-
公开(公告)号:US11528191B1
公开(公告)日:2022-12-13
申请号:US17403585
申请日:2021-08-16
发明人: Domenico Ficara , Roberto Muccifora , Andriani Stylianou , Shankar Sthanuretnam , Pratap Pereira
IPC分类号: H04L41/0869 , H04L41/08 , H04L41/0604 , H04L41/0816
摘要: Techniques are described for automatically generating a consistent configuration state version 2 for a network device with no or minimal help from a user and/or from a provider of the network device when updating from a configuration state version 1 to the configuration state version 2. The techniques and architecture also provide for migration from configuration state version 1 to configuration state version 2 when at least some of a configuration state are located in text files that are applied to the network device at start-up of the network device.
-
公开(公告)号:US11496337B2
公开(公告)日:2022-11-08
申请号:US17148481
申请日:2021-01-13
摘要: A method for establishing a VPN with a client device is provided. In the method, an AP can receive an access request directed to an OpenRoaming (OR) Service Set Identifier (SSID) from the client device. The AP can send the access request to an OR connector. In response to the access request, the AP may receive an access response from the OR connector. The access response can include an attribute indicating an address to connect to a company Virtual Private Network (VPN) headend. The AP may then use the attribute to establish the VPN connection with the company VPN headend.
-
3.
公开(公告)号:US20220225097A1
公开(公告)日:2022-07-14
申请号:US17147319
申请日:2021-01-12
发明人: Ugo Mario Campiglio , Amine Choukir , Roberto Muccifora , Domenico Ficara , Sachin Dinkar Wakudkar
IPC分类号: H04W12/069 , H04W12/041 , H04W12/033 , H04W12/71
摘要: A method for providing multicast frames in a Multi-Dwelling Unit (MDU) is provided herein. An Access Point (AP) can receive a join request from a first client device. The AP can generate a Group Master Key (GMK) from the Pre-Shared Key (PSK) associated with a Basic Service Set (BSS) that includes the first client device. The AP can then derive a Group Transient Key (GTK) from the GMK. The AP may then send the GTK to the first client device. Thereinafter, the AP can send multicast frames to the first client device encrypted by the GTK. The first client device can decrypt the multicast frames with the GTK. However, a second client device, that does not share the PSK, may receive the multicast frame but cannot decrypt the multicast frames.
-
公开(公告)号:US20210092021A1
公开(公告)日:2021-03-25
申请号:US16576387
申请日:2019-09-19
发明人: Amine Choukir , Roberto Muccifora , Antonio Trifilo , Domenico Ficara , Vincent Cuissard , Salvatore Valenza
摘要: A method is provided in a wireless local area network controller in a wireless communication network. The wireless communication network includes one or more virtual networks identified with virtual network IDs, VNIDs. A request is received from a wireless client to onboard onto the network and the wireless client is mapped to an onboarding VNID. The onboarding VNID is associated with an onboarding virtual network that does not require an authentication of the wireless client. An Internet Protocol address assignment is forwarded to the wireless client. The wireless client is remapped from the onboarding VNID to the destination VNID after authenticating the wireless client. The wireless client maintains the assigned IP address after moving from the onboarding VNID to the destination VNID. Access to the wireless client on a virtual network identified by the destination VNID is provided via the assigned IP address.
-
公开(公告)号:US11528610B2
公开(公告)日:2022-12-13
申请号:US16712334
申请日:2019-12-12
发明人: Domenico Ficara , Mirko Raca , Lorenzo Granai , Leo Caldarola , Roberto Muccifora , Francisco Sedano Crippa
IPC分类号: H04W8/00 , H04L12/28 , H04W84/12 , H04L9/40 , H04L67/51 , H04W4/02 , H04W4/21 , H04W12/086 , H04W12/06 , H04W64/00
摘要: In one embodiment, a method in a multi-tenant wireless network comprises determining a first user private network (UPN) for a first device of a first user. The first UPN provides discovery, by the first device, of other devices on the wireless network to a first subset of other devices on the wireless network. The method further comprises determining a second UPN for the first device of the first user. The second UPN provides discovery, by the first device, of other devices on the wireless network to a second subset of other devices on the wireless network. The method further comprises providing discovery of the first subset and second subset of other devices on the wireless network to the first device of the first user. Discovery of the second subset is provided dynamically based on a current location of the first device.
