Luca Bisti , Arun Khanna , Sudhir Kumar Jain , Kasi Nalamalapu , Stefano Ferrari , Salvatore Valenza , Domenico Ficara , Vincent Cuissard , Loris Gazzarrini , Rupak Chandra
Abstract: In one embodiment, a device identifies a plurality of access points of a wireless network. The device also identifies a plurality of mobile nodes of a mobile system. The device establishes a first label-switched path in the wireless network that comprises a wireless link between a first mobile node in the plurality of mobile nodes and a first access point in the plurality of access points. The device establishes a second label-switched path in the wireless network that comprises a wireless link between a second mobile node of the mobile system and a second access point in the plurality of access points.
-
公开(公告)号:US20230171172A1
公开(公告)日:2023-06-01
申请号:US17538109
申请日:2021-11-30
Applicant: Cisco Technology, Inc.
Inventor: Domenico Ficara , Vincent Cuissard , Luca Bisti , Alessandro Erta , Arun Khanna , Frank Brockners
CPC classification number: H04L43/08 , H04L12/4633
Abstract: In one embodiment, a network device along a path in a network receives a schedule that controls when the networking device is to insert telemetry data into data traffic passing through the networking device. The networking device generates the telemetry data for insertion into the data traffic passing through the networking device. The networking device inserts, according to the schedule, the telemetry data into a particular packet of the data traffic passing through the networking device. The networking device sends the particular packet to a next hop along the path in the network.
-
公开(公告)号:US11140043B2
公开(公告)日:2021-10-05
申请号:US16576387
申请日:2019-09-19
Applicant: Cisco Technology Inc.
Inventor: Amine Choukir , Roberto Muccifora , Antonio Trifilo , Domenico Ficara , Vincent Cuissard , Salvatore Valenza
Abstract: A method is provided in a wireless local area network controller in a wireless communication network. The wireless communication network includes one or more virtual networks identified with virtual network IDs, VNIDs. A request is received from a wireless client to onboard onto the network and the wireless client is mapped to an onboarding VNID. The onboarding VNID is associated with an onboarding virtual network that does not require an authentication of the wireless client. An Internet Protocol address assignment is forwarded to the wireless client. The wireless client is remapped from the onboarding VNID to the destination VNID after authenticating the wireless client. The wireless client maintains the assigned IP address after moving from the onboarding VNID to the destination VNID. Access to the wireless client on a virtual network identified by the destination VNID is provided via the assigned IP address.
-
-
-
-
-
-
-
-
-