-
公开(公告)号:US20240073098A1
公开(公告)日:2024-02-29
申请号:US18075276
申请日:2022-12-05
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Bhairav Dutia , Ankur Bhargava , Satish Mahadevan , Srinivas Yalamanchanli , Ziad Sarieddine , Nikolai Pitaev
IPC: H04L41/12 , H04L41/0894 , H04L67/52
CPC classification number: H04L41/12 , H04L41/0894 , H04L67/52
Abstract: This disclosure describes techniques and mechanisms for disclosure describes techniques and mechanisms for a central management plane to automatically create and assign system identifiers to network devices, thereby creating a global network hierarchy within a network. The techniques enable the use of a system identifier to be automatically generated and assigned, as well as configuration and network policies to be automatically generated based on the system identifier. Accordingly, the techniques enable automation of regional connectivity and policy application, a simplified manner of troubleshooting/debugging of any connectivity issues, and a simplified, aggregated view of statistic and analytics related to problems at site, sub-region, and region levels.
-
公开(公告)号:US11757702B2
公开(公告)日:2023-09-12
申请号:US17389122
申请日:2021-07-29
Applicant: Cisco Technology, Inc.
Inventor: Avinash Ashok Kumar Chiganmi , Venkatraman Venkatapathy , Giorgio Valentini , Madhuri Kolli , Karumbayiram Gunasekaran , Balaji Sundararajan
IPC: H04L41/0654 , H04L12/46 , H04L45/00
CPC classification number: H04L41/0654 , H04L12/4633 , H04L45/22
Abstract: The present technology discloses methods, systems, and non-transitory computer-readable storage media for establishing a redundant path connection. An example method can include configuring a software-defined wide-area network (SDWAN) tunnel between an on-premises router and a plurality of SDWAN routers; configuring a virtual layer 2 connection between the plurality of SDWAN routers and handoff locations for a virtual cloud resource (VCR) associated with at least one VCR tag, wherein a software-defined cloud infrastructure (SDCI) underlay associated with at least one SDCI provider connects to a cloud service provider (CSP) at the handoff locations; configuring a VCR connection between at least one VCR associated with the VCR tag and the handoff locations for the at least one VCR; configuring a border gateway protocol (BGP) session between the plurality of SDWAN routers and the handoff locations; and validating the SDWAN tunnel, the virtual layer 2 connection, the VCR connection, and the BGP session.
-
公开(公告)号:US20230198868A1
公开(公告)日:2023-06-22
申请号:US18166765
申请日:2023-02-09
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Ankush Verma , Bhavana Malhotra Bodas , Kaushik Pratap Biswas , Chandramouli Balasubramanian , Anirudh Ramnath Ramakrishna , Madhuri Kolli
IPC: H04L41/5041
CPC classification number: H04L41/5041 , H04L67/10
Abstract: Methods, systems, and non-transitory computer-readable media are provided for deploying intent-driving cloud branches. An example method can include obtaining, by one or more controllers in a software-defined network (SDN), a branch network design template for deploying a remote branch in the SDN, wherein the branch network design template defines networking settings for a plurality of services to be provisioned at the remote branch; obtaining, by the one or more controllers, a plurality of software packages for the plurality of services to be provisioned at the remote branch; and based on the branch network design template and the plurality of software packages, provisioning, by the one or more controllers, the plurality of services at the remote branch and a network connectivity of the plurality of services.
-
公开(公告)号:US20230188476A1
公开(公告)日:2023-06-15
申请号:US18166786
申请日:2023-02-09
Applicant: Cisco Technology, Inc.
Inventor: Srilatha Tangirala , Nithin Bangalore Raju , Ananya Raval , Prabahar Radhakrishnan , Vivek Agarwal , Balaji Sundararajan
CPC classification number: H04L47/805 , H04L47/825 , H04L45/64 , H04L47/762 , H04L45/02 , H04L47/781
Abstract: Route exchange in a plurality of network controller appliances on a per-tenant basis is disclosed. In one aspect, a method includes receiving, from a network management system and at a first network controller appliance, a designation of at least two tenants to be hosted on the first network controller appliance, the first network controller appliance being one of a plurality of network controller appliances in a SD-WAN; sending, from the first network controller appliance to other network controller appliances of the plurality of network controller appliances, a tenant list query message to obtain a corresponding tenant list of each of the other network controller appliances; and receiving a corresponding response from each of the other network controller appliances indicating the corresponding tenant list of each of the other network controller appliances, the corresponding response being used to update the tenant list on the first network controller appliance.
-
公开(公告)号:US20220329540A1
公开(公告)日:2022-10-13
申请号:US17389003
申请日:2021-07-29
Applicant: Cisco Technology, Inc.
