Software-defined network overlay
    1.
    发明授权
    Software-defined network overlay 有权
    软件定义的网络覆盖

    公开(公告)号:US09258218B2

    公开(公告)日:2016-02-09

    申请号:US13691317

    申请日:2012-11-30

    摘要: A software-defined network overlay capability is configured to control one or more overlay networks using software-defined networking (SDN) in which control functions and forwarding functions are separated. The software-defined network overlay capability may be configured to vertically move packets across network layers, e.g., into an overlay network (e.g., into a tunnel via encapsulation), out of an overlay network (e.g., out of a tunnel via decapsulation), or the like. The software-defined network overlay capability may be configured to move packets from native forwarding infrastructure into an overlay network, between overlay networks (e.g., into a first overlay network from a second overlay network without leaving the second overlay network, out of a first overlay network and into a second overlay network, out of a first overlay network while remaining within a second overlay network, or the like), from an overlay network onto native forwarding infrastructure, or the like.

    摘要翻译: 软件定义的网络覆盖能力被配置为使用其中分离控制功能和转发功能的软件定义网络(SDN)来控制一个或多个覆盖网络。 软件定义的网络覆盖能力可以被配置为在覆盖网络(例如,经由解封装的隧道外)中跨网络层(例如,通过封装进入覆盖网络(例如,进入隧道))中垂直移动分组, 或类似物。 软件定义的网络覆盖能力可以被配置为将分组从本地转发基础设施移动到覆盖网络中,覆盖网络(例如,从第二覆盖网络进入第一覆盖网络而不离开第二覆盖网络,从第一覆盖 网络,并且进入第二覆盖网络,从第一重叠网络中移除,而保持在第二覆盖网络内等),从覆盖网络到本地转发基础设施等。

    Incremental quantile tracking of multiple record types
    3.
    发明授权
    Incremental quantile tracking of multiple record types 有权
    多种记录类型的增量分位数跟踪

    公开(公告)号:US08666946B2

    公开(公告)日:2014-03-04

    申请号:US12546344

    申请日:2009-08-24

    IPC分类号: G06F17/18 G06F17/30

    CPC分类号: G06F17/18

    摘要: A method and apparatus are provided for incrementally tracking quantiles in the presence of multiple record types. A method for performing incremental quantile tracking includes receiving a first data record of a first record type and a second data record of a second record type, and updating a quantile probability for a quantile value, based on the first record type of the first data record and the second record type of the second data record, to obtain a new quantile probability for the quantile value.

    摘要翻译: 提供了一种用于在存在多种记录类型的情况下递增跟踪分位数的方法和装置。 一种用于执行增量分位数跟踪的方法包括:接收第一记录类型的第一数据记录和第二记录类型的第二数据记录,并且基于第一数据记录的第一记录类型更新分位数值的分位数概率 和第二数据记录的第二记录类型,以获得分位数值的新的分位数概率。

    METHOD AND APPARATUS FOR GEO-LOCATING MOBILE STATION

    公开(公告)号:US20130217413A1

    公开(公告)日:2013-08-22

    申请号:US13852742

    申请日:2013-03-28

    IPC分类号: H04W4/02

    摘要: A method for estimating a geographic location of a mobile station includes calculating an angular position of a mobile station to a base station based on first and second signal strength measurements and an angular position reference for the base station, the signal strength measurements from the mobile station for RF signals from first and second sector antennas of the base station. Another method includes calculating a radial distance of a mobile station from a base station serving the mobile station, determining a signal strength report from the mobile station includes a signal strength measurement for an RF signal from a first sector antenna of the base station, and identifying a geographic location of the mobile station based on intersection of a circle around the base station with a radius of the radial distance with a sub-sector geographic area in an RF coverage map for the first sector antenna.

