Dynamic host configuration and network access authentication
    43.
    发明授权
    Dynamic host configuration and network access authentication 有权
    动态主机配置和网络访问认证

    公开(公告)号:US08688834B2

    公开(公告)日:2014-04-01

    申请号:US10975497

    申请日:2004-10-29

    摘要: According to some embodiments, systems and methods for binding dynamic host configuration and network access authentication are provided related to, inter alia, interactions between a PAA (PANA Authentication Agent) and a DHCP (Dynamic Host Configuration Protocol) server, such as, e.g., for synchronization between the PANA SA state and the DHCP SA state, such as, e.g., maintaining synchronization when a connection is lost. In some embodiments, systems and methods for binding network bridge and network access authentication are also provided related to, inter alia, interactions between a PAA and a layer-2 switch, such as, e.g., for avoiding service thefts and the like (such as, e.g., MAC address and/or IP address spoofing) in the context of, e.g., the above. In some other embodiments, systems and methods for bootstrapping multicast security from network access authentication protocol are also provided related to, inter alia, key management for protected IP multicast streams, such as, e.g., to avoid IP multicast streams unnecessarily received and/or processed by unauthorized receivers connected to the same layer 2 segment as authorized receivers in the context of, e.g., the above.

    摘要翻译: 根据一些实施例,提供了用于绑定动态主机配置和网络访问认证的系统和方法,其特别涉及PAA(PANA认证代理)和DHCP(动态主机配置协议)服务器之间的交互,例如, 用于PANA SA状态和DHCP SA状态之间的同步,例如,当连接丢失时维持同步。 在一些实施例中,还提供了用于绑定网络桥接和网络接入认证的系统和方法,其特别涉及PAA和第二层交换机之间的交互,例如用于避免服务窃取等(例如 ,例如,MAC地址和/或IP地址欺骗)。 在一些其他实施例中,还提供了用于从网络接入认证协议引导多播安全性的系统和方法,其特别涉及用于受保护的IP多播流的密钥管理,例如,以避免不必要地接收和/或处理的IP多播流 未经授权的接收者在例如上述情况下连接到与授权接收机相同的层2段。

    Quality of service (QoS) assurance system using data transmission control
    44.
    发明授权
    Quality of service (QoS) assurance system using data transmission control 有权
    使用数据传输控制的服务质量(QoS)保证系统

    公开(公告)号:US08139551B2

    公开(公告)日:2012-03-20

    申请号:US10444953

    申请日:2003-05-27

    IPC分类号: H04W4/00 H04L12/26 H04B7/00

    CPC分类号: H04W28/24 H04W28/22 H04W48/20

    摘要: The present invention provides improved quality of service through data transmission rate control in a network. Data rate control may be in the downlink or uplink direction and may be statically or dynamically configured. Rate control may be implemented at varying points in the network including but not limited to at the wireless host, at the access point, at a separate device such as a server or at a separate location within the network. In one example of the present invention, a rate enforcement function is provided for identifying data packets to be enforced or identifying mapping between each packet and corresponding access point. Also, a rate decision function is also provided for determining the data rate to be enforced for each of the access points or each of the wireless hosts.

    摘要翻译: 本发明通过网络中的数据传输速率控制来提供改进的服务质量。 数据速率控制可以在下行链路或上行链路方向上,并且可以是静态或动态配置的。 速率控制可以在网络中的不同点实现,包括但不限于在无线主机,在接入点处,在诸如服务器的单独设备或网络内的单独位置。 在本发明的一个示例中,提供了一种速率执行功能,用于识别要强制实施的数据分组或识别每个分组与对应接入点之间的映射。 此外,还提供速率确定功能,用于确定要为每个接入点或每个无线主机执行的数据速率。

    Scheme for label switched path loop detection at node device
    45.
    发明授权
    Scheme for label switched path loop detection at node device 有权
    节点设备上标签交换路径环路检测方案

    公开(公告)号:US06501754B1

    公开(公告)日:2002-12-31

    申请号:US09131361

    申请日:1998-08-07

    IPC分类号: H04L1228

    摘要: A node device and a label switched path loop detection method which are capable of detecting a label switched path loop efficiently and quickly are disclosed. In a node device for carrying out the label switching, an ingress node information is included in a message that is to be successively transmitted from the upstream side in order to set up a label switched path, and the fact that the message with the same ingress node information for the same packet flow will be received from a previous hop node that is different from before if the label switched path has a loop formed thereon is utilized. Also, at a time of transmitting a message for the purpose of setting up a label switched path, if a node at which the label switched path for that packet flow already exists on the upstream or downstream side is encountered, this already existing label switched path is traced along the same or opposite direction as the flow, and the label switched path is set up if no loop is detected after tracing to the end.

    摘要翻译: 公开了能够有效且快速地检测标签交换路径环路的节点设备和标签交换路径环路检测方法。 在用于执行标签交换的节点设备中,入口节点信息被包括在要从上游侧连续发送的消息中,以便建立标签交换路径,以及具有相同入口的消息的事实 如果标签交换路径具有形成在其上的环路,则将从与之前不同的前一跳节点接收相同分组流的节点信息。 此外,在发送用于建立标签交换路径的消息的时候,如果在上游或下游侧已经存在用于该分组流的标签交换路径的节点,则已经存在的标签交换路径 沿着与流程相同或相反的方向进行跟踪,并且如果在跟踪到最后没有检测到环路,则设置标签交换路径。

    Node device and network resource reservation method for data packet
transfer using ATM networks
    46.
    发明授权
    Node device and network resource reservation method for data packet transfer using ATM networks 失效
    节点设备和网络资源预留方法,用于使用ATM网络进行数据包传输

    公开(公告)号:US6094431A

    公开(公告)日:2000-07-25

    申请号:US758480

    申请日:1996-11-29

    摘要: A network resource reservation scheme capable of making a resource reservation at the IP level according to the resource reservation protocol at a time of data packet transfer at the IP level using ATM networks. A node device requests a change of a virtual connection for transferring data packets to a prescribed virtual connection for providing a service which is capable of changing an amount of resource without reestablishing connections, when a prescribed message of a resource reservation protocol for that virtual connection is received, and transmits the data packets to the prescribed virtual connection established in response to the request. A node device determines a necessary amount of resource according to a requested quality of service described in a received reservation message of a resource reservation protocol. A node device then requests a change of an amount of resource reserved in a virtual connection for transferring data packets in order to reserve the necessary amount of resource in that virtual connection, and transmits the data packets to that virtual connection in which the amount of resource reserved therein is changed in response to the request.

    摘要翻译: 一种网络资源预留方案,其能够使用ATM网络在IP级别的数据分组传输时根据资源预约协议在IP级别进行资源预留。 节点设备请求更改虚拟连接以将数据包传送到规定的虚拟连接,以便在用于提供能够在不重新建立连接的情况下能够改变资源量的服务的情况下,当该虚拟连接的资源预留协议的规定消息为 接收并将数据分组发送到响应于该请求建立的规定的虚拟连接。 节点设备根据接收到的资源预留协议的预留消息中描述的所请求的服务质量来确定必要的资源量。 然后,节点设备请求在虚拟连接中预留的资源量的改变以传送数据分组,以便在该虚拟连接中保留所需的资源量,并将数据分组发送到该资源量的该虚拟连接 保留在其中根据请求而改变。