AUTOMATIC POLICY CONFIGURATION FOR PACKET FLOWS

    公开(公告)号:US20240259311A1

    公开(公告)日:2024-08-01

    申请号:US18633311

    申请日:2024-04-11

    Inventor: Darrell Ball

    CPC classification number: H04L45/745 H04L45/38

    Abstract: Techniques are disclosed for providing automatic policy configuration for packet flows. For example, a computing device comprises a virtual node and one or more virtual execution elements coupled to the virtual node. The computing device may also comprise one or more processors configured to: receive a packet originating from an application workload hosted on the one or more virtual execution elements and destined for a remote destination device; determine the packet is part of a new packet flow; in response, configure, by a kernel of the computing device and without sending the packet to a user space of the computing device, a policy for a forward packet flow for the new packet flow; configure, by the kernel, a policy for a reverse packet flow associated with the forward packet flow; and send the packet toward the remote destination device in accordance with the policy for the forward packet flow.

    Maintaining internet protocol security tunnels

    公开(公告)号:US12052223B2

    公开(公告)日:2024-07-30

    申请号:US17301909

    申请日:2021-04-19

    Abstract: A network device identifies an Internet Protocol Security (IPsec) tunnel that connects the network device to a remote device and determines that dead peer detection (DPD) is enabled at the network device. The network device receives a first DPD request message from the remote device via the IPsec tunnel, and sends a first DPD response message to the remote device via the IPsec tunnel. The network device determines that a workload of the network device satisfies a threshold amount, and sends one or more encapsulating security payload (ESP) packets that include traffic flow confidentiality (TFC) payload data to the remote device via the IPsec tunnel. The network device determines that the workload of the network device does not satisfy the threshold amount. The network device receives a second DPD request message from the remote device and sends a second DPD response message to the remote device via the IPsec tunnel.

    AI-ASSISTED WAN LINK SELECTION FOR SD-WAN SERVICES

    公开(公告)号:US20240250910A1

    公开(公告)日:2024-07-25

    申请号:US18628122

    申请日:2024-04-05

    CPC classification number: H04L47/2425

    Abstract: An example method includes receiving, by a software-defined networking in a wide area network (SD-WAN) system having a first WAN link and a second WAN link for an SD-WAN service, WAN link characterization data for the first WAN link over a time period; determining, by the SD-WAN system based on processing the WAN link characterization data for the first WAN link using a machine learning model trained with historical WAN link characterization data for one or more WAN links, an indicator of a predicted performance metric of the first WAN link at a future time; and reassigning, by the SD-WAN system based on the indicator, an application from the first WAN link to the second WAN link.

    Control of roaming in a wireless network using a variable mobility threshold

    公开(公告)号:US12035408B2

    公开(公告)日:2024-07-09

    申请号:US17454200

    申请日:2021-11-09

    CPC classification number: H04W8/02 H04W4/029

    Abstract: A network management system (NMS) is configured to control roaming in a wireless network using a variable mobility threshold. For a first wireless device associated with a current location, the NMS obtains at least one performance metric of a first wireless signal received by the first wireless device at the current location from a first AP of a plurality of APs, compares the at least one parameter of the first wireless signal to at least one performance metric of a second wireless signal received by at least one other wireless device at the current location from a second AP of the plurality of APs, and triggers a roaming operation of the first wireless device from the first AP to the second AP if the comparison satisfies a mobility threshold that varies based on the at least one performance metric of the first wireless signal.

    Processing channel state information (CSI) to determine characteristics of a space between wireless access points

    公开(公告)号:US12035160B1

    公开(公告)日:2024-07-09

    申请号:US17644280

    申请日:2021-12-14

    CPC classification number: H04W24/08 H04W84/12

    Abstract: A computing system includes a storage device and processing circuitry having access to the storage device. The processing circuitry is configured to receive a sequence of channel state information (CSI) samples, and calculate, based on the sequence of CSI samples, frequency domain information including a set of frequency domain values for each frequency band of a plurality of frequency bands. The processing circuitry is further configured to select a set of frequency bands of the plurality of frequency bands; and calculate, based on the set of frequency domain values for each frequency band of the set of frequency bands, a set of similarity values. Additionally, the processing circuitry is configured to determine, based on the set of similarity values, information indicative of one or more characteristics of a space between a first computing device and a second computing device, and perform an action based on the information.

Patent Agency Ranking