    Efficient probabilistic counting scheme for stream-expression cardinalities
    5.
    发明授权
    Efficient probabilistic counting scheme for stream-expression cardinalities 有权
    流表示基数的有效概率计数方案

    公开(公告)号:US08400933B2

    公开(公告)日:2013-03-19

    申请号:US12110380

    申请日:2008-04-28

    IPC分类号: H04J1/16

    CPC分类号: H04L41/142 H04L43/026

    摘要: In one embodiment, a method of monitoring a network. The method includes, at each node of a fixed set, constructing a corresponding vector of M components based on data packets received at the node during a time period, M being an integer greater than 1, the fixed set being formed of some nodes of the network; and, based on the constructed vectors, estimating how many of the received data packets have been received by all of the nodes of the set or estimating how many flows of the received data packets have data packets that have passed through all of the nodes of the set. The constructing includes updating a component of the vector of one of the nodes in response to the one of the nodes receiving a data packet. The updating includes selecting the component for updating by hashing a property of the data packet received by the one of the nodes.

    摘要翻译: 在一个实施例中,一种监视网络的方法。 该方法包括:在固定集合的每个节点处,基于在一段时间内在节点处接收到的数据分组来构造M个分量的相应向量,M是大于1的整数,该固定集合由 网络; 并且基于所构建的向量,估计所集合的所有节点已经接收到多少接收到的数据分组,或者估计接收到的数据分组的多少流具有已经通过所有节点的数据分组 组。 所述构造包括响应于接收到数据分组的所述节点之一更新所述节点之一的向量的分量。 该更新包括通过对由该节点之一接收到的数据分组的属性进行哈希来选择用于更新的分量。

    Estimation method for loss rates in a packetized network
    6.
    发明授权
    Estimation method for loss rates in a packetized network 有权
    分组网络中丢失率的估计方法

    公开(公告)号:US08274902B2

    公开(公告)日:2012-09-25

    申请号:US12462965

    申请日:2009-08-12

    申请人: Tian Bu Jin Cao

    发明人: Tian Bu Jin Cao

    IPC分类号: H04J1/16

    摘要: A method is provided, according to which data are collected on downstream packet losses at a single point in a network. From from the collected data, packet loss rates are estimated on at least two subnetworks downstream of the collection point. The respective subnetworks may differ by one or more links.

    摘要翻译: 提供了一种方法,根据该方法,在网络中的单个点处收集关于下游分组丢失的数据。 从收集的数据中,在收集点下游的至少两个子网络上估计丢包率。 相应的子网可以由一个或多个链路来区分。

    Network architecture and related methods for surviving denial of service attacks
    7.
    发明授权
    Network architecture and related methods for surviving denial of service attacks 有权
    网络架构和相关的存活拒绝服务攻击的方法

    公开(公告)号:US07991852B2

    公开(公告)日:2011-08-02

    申请号:US10762391

    申请日:2004-01-22

    IPC分类号: G06F15/16

    摘要: Network architecture and related methods for maintaining traffic flow between clients and an end-server during a Denial of Service (DoS) attack are described herein. The network architecture includes a set of overlay nodes coupled between clients and a server. Each overlay node is able to rank and probe other nodes for purposes of selecting a best path for routing traffic to the end-server to resist a denial of service of attack. Probing is performed to detect overlay nodes having better performance based on one or more performance metrics (i.e., load, jitter, latency, loss rate). For instance, in one implementation probing detects lightly loaded overlay paths for purposes of routing traffic to the end-server, so as to maintain connectivity between the end-server and clients even under DoS attacks.

    摘要翻译: 本文描述了在拒绝服务(DoS)攻击期间用于维护客户端与终端服务器之间的流量的网络架构和相关方法。 网络架构包括耦合在客户机和服务器之间的一组覆盖节点。 每个覆盖节点能够对其他节点进行排序和探测,以便选择用于将流量路由到终端服务器以抵抗拒绝服务攻击的最佳路径。 执行探测以基于一个或多个性能度量(即,负载,抖动,延迟,丢失率)来检测具有更好性能的覆盖节点。 例如,在一个实现中,探测检测轻负载的覆盖路径,以便将流量路由到终端服务器,以便即使在DoS攻击下仍保持终端服务器和客户端之间的连接。

    Estimation method for loss rates in a packetized network
    8.
    发明申请
    Estimation method for loss rates in a packetized network 有权
    分组网络中丢失率的估计方法

    公开(公告)号:US20110038269A1

    公开(公告)日:2011-02-17

    申请号:US12462965

    申请日:2009-08-12

    申请人: Tian Bu Jin Cao

    发明人: Tian Bu Jin Cao

    IPC分类号: H04L12/26

    摘要: A method is provided, according to which data are collected on downstream packet losses at a single point in a network. From from the collected data, packet loss rates are estimated on at least two subnetworks downstream of the collection point. The respective subnetworks may differ by one or more links.

