-
公开(公告)号:US20210112408A1
公开(公告)日:2021-04-15
申请号:US16865959
申请日:2020-05-04
Applicant: Cisco Technology, Inc.
Inventor: Rajesh S. Pazhyannur , Anand Oswal , Arun G. Khanna
Abstract: Technologies for systems, methods and computer-readable storage media for reducing the time to complete authentication during inter-technology handovers by reusing security context between 5G and Wi-Fi. Assuming, that the administrative domain for Wi-Fi and 5G match (and belongs to an enterprise for instance), using an already established security context in one technology to do fast authentication in the other technology during handover. Specifically, if UE is on Wi-Fi and handing over to 5G, use its Wi-Fi security context to do fast security setup in 5G, which includes a corresponding method for use when the UE goes from 5G to Wi-Fi.
-
公开(公告)号:US20210112382A1
公开(公告)日:2021-04-15
申请号:US16895695
申请日:2020-06-08
Applicant: Cisco Technology, Inc.
Inventor: Anand Oswal , Rajesh S. Pazhyannur , Arun G. Khanna
Abstract: Systems and methods are provided for providing, by a user equipment, a short message service (SMS) message to initiate Wi-Fi onboarding to a mobile network, receiving, by the user equipment, a binary SMS message including a request for a certificate signing request by a server, generating, by the user equipment, the certificate signing request based on the request for the certificate signing request of the binary SMS message, providing, by the user equipment, the certificate signing request to the mobile network, and receiving, by the user equipment, a binary SMS message including Wi-Fi login data based on the certificate signing request provided to the mobile network.
-
公开(公告)号:US20200288300A1
公开(公告)日:2020-09-10
申请号:US16291727
申请日:2019-03-04
Applicant: Cisco Technology, Inc.
Inventor: Anand Oswal , Sudhir Kumar Jain , Rajesh S. Pazhyannur , Mark Grayson
Abstract: In one example, a server obtains, from a device having an embedded Subscriber Identification Module (eSIM), a unique identifier of the eSIM. The server validates the device based on the unique identifier of the eSIM. The server provides, to the device, a unique credential for a profile of the eSIM. The profile of the eSIM corresponds to a network of an enterprise. The server provides, to a credential database, the unique credential for the profile of the eSIM. The credential database including the unique credential for the profile of the eSIM indicates that the device is permitted to access the network of the enterprise.
-
公开(公告)号:US10476784B2
公开(公告)日:2019-11-12
申请号:US15263405
申请日:2016-09-13
Applicant: Cisco Technology, Inc.
Inventor: Anand Oswal , Muninder Sambi , Sanjay Kumar Hooda
IPC: H04L12/721 , H04L12/743 , H04L12/715 , H04L12/46 , H04L12/933
Abstract: A network device may receive a flow having source information corresponding to a first client device and destination information corresponding to a second client device. A tag may then be created by the network device for the flow based upon the source information and the destination information. Next, the network device may encapsulate a packet corresponding to the flow. The packet may be encapsulated with encapsulation information including the created tag. The encapsulated packet may then be routed through a plurality of intermediate network devices in the network. The created tag encapsulated with the packet may identify the packet as being a part of the flow as the packet is routed through the plurality of intermediate network devices.
-
公开(公告)号:US10200311B2
公开(公告)日:2019-02-05
申请号:US15260048
申请日:2016-09-08
Applicant: Cisco Technology, Inc.
Inventor: Anand Oswal , Muninder Singh Sambi , Sanjay Kumar Hooda
IPC: H04L12/931 , H04L12/46 , H04L29/12
Abstract: An application switch instantiates two application-side network service instances for the same application. Each network service instance is characterized by a common Internet Protocol (IP) address, a common Open Systems Interconnection (OSI) reference model layer 2 (L2) media access control (MAC) address, and a unique (for the application) supplemental L2 identifier. The application switch maintains a mapping between a {client IP address, client port} tuple and a particular instantiated network service instance based at least in part on the supplemental L2 identifier of a particular one of the instantiated first and second network service instances. When the application switch receives a client communication via an application switch client-side network, the application switch determines the particular instantiated network service instance corresponding to the { , } tuple based on the mapping, and switches the received client communication to the determined application-side network service instance.
-
公开(公告)号:US09912494B2
公开(公告)日:2018-03-06
申请号:US14824271
申请日:2015-08-12
Applicant: Cisco Technology, Inc.
Inventor: Ramesh Nethi , Elango Ganesan , Anand Oswal , Rajesh Tarakkad Venkateswaran
CPC classification number: H04L12/2836 , H04L67/2823 , H04L67/2838
Abstract: In one embodiment, a device in a network receives data from one or more other devices in the network via one or more protocol adaptors. The device transforms the received data into a common data model. The device executes a containerized application. The device exposes the transformed data to the application.
