Openroaming based remote worker
    2.
    发明授权

    公开(公告)号:US11496337B2

    公开(公告)日:2022-11-08

    申请号:US17148481

    申请日:2021-01-13

    IPC分类号: H04L12/46 H04W12/06

    摘要: A method for establishing a VPN with a client device is provided. In the method, an AP can receive an access request directed to an OpenRoaming (OR) Service Set Identifier (SSID) from the client device. The AP can send the access request to an OR connector. In response to the access request, the AP may receive an access response from the OR connector. The access response can include an attribute indicating an address to connect to a company Virtual Private Network (VPN) headend. The AP may then use the attribute to establish the VPN connection with the company VPN headend.

    Wireless Client Onboarding and Segmentation

    公开(公告)号:US20210092021A1

    公开(公告)日:2021-03-25

    申请号:US16576387

    申请日:2019-09-19

    IPC分类号: H04L12/24 H04L29/12 H04W12/06

    摘要: A method is provided in a wireless local area network controller in a wireless communication network. The wireless communication network includes one or more virtual networks identified with virtual network IDs, VNIDs. A request is received from a wireless client to onboard onto the network and the wireless client is mapped to an onboarding VNID. The onboarding VNID is associated with an onboarding virtual network that does not require an authentication of the wireless client. An Internet Protocol address assignment is forwarded to the wireless client. The wireless client is remapped from the onboarding VNID to the destination VNID after authenticating the wireless client. The wireless client maintains the assigned IP address after moving from the onboarding VNID to the destination VNID. Access to the wireless client on a virtual network identified by the destination VNID is provided via the assigned IP address.

    OPENROAMING BASED REMOTE WORKER
    6.
    发明申请

    公开(公告)号:US20220224565A1

    公开(公告)日:2022-07-14

    申请号:US17148481

    申请日:2021-01-13

    IPC分类号: H04L12/46 H04W12/06

    摘要: A method for establishing a VPN with a client device is provided. In the method, an AP can receive an access request directed to an OpenRoaming (OR) Service Set Identifier (SSID) from the client device. The AP can send the access request to an OR connector. In response to the access request, the AP may receive an access response from the OR connector. The access response can include an attribute indicating an address to connect to a company Virtual Private Network (VPN) headend. The AP may then use the attribute to establish the VPN connection with the company VPN headend.

    Sparse graph coding scheduling for deterministic Ethernet

    公开(公告)号:US09705700B2

    公开(公告)日:2017-07-11

    申请号:US14519714

    申请日:2014-10-21

    CPC分类号: H04L12/417 H04L47/56

    摘要: Embodiments provide techniques for transmitting data packets across a deterministic Ethernet network. Embodiments receive, at a first device in the deterministic Ethernet network, a deterministic binary schedule specifying timing information for transmitting data fragments relating to a plurality of data flows. Data packets to transmit to a destination device within the deterministic Ethernet network are received at the first device. Embodiments include fragmenting each of the data packets into two or more fragments and encoding at least one of the two or more fragments for each of the data packets with a respective sparse graph code. The encoded fragments are transmitted to the destination device, across multiple paths through the deterministic Ethernet network, according to timing information specified in the deterministic binary schedule.

    Flow matching optimization in scaled environments
    8.
    发明授权
    Flow matching optimization in scaled environments 有权
    缩放环境中的流量匹配优化

    公开(公告)号:US09407735B2

    公开(公告)日:2016-08-02

    申请号:US14486556

    申请日:2014-09-15

    IPC分类号: H04L12/50 H04L29/06

    CPC分类号: H04L69/22 H04L43/026

    摘要: In one embodiment, a method includes identifying at a network device, a number of items for matching at a hash table, the number of items exceeding matching available with ternary content addressable memory (TCAM) at the network device, defining at the network device, an optimal cyclic redundancy check (CRC) polynomial based on the number of items for matching at the hash table, and generating at the network device, an optimal hash function based on the optimal CRC polynomial to extend packet classification capability at the network device. An apparatus is also disclosed herein.

    摘要翻译: 在一个实施例中,一种方法包括在网络设备处识别用于在散列表处进行匹配的项目的数量,在网络设备处定义的与网络设备上的三进制内容可寻址存储器(TCAM)可用的项目数量相匹配的数量, 基于用于在散列表处进行匹配的项目的数量的最佳循环冗余校验(CRC)多项式,以及在网络设备处生成基于最佳CRC多项式的最优哈希函数,以在网络设备上扩展分组分类能力。 本文还公开了一种装置。

    IDENTIFYING ROGUE WIRELESS DEVICES USING MAC ADDRESS ROTATION TECHNIQUES

    公开(公告)号:US20230354034A1

    公开(公告)日:2023-11-02

    申请号:US17731689

    申请日:2022-04-28

    摘要: A method is provided that is performed in a wireless network to detect a rogue wireless device. The method comprises detecting a suspect wireless device in the wireless network based on messages transmitted by the suspect wireless device using a first Media Access Control (MAC) address that is also used by a valid wireless device in the wireless network. When a suspect wireless device is detected, the method next includes sending to the valid wireless device in the wireless network a request configured to cause the valid wireless device to change its MAC address. After the valid wireless device has changed its MAC address, the method involves observing messages transmitted by the suspect wireless device in the wireless network. The method then includes determining that the suspect wireless device is a rogue device when the suspect wireless device continues to transmit messages using the first MAC address.

    PREVENTING ABUSE OF MEDIA ACCESS CONTROL ADDRESSES BY ROGUE DEVICES

    公开(公告)号:US20230262465A1

    公开(公告)日:2023-08-17

    申请号:US17674304

    申请日:2022-02-17

    IPC分类号: H04W12/122

    CPC分类号: H04W12/122

    摘要: Methods are provided to determine validity of a MAC address. The methods involve obtaining a media access control (MAC) address validity message that indicates a plurality of valid MAC addresses in the wireless network using a fully-exploded format or a probabilistic data structure and determining whether a MAC address is valid based on the MAC address validity message. Other methods involve obtaining a query regarding a validity of a media access control (MAC) address, determining whether the MAC address is a value included in a data set of expected values of a probabilistic data structure. The data set represents a list of MAC addresses. The other methods involve determining whether the MAC address is valid in the wireless network based on determining whether the MAC address is the value included in the data set and providing a response indicating whether the MAC address is valid.