SERVICE ASSURANCE VIA FEDERATION-BASED NETWORK DURING ROAMING

    公开(公告)号:US20230059304A1

    公开(公告)日:2023-02-23

    申请号:US17445295

    申请日:2021-08-17

    IPC分类号: H04L29/06 H04W36/00 H04W12/06

    摘要: Aspects of the disclosure include a method and associated network device. The method includes authenticating an identity of a user of a client device after the client device is associated with an access network provider. Authenticating the identity of the user comprises receiving, from an identity provider, a credential associated with the identity, and receiving, from the identity provider, information identifying a network-based service to be applied to network traffic with the client device. The method further includes establishing, using the credential and the received information, a secure connection between the access network provider and a service provider that is capable of providing the network-based service. The method further includes receiving network traffic from the service provider. Packets of the network traffic include an assurance value that enables the client device to determine that the network-based service is being provided by the service provider.

    PROVIDING SECURITY SERVICES VIA FEDERATION-BASED NETWORK DURING ROAMING

    公开(公告)号:US20220286447A1

    公开(公告)日:2022-09-08

    申请号:US17249644

    申请日:2021-03-08

    IPC分类号: H04L29/06

    摘要: Aspects described herein include a method and related network device and computer program product. The method includes authenticating an identity of a user of a client device associated with an access network provider. Authenticating the identity of the user includes receiving, from an identity provider, a credential associated with the identity and information identifying a network-based security service to be provided to the client device. The method further includes establishing, using the credential and the received information, a secure connection between the access network provider and a security service provider that is capable of providing the network-based security service to the client device.

    BIER FORWARDING VALIDATION
    4.
    发明申请

    公开(公告)号:US20170126481A1

    公开(公告)日:2017-05-04

    申请号:US14929350

    申请日:2015-11-01

    摘要: In one embodiment, a method, system, and apparatus is for storing an assigned operations, administration and management (OAM) bitstring in a memory in a BIER (Bit Index Explicit Replication) enabled router, the OAM bitstring being assigned to a BIER domain, the semantic of the OAM bitstring being to replicate and forward the OAM bitstring to neighboring bit-forwarding routers (BFRs), generating an OAM probe packet including the OAM bitstring, setting a BFR ID associated with a first BFR as a BIER header bitstring in the OAM probe packet, setting a TTL (time to live) field in the OAM probe packet to be 2, sending the OAM probe packet to a next hop BFR, and performing one of receiving the OAM probe packet back from the first BFR, and taking an alternative action if the OAM probe packet is not received back from the first BFR.

    ASSISTED MULTI-LINK GUIDANCE FROM NETWORK ACCESS POINT

    公开(公告)号:US20240015807A1

    公开(公告)日:2024-01-11

    申请号:US18176999

    申请日:2023-03-01

    IPC分类号: H04W76/10 H04W72/02

    CPC分类号: H04W76/10 H04W72/02

    摘要: Disclosed are a system and a method for selecting an additional radio link from a second access point after a connection with a first access point has been established. The first and second access points cooperate with each other by sharing information about performance and available resources. They communicate this information to a multi-link non-AP MLD device requesting the additional radio link so that the non-AP MLD can make a selection that matches the needs of its request. Information about performance includes throughput, a delay between access points, and a delay between access points and a gateway connected to the access points.

    INSTRUMENTING APPLICATIONS TO PREVENT ABUSE BY PRIVILEGED USERS

    公开(公告)号:US20230325478A1

    公开(公告)日:2023-10-12

    申请号:US17718565

    申请日:2022-04-12

    IPC分类号: G06F21/31

    CPC分类号: G06F21/31

    摘要: In one embodiment, a device obtains data regarding a transaction attempted by a user within an online application that is captured by instrumentation code that is inserted into the online application at runtime, wherein the user has sufficient privileges within the online application to perform the transaction; The device sends, based on the data regarding the transaction, one or more approval requests to one or more authorizers. The device receives one or more responses to the one or more approval requests. The device blocks, and based on the one or more responses, the transaction attempted by the user within the online application via the instrumentation code.

    FEDERATION POLICY EXCHANGE
    9.
    发明申请

    公开(公告)号:US20230021627A1

    公开(公告)日:2023-01-26

    申请号:US17443287

    申请日:2021-07-23

    摘要: Federation policy exchange is provided in response to receiving a sharing query from an Access Point (AP) indicating that an associated wireless network supports federated identities with data sharing, determining whether the sharing query is within sharing preferences; and in response to determining that the sharing query is within the sharing preferences, transmitting, to the AP, a positive response for identity sharing that authorizes collection and sharing of identity data with at least one entity identified in a sharing policy for the associated wireless network. In various embodiments, federation policy exchange includes transmitting a support notification, via an AP, indicating support for federated identities with data sharing within a wireless network associated with the AP; and in response to receiving a first identify sharing preference from a User Equipment (UE) that indicates that negotiation is preferred, transmitting a sharing policy for the wireless network to the UE.

    Network Operations Reactive to Operations Data included in Seamless Bidirectional Forwarding Detection (S-BFD) Packets

    公开(公告)号:US20200344152A1

    公开(公告)日:2020-10-29

    申请号:US16392299

    申请日:2019-04-23

    摘要: In one embodiment, in-band operations data (e.g., In-situ Operations, Administration, Maintenance and/or other operations data) is added to Seamless Bidirectional Forwarding (S-BFD) packets. In one embodiment, a S-BFD packet received by a node includes a BFD discriminator and operations data. Reactive processing is identified based on the BFD discriminator. The S-BFD packet and the operations data (e.g., in an operations data field in a header of the received S-BFD packet, in an IOAM Type-Length-Value (TLV), etc.) is processed according to the identified reactive function. Examples of these reactive actions include, but are not limited to, determining a result based on processing of said particular operations data by the local node or a remote analytics server, and sending a response packet including unprocessed and/or a result of the processed operations data (e.g., performance, loss, jitter, an indication of compliance with a service level agreement, and/or another data measurement or result).