-
公开(公告)号:US20200382497A1
公开(公告)日:2020-12-03
申请号:US16429462
申请日:2019-06-03
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Rajesh Kumar Ganapathy Achari , Anoop Kumaran Nair , Venkatesh Ramachandran , Pattabhi Attaluri , Bhagya Prasad Nittur , Antoni Milton
IPC: H04L29/06
Abstract: Methods and systems for providing vendor agnostic captive portal authentication in a network that includes a plurality of network access devices are provided. For instance, one method includes receiving a redirect request for a communication between a first user-terminal and a first network access device, the redirect request including at least one of a vendor-specific item of information of the first network access device and an Internet Protocol (IP) address of the first network access device. The method further includes comparing the at least one of the vendor-specific item of information of the first network access device and the IP address of the first network access device against each of a plurality of entries of a network access device database, and providing the first user-terminal access to a captive portal page in response to an appropriate match.
-
公开(公告)号:US11418515B2
公开(公告)日:2022-08-16
申请号:US16429375
申请日:2019-06-03
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Rajesh Kumar Ganapathy Achari , Anoop Kumaran Nair , Pattabhi Attaluri , Venkatesh Ramachandran , Bhagya Prasad Nittur , Antoni Milton
IPC: H04L9/40 , H04L41/0806
Abstract: Methods and systems for specifying and enforcing network policies are provided. One method for configuring a network that includes a plurality of heterogeneous network access devices includes creating a network enforcement profile based on at least one enforcement policy, and determining a network access device group of the plurality of heterogeneous network access devices that are capable of managing the enforcement profile. The method further includes providing vendor-specific configuration parameters for at least one network access device of the network access device group so as to cause the network to manage the network enforcement profile, and applying the vendor-specific configuration parameters to the at least one network access device.
-
公开(公告)号:US11201864B2
公开(公告)日:2021-12-14
申请号:US16429462
申请日:2019-06-03
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Rajesh Kumar Ganapathy Achari , Anoop Kumaran Nair , Venkatesh Ramachandran , Pattabhi Attaluri , Bhagya Prasad Nittur , Antoni Milton
Abstract: Methods and systems for providing vendor agnostic captive portal authentication in a network that includes a plurality of network access devices are provided. For instance, one method includes receiving a redirect request for a communication between a first user-terminal and a first network access device, the redirect request including at least one of a vendor-specific item of information of the first network access device and an Internet Protocol (IP) address of the first network access device. The method further includes comparing the at least one of the vendor-specific item of information of the first network access device and the IP address of the first network access device against each of a plurality of entries of a network access device database, and providing the first user-terminal access to a captive portal page in response to an appropriate match.
-
4.
公开(公告)号:US20210037059A1
公开(公告)日:2021-02-04
申请号:US16529255
申请日:2019-08-01
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Rajesh Kumar Ganapathy Achari , Anoop Kumaran Nair , Venkatesh Ramachandran , Pattabhi Attaluri , Bhagya Prasad NR , Antoni Milton
IPC: H04L29/06
Abstract: A process, system, and non-transient computer readable medium that provides device automation support for the dynamic activation, authentication, and accounting of network access and network access devices while enabling seamless multi-vendor support for change of authorization through multiple network protocols. The process, system, and non-transient computer readable media also provides security threat remediation that can be automated at the device, network access, traffic inspection, and/or threat protection level by taking action on a device by triggering actions in a bidirectional manner.
-
公开(公告)号:US20200382516A1
公开(公告)日:2020-12-03
申请号:US16429375
申请日:2019-06-03
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Rajesh Kumar Ganapathy Achari , Anoop Kumaran Nair , Pattabhi Attaluri , Venkatesh Ramachandran , Bhagya Prasad Nittur , Antoni Milton
Abstract: Methods and systems for specifying and enforcing network policies are provided. One method for configuring a network that includes a plurality of heterogeneous network access devices includes creating a network enforcement profile based on at least one enforcement policy, and determining a network access device group of the plurality of heterogeneous network access devices that are capable of managing the enforcement profile. The method further includes providing vendor-specific configuration parameters for at least one network access device of the network access device group so as to cause the network to manage the network enforcement profile, and applying the vendor-specific configuration parameters to the at least one network access device.
-
公开(公告)号:US11792193B2
公开(公告)日:2023-10-17
申请号:US17523263
申请日:2021-11-10
Applicant: Hewlett Packard Enterprise Development LP
Inventor: Rajesh Kumar Ganapathy Achari , Anoop Kumaran Nair , Venkatesh Ramachandran , Pattabhi Attaluri , Bhagya Prasad Nittur , Antoni Milton
CPC classification number: H04L63/0876 , H04L63/105
Abstract: Methods and systems for providing vendor agnostic captive portal authentication in a network that includes a plurality of network access devices are provided. For instance, one method includes receiving a redirect request for a communication between a first user-terminal and a first network access device, the redirect request including at least one of a vendor-specific item of information of the first network access device and an Internet Protocol (IP) address of the first network access device. The method further includes comparing the at least one of the vendor-specific item of information of the first network access device and the IP address of the first network access device against each of a plurality of entries of a network access device database, and providing the first user-terminal access to a captive portal page in response to an appropriate match.
-
7.
公开(公告)号:US11228618B2
公开(公告)日:2022-01-18
申请号:US16529255
申请日:2019-08-01
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Rajesh Kumar Ganapathy Achari , Anoop Kumaran Nair , Venkatesh Ramachandran , Pattabhi Attaluri , Rajarao Bhagya Prasad Nittur , Antoni Milton
Abstract: A process, system, and non-transient computer readable medium that provides device automation support for the dynamic activation, authentication, and accounting of network access and network access devices while enabling seamless multi-vendor support for change of authorization through multiple network protocols. The process, system, and non-transient computer readable media also provides security threat remediation that can be automated at the device, network access, traffic inspection, and/or threat protection level by taking action on a device by triggering actions in a bidirectional manner.
-
8.
公开(公告)号:US20190222676A1
公开(公告)日:2019-07-18
申请号:US16161895
申请日:2018-10-16
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
CPC classification number: H04L67/34 , H04L41/0806 , H04L41/082 , H04L63/102 , H04L63/20 , H04L67/30 , H04L67/42
Abstract: Systems and methods are described that configure network devices to dynamically (1) download privilege setting definitions from an authentication server to address a currently connected set of client devices associated with these privilege setting definitions and (2) clear privilege setting definitions that are no longer in use by client devices connected to the network device. In particular, a network device may determine if a privilege setting definition associated with a successfully authenticated client device is locally available on the network device and request the privilege setting definition from the authentication server when not locally available. In some situations, the authentication server may selectively transmit update messages to network devices that may be affected by an update to a privilege setting definition such that the network devices may request this updated privilege setting definition for download.
-
-
-
-
-
-
-