Inventor: Srilatha Tangirala , Nithin Bangalore Raju , Ananya Raval , Prabahar Radhakrishnan , Vivek Agarwal , Balaji Sundararajan
IPC: H04L12/927 , H04L12/911 , H04L12/923 , H04L12/751 , H04L12/715
Abstract: Route exchange in a plurality of network controller appliances on a per-tenant basis is disclosed. In one aspect, a method includes receiving, from a network management system and at a first network controller appliance, a designation of at least two tenants to be hosted on the first network controller appliance, the first network controller appliance being one of a plurality of network controller appliances in a SD-WAN; sending, from the first network controller appliance to other network controller appliances of the plurality of network controller appliances, a tenant list query message to obtain a corresponding tenant list of each of the other network controller appliances; and receiving a corresponding response from each of the other network controller appliances indicating the corresponding tenant list of each of the other network controller appliances, the corresponding response being used to update the tenant list on the first network controller appliance.
-
56.
公开(公告)号:US11411765B2
公开(公告)日:2022-08-09
申请号:US16739442
申请日:2020-01-10
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Vivek Agarwal , Anand Oswal , Chethan Channappa , Subhash Kodnad , Jeevan Sharma
IPC: H04L12/28 , G16Y30/10 , G06F9/455 , H04L12/66 , H04L41/14 , H04L41/50 , H04L49/00 , H04L9/40 , H04W92/02
Abstract: The present disclosure is directed to managing industrial internet of things end points and includes one or more processors and one or more computer-readable non-transitory storage media coupled to the one or more processors and comprising instructions that, when executed by the one or more processors, cause one or more switches to perform operations comprising: identifying a first end point using a protocol associated with the first end point, determining a classification for the identified first end point based on one or more attributes of the first end point, identifying one or more related end points having the classification in common with the first end point, segmenting the first end point with the identified one or more related end points, and applying one or more policies to the segmented first end point and the one or more related end points.
-
公开(公告)号:US11252590B2
公开(公告)日:2022-02-15
申请号:US16672048
申请日:2019-11-01
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Sanjay Kumar Hooda , Venkatesh Ramachandra Gota , Chandramouli Balasubramanian , Anand Oswal
Abstract: Systems and methods for managing traffic in a hybrid environment include monitoring traffic load of a local network to determine whether the traffic load exceeds or is likely to exceed a maximum traffic load, where the maximum traffic load is a traffic load for which a service can be provided by the local network, based on a license. An excess traffic load is determined if the traffic load exceeds or is likely to exceed the maximum traffic load. One or more external networks which have a capacity to provide the service to the excess traffic load are determined, to which the excess traffic load is migrated. The local network includes one or more service instances for providing the service for up to the maximum traffic load, and the service to the excess traffic load is provided by one or more additional service instances in the one or more external networks.
-
公开(公告)号:US11153119B2
公开(公告)日:2021-10-19
申请号:US16653735
申请日:2019-10-15
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Vivek Agarwal , Harish A. Kapadia
IPC: H04L12/46 , H04L12/24 , H04L29/06 , H04L12/947 , H04L12/707 , H04L12/813
Abstract: A network controller can register WAN edge routers and WAN optimizers distributed across a WAN. The controller can receive a request to establish a WAN optimized connection between first and second hosts. The controller can identify a first WAN optimizer to perform first services (e.g., de-duplication, compression, application acceleration, caching, etc.) for first traffic from the first host to the second host and first complementary services for second traffic from the second host to the first host, and a second WAN optimizer for the second traffic and second complementary services for the first traffic. The controller can establish the optimized connection comprising a first path including the first host, WAN optimizer, and router; a second path including the first router and a second router, and a third path including the second router, WAN optimizer, and host. The controller can route the first and second traffic through the optimized connection.
-
公开(公告)号:US20210297429A1
公开(公告)日:2021-09-23
申请号:US16826082
申请日:2020-03-20
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Gaurang Rajeev Mokashi , Preety Mordani , Vivek Agarwal
IPC: H04L29/06 , H04L12/26 , H04L12/947 , H04L12/813 , G06F9/455
Abstract: Systems, methods, and computer-readable media for performing threat remediation through a switch fabric of a virtualized network environment. Data traffic passing into a virtualized network environment including a plurality of virtual machines running on a switch fabric is monitored. A network threat introduced through at a least a portion of the data traffic is identified at the switch fabric. One or more remedial measures are performed in the network environment based on the identification of the network threat in the virtualized network environment.
-
公开(公告)号:US11108763B2
公开(公告)日:2021-08-31
申请号:US16738954
申请日:2020-01-09
Applicant: Cisco Technology, Inc.
Inventor: Balaji Sundararajan , Vivek Agarwal , Darrin Joseph Miller , Anand Oswal , Chandramouli Balasubramanian
Abstract: In one embodiment, a method by a first network apparatus includes receiving a request to access a resource from a client device associated with a user, determining that the request does not comprise a session cookie, sending an authorization request to a second network apparatus, receiving an authorization response including a resource authorization token from the second network apparatus, determining that the user is authorized to access the resource using the client device based on the received resource authorization token, establishing a first communication session with the client device by sending a message to the client device, and establishing a second communication session with a resource server that provides the resource, where the first network apparatus relays traffic between the client device and the resource server.
-
-
-
-
-
-
-
-
-