-
公开(公告)号:US09654341B2
公开(公告)日:2017-05-16
申请号:US14185075
申请日:2014-02-20
Applicant: Cisco Technology, Inc.
Inventor: Vamsidhar Valluri , Parameswaran Kumarasamy , Daniel G. Wing , Parag Pritam Thakore , Anand Oswal , Shivangi Sharma
IPC: H04L29/06 , H04L12/24 , H04W24/02 , H04L1/00 , H04L1/20 , H04W28/02 , H04L12/833 , H04L12/801 , H04W80/04 , H04L29/08 , H04W80/06
CPC classification number: H04L41/0836 , H04L1/0026 , H04L1/20 , H04L41/083 , H04L41/0853 , H04L41/5009 , H04L43/08 , H04L47/11 , H04L47/2458 , H04L67/322 , H04L69/16 , H04L69/163 , H04W24/02 , H04W28/0273 , H04W80/04 , H04W80/06
Abstract: In one embodiment, a method comprises obtaining, by a client device via a wireless data link with a wireless access point, information from a network device within a data network reachable via the wireless access point, the information describing network conditions associated with a service provided to the client device via the data network; and the client device optimizing a transmission control protocol (TCP) communication, via the wireless data link, for optimization of the service provided by the client device.
-
公开(公告)号:US20160211988A1
公开(公告)日:2016-07-21
申请号:US14725015
申请日:2015-05-29
Applicant: Cisco Technology, Inc.
Inventor: Solomon T. Lucas , Michael A. DeMoney , Christopher A. Wild , Anand Oswal , Rong Wang
IPC: H04L12/46 , H04L12/707
CPC classification number: H04L45/22 , H04L45/124 , H04L45/302 , H04L45/306 , H04L45/70 , H04L47/20
Abstract: In one embodiment, a network controller receives data indicative of one or more traffic requirements for network traffic. The network controller maps the data indicative of the one or more traffic requirements into a network policy. The network controller causes installation of the network policy onto one or more networking devices. The one or more networking devices are configured to route the network traffic based on the network policy. The network controller receives feedback regarding the installed network policy. The network controller adjusts the network policy based on the received feedback.
Abstract translation: 在一个实施例中,网络控制器接收指示网络业务的一个或多个业务需求的数据。 网络控制器将指示一个或多个业务需求的数据映射到网络策略中。 网络控制器将网络策略安装到一个或多个网络设备上。 一个或多个网络设备被配置为基于网络策略路由网络流量。 网络控制器收到有关安装的网络策略的反馈。 网络控制器根据收到的反馈调整网络策略。
-
39.
公开(公告)号:US12003348B2
公开(公告)日:2024-06-04
申请号:US17649955
申请日:2022-02-04
Applicant: Cisco Technology, Inc.
Inventor: Anand Oswal , Muninder S. Sambi , Sanjay K. Hooda , Gangadharan Byju Pularikkal , Kedar Karmarkar
IPC: H04L12/46 , H04L12/18 , H04L61/5014 , H04L61/58 , H04L101/668
CPC classification number: H04L12/4679 , H04L12/1886 , H04L12/4633 , H04L61/5014 , H04L61/58 , H04L2101/668 , H04L2212/00
Abstract: Secure network segmentation using logical subnet segments is described. A single network segment or subnet provided by a third party is mapped into multiple layer-3 virtual or logical segments without requiring separate subnets. This mapping is accomplished by using virtual routing functions (VRFs) per logical subnet segment while retaining a single subnet across the segments. The logical subnet segments interact with the single network segment provided by the third party (ISP). The layer-3 VRF instances are created without the need for separate IP subnet pools per layer-3 segment. Each VRF instance for the various logical subnet segments is mapped to an identifier and tag.
-
公开(公告)号:US20240098535A1
公开(公告)日:2024-03-21
申请号:US18524474
申请日:2023-11-30
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Sanjay Kumar Hooda , Venkatesh Ramachandra Gota , Chandramouli Balasubramanian , Anand Oswal
CPC classification number: H04W24/08 , H04W28/0221 , H04W28/0284 , H04W28/0289 , H04W28/24 , H04W36/22 , H04W48/06
Abstract: Systems and methods for managing traffic in a hybrid environment include monitoring traffic load of a local network to determine whether the traffic load exceeds or is likely to exceed a maximum traffic load, where the maximum traffic load is a traffic load for which a service can be provided by the local network, based on a license. An excess traffic load is determined if the traffic load exceeds or is likely to exceed the maximum traffic load. One or more external networks which have a capacity to provide the service to the excess traffic load are determined, to which the excess traffic load is migrated. The local network includes one or more service instances for providing the service for up to the maximum traffic load, and the service to the excess traffic load is provided by one or more additional service instances in the one or more external networks.
-
-
-
-
-
-
-
-
-