MULTI-LAYERED SECURE EQUIPMENT ACCESS
    372.
    发明公开

    公开(公告)号:US20240236045A9

    公开(公告)日:2024-07-11

    申请号:US17971285

    申请日:2022-10-21

    CPC classification number: H04L63/0281

    Abstract: In one embodiment, a device receives discovery data generated by a plurality of networking devices in a network. The device determines, based on the discovery data, a hierarchy of layers of the network. The device receives a request by a client that is external to the network to access remotely a particular endpoint in the network. The device configures, and in response to the request, a proxy chain of remote access agents executed by a subset of networking devices from the plurality of networking devices to allow the client to access remotely the particular endpoint, each of those networking devices proxying traffic between different layers of the network.

    ADAPTIVE MECHANISM FOR NETWORK COMMUNICATION
    373.
    发明公开

    公开(公告)号:US20240235991A9

    公开(公告)日:2024-07-11

    申请号:US17972119

    申请日:2022-10-24

    CPC classification number: H04L45/30 H04L45/302

    Abstract: This disclosure describes techniques for employing an adaptive mechanism in communications among network devices. Adaptive mechanism techniques may include adapting network operations relative to characteristics of devices and/or network access technologies or mechanisms used in the network. Adaptation may help to accommodate a wider variety of types of devices. For instance, adaptive mechanism techniques may include determining, based on characteristics of a device in the network, a forwarding mechanism to be used at an access device to forward data traffic from the device to another device via the network. As such, adaptive mechanism techniques may provide more efficient integration of devices within a complex network, thereby improving network operations.

    Policy-based connection provisioning using domain name system (DNS) requests

    公开(公告)号:US12034813B2

    公开(公告)日:2024-07-09

    申请号:US18124435

    申请日:2023-03-21

    Abstract: Techniques for policy-based connection provisioning using Domain Name System (DNS) requests are described herein. The techniques may include receiving policy data associated with one or more headend nodes that manage connections to computing resources. Additionally, the techniques may include receiving a DNS request from a client device to establish a connection between the client device and a first headend node of the one or more headend nodes. The DNS request may include an attribute associated with the client device. A provisioning service may determine that the connection should be established between the client device and the first headend node based at least in part on evaluating the attribute with respect to the policy data. Additionally, the techniques may include sending an internet protocol (IP) address, which is associated with the first headend node, to the client device to facilitate establishment of the connection.

    Software-defined device tracking in network fabrics

    公开(公告)号:US12034592B2

    公开(公告)日:2024-07-09

    申请号:US18076695

    申请日:2022-12-07

    CPC classification number: H04L41/0806 H04L41/342 H04L43/12

    Abstract: Techniques for leveraging a software defined tracking architecture to track endpoint connected to a network fabric are described. An orchestrator of a network fabric receives port information indicating a port of a fabric edge device to which an endpoint is connected. The orchestrator transmits the port information to a network node in the network fabric enabling data-plane traffic inspection. Using the port information, the network node detects traffic having a destination address corresponding to the endpoint. The network node transmits an indication that traffic was received by the network node having the destination address corresponding to the endpoint. Finally, onboarding of the endpoint into the network fabric is triggered at the fabric edge device.

    SHARING TRANSPORT INTERFACES BETWEEN TENANTS ON MULTI-TENANT EDGE DEVICES

    公开(公告)号:US20240223397A1

    公开(公告)日:2024-07-04

    申请号:US18608677

    申请日:2024-03-18

    CPC classification number: H04L12/28 H04L67/10

    Abstract: Techniques for virtualizing tenant transport interfaces configured to implement pertenant network routing attribute differentiation in each tenant overlay of a multisite wide area network (WAN) and share the virtual transport interfaces between multi-tenant edge (MTE) devices providing transport services to tenant devices based on a defined tenant tier model. A Software-Defined Networking (SDN) controller may receive a physical transport interface and/or a device type associated with a tenant device. The SDN controller may determine a virtual transport interface for the tenant device based on a tier associated with the tenant. MTE device(s) may utilize the physical transport interface to establish sessions with other MTE device(s) in the WAN. The virtual transport interface may be utilized by MTE devices to implement and/or enforce network routing attributes when forwarding network traffic associated with the tenant via the sessions established between the MTE devices through the WAN.

Patent Agency Ranking