    摘要翻译: 提供了一种方法,根据该方法,在网络中的单个点处收集关于下游分组丢失的数据。 从收集的数据中,在收集点下游的至少两个子网络上估计丢包率。 相应的子网可以由一个或多个链路来区分。

    METHOD AND APPARATUS FOR INCREMENTAL TRACKING OF MULTIPLE QUANTILES
    9.
    发明申请
    METHOD AND APPARATUS FOR INCREMENTAL TRACKING OF MULTIPLE QUANTILES 有权
    用于增量跟踪多个量子的方法和装置

    公开(公告)号:US20110010327A1

    公开(公告)日:2011-01-13

    申请号:US12546255

    申请日:2009-08-24

    IPC分类号: G06N5/02

    CPC分类号: G06F17/18

    摘要: A method and apparatus for incremental tracking of multiples quantiles is provided. A method for performing an incremental quantile update using a data value of a received data record includes determining an initial distribution function, updating the initial distribution function to form a new distribution function based on the received data value, generating an approximation of the new distribution function, and determining new quantile estimates from the approximation of the new distribution function. The initial distribution function includes a plurality of initial quantile estimates and a respective plurality of initial probabilities. The initial distribution function is updated to form the new distribution function based on the received data value. The new distribution function includes a plurality of quantile points identifying the respective initial quantile estimates and a respective plurality of new probabilities associated with the respective initial quantile estimates. The approximation of the new distribution function is generated by, for each pair of adjacent quantile points in the new distribution function, connecting the adjacent quantile points using a linear approximation of a region between the adjacent quantile points. The new quantile estimates and the new probabilities associated with the new quantile estimates may then be stored.

    摘要翻译: 提供了一种用于增量跟踪多个分位数的方法和装置。 使用接收到的数据记录的数据值来执行增量分位数更新的方法包括确定初始分布函数,基于所接收的数据值更新初始分布函数以形成新的分布函数,生成新分布函数的近似值 ,并根据新分布函数的近似来确定新的分位数估计。 初始分布函数包括多个初始分位数估计和相应的多个初始概率。 基于收到的数据值更新初始分配函数以形成新的分布函数。 新的分布函数包括多个分位点,其识别相应的初始分位数估计以及与各自的初始分位数估计相关联的相应的多个新概率。 新分布函数的近似由新分布函数中的每对相邻分位数点产生,使用相邻分位点之间的区域的线性近似来连接相邻的分位数点。 然后可以存储新的分位数估计值和与新分位数估计值相关联的新概率。

    Method and apparatus for detecting wireless data subscribers using natted devices
    10.
    发明申请
    Method and apparatus for detecting wireless data subscribers using natted devices 有权
    用于使用发送的设备检测无线数据订户的方法和装置

    公开(公告)号:US20090190511A1

    公开(公告)日:2009-07-30

    申请号:US12011908

    申请日:2008-01-30

    IPC分类号: H04B7/00

    摘要: A system and method for network based detection of wireless data subscribers using network address translation devices is provided. The method includes identifying a minimum number of devices showing the same internet protocol address. Packet identification sequences may include port numbers or internet protocol identification numbers. The method continues with grouping these applications by their packet identification sequences and applying detection logic where detection logic yields a conclusion that there are multiple host computers when a set of applications appears in a plurality of packet identification sequences. This method is particularly useful when internet protocol addresses are dynamic, as opposed to static. This method overcomes previous embodiments known in the art by being able to account for and work with live traffic, which enables real time detection.

    摘要翻译: 提供了一种使用网络地址转换设备进行网络检测的无线数据用户的系统和方法。 该方法包括识别显示相同互联网协议地址的设备的最小数量。 分组识别序列可以包括端口号或因特网协议标识号。 该方法继续通过其分组识别序列对这些应用进行分组,并应用检测逻辑,其中检测逻辑产生一组结论在多个分组识别序列中出现时存在多个主计算机的结论。 当互联网协议地址是动态的,而不是静态时,这种方法特别有用。 该方法克服了本领域已知的以前的实施例,其能够考虑和使用实时流量,从而实现实时检测。