-
公开(公告)号:US20220224565A1
公开(公告)日:2022-07-14
申请号:US17148481
申请日:2021-01-13
摘要: A method for establishing a VPN with a client device is provided. In the method, an AP can receive an access request directed to an OpenRoaming (OR) Service Set Identifier (SSID) from the client device. The AP can send the access request to an OR connector. In response to the access request, the AP may receive an access response from the OR connector. The access response can include an attribute indicating an address to connect to a company Virtual Private Network (VPN) headend. The AP may then use the attribute to establish the VPN connection with the company VPN headend.
-
公开(公告)号:US09705700B2
公开(公告)日:2017-07-11
申请号:US14519714
申请日:2014-10-21
IPC分类号: H04L12/28 , H04L12/417 , H04L12/875
CPC分类号: H04L12/417 , H04L47/56
摘要: Embodiments provide techniques for transmitting data packets across a deterministic Ethernet network. Embodiments receive, at a first device in the deterministic Ethernet network, a deterministic binary schedule specifying timing information for transmitting data fragments relating to a plurality of data flows. Data packets to transmit to a destination device within the deterministic Ethernet network are received at the first device. Embodiments include fragmenting each of the data packets into two or more fragments and encoding at least one of the two or more fragments for each of the data packets with a respective sparse graph code. The encoded fragments are transmitted to the destination device, across multiple paths through the deterministic Ethernet network, according to timing information specified in the deterministic binary schedule.
-
公开(公告)号:US09407735B2
公开(公告)日:2016-08-02
申请号:US14486556
申请日:2014-09-15
CPC分类号: H04L69/22 , H04L43/026
摘要: In one embodiment, a method includes identifying at a network device, a number of items for matching at a hash table, the number of items exceeding matching available with ternary content addressable memory (TCAM) at the network device, defining at the network device, an optimal cyclic redundancy check (CRC) polynomial based on the number of items for matching at the hash table, and generating at the network device, an optimal hash function based on the optimal CRC polynomial to extend packet classification capability at the network device. An apparatus is also disclosed herein.
摘要翻译: 在一个实施例中,一种方法包括在网络设备处识别用于在散列表处进行匹配的项目的数量,在网络设备处定义的与网络设备上的三进制内容可寻址存储器(TCAM)可用的项目数量相匹配的数量, 基于用于在散列表处进行匹配的项目的数量的最佳循环冗余校验(CRC)多项式,以及在网络设备处生成基于最佳CRC多项式的最优哈希函数,以在网络设备上扩展分组分类能力。 本文还公开了一种装置。
-
公开(公告)号:US20230354034A1
公开(公告)日:2023-11-02
申请号:US17731689
申请日:2022-04-28
发明人: Domenico Ficara , Roberto Muccifora , Amine Choukir , Robert Barton , Jerome Henry , Arun Khanna
IPC分类号: H04W12/122 , H04W12/73 , H04W12/106
CPC分类号: H04W12/122 , H04W12/73 , H04W12/106
摘要: A method is provided that is performed in a wireless network to detect a rogue wireless device. The method comprises detecting a suspect wireless device in the wireless network based on messages transmitted by the suspect wireless device using a first Media Access Control (MAC) address that is also used by a valid wireless device in the wireless network. When a suspect wireless device is detected, the method next includes sending to the valid wireless device in the wireless network a request configured to cause the valid wireless device to change its MAC address. After the valid wireless device has changed its MAC address, the method involves observing messages transmitted by the suspect wireless device in the wireless network. The method then includes determining that the suspect wireless device is a rogue device when the suspect wireless device continues to transmit messages using the first MAC address.
-
公开(公告)号:US20230262465A1
公开(公告)日:2023-08-17
申请号:US17674304
申请日:2022-02-17
发明人: Domenico Ficara , Roberto Muccifora , Robert Edgar Barton , Jerome Henry , Stephen Michael Orr , Amine Choukir
IPC分类号: H04W12/122
CPC分类号: H04W12/122
摘要: Methods are provided to determine validity of a MAC address. The methods involve obtaining a media access control (MAC) address validity message that indicates a plurality of valid MAC addresses in the wireless network using a fully-exploded format or a probabilistic data structure and determining whether a MAC address is valid based on the MAC address validity message. Other methods involve obtaining a query regarding a validity of a media access control (MAC) address, determining whether the MAC address is a value included in a data set of expected values of a probabilistic data structure. The data set represents a list of MAC addresses. The other methods involve determining whether the MAC address is valid in the wireless network based on determining whether the MAC address is the value included in the data set and providing a response indicating whether the MAC address is valid.
-
-
-
-
-
-
-
-
-