False positive protection for Network Function Virtualization (NFV) virtual probe deployment

    公开(公告)号:US10110462B1

    公开(公告)日:2018-10-23

    申请号:US15267410

    申请日:2016-09-16

    摘要: A Network Function Virtualization (NFV) data system controls virtual Probe (vProbe) deployment in an NFV Infrastructure (NFVI). An NFV Management and Orchestration (MANO) system receives Key Performance Indicators (KPIs) for the NFVI and processes the KPIs to generate NFV indices. The MANO system processes the NFV indices to trigger a vProbe deployment in the NFVI. Before vProbe deployment, the NFV MANO system compares the NFV indices that triggered the vProbe deployment to false-positive vProbe deployment criteria. The NFV MANO system blocks the vProbe deployment when the NFV indices that triggered the vProbe deployment correspond to the false-positive vProbe deployment criteria. The NFV MANO system initiates the vProbe deployment when the triggering NFV indices do not correspond to the false-positive vProbe deployment criteria. The NFVI may execute SDN applications and controllers that communicate over a virtual switch that hosts the vProbe.

    Authorization of communication links between end user devices using intermediary nodes
    6.
    发明授权
    Authorization of communication links between end user devices using intermediary nodes 有权
    使用中间节点授权终端用户设备之间的通信链路

    公开(公告)号:US09363090B1

    公开(公告)日:2016-06-07

    申请号:US14036454

    申请日:2013-09-25

    IPC分类号: H04L9/32 H04L29/06

    摘要: Systems, methods, and software for operating communication systems are provided herein. In one example, method of operating a communication system to establish secure communications between a first user device communicating in a first communication network and a second user device communicating in a second communication network is presented. The method includes, responsive to a communication request received from the first user device, establishing a secure communication link between the first user device and a first security node. When a second security node has a security relationship established with the first security node, the method includes establishing the secure communication link for the secure communications between the first user device and the second user device using at least the security relationship between the first security node and the second security node, and exchanging the secure communications over the secure communication link.

    摘要翻译: 本文提供了用于操作通信系统的系统,方法和软件。 在一个示例中,呈现操作通信系统以在第一通信网络中通信的第一用户设备与在第二通信网络中通信的第二用户设备之间建立安全通信的方法。 该方法包括响应于从第一用户设备接收到的通信请求,在第一用户设备和第一安全节点之间建立安全通信链路。 当第二安全节点具有与第一安全节点建立的安全关系时,该方法包括使用至少第一安全节点和第二安全节点之间的安全关系来建立用于第一用户设备和第二用户设备之间的安全通信的安全通信链路, 第二安全节点,并且通过安全通信链路交换安全通信。

    Software defined network (SDN) proxy correlation index (PCI) data-plane control

    公开(公告)号:US10361922B2

    公开(公告)日:2019-07-23

    申请号:US15421201

    申请日:2017-01-31

    摘要: A Software-Defined Network (SDN) distributes Proxy Correlation Index (PCI) control in an SDN data-plane. An SDN controller transfers SDN signaling that indicates a data-plane PCI configuration. An SDN data machine processes the SDN signaling and configures a PCI generator and a flow controller to implement the data-plane PCI configuration. The SDN data-plane machine processes user data flows per a Flow Description Table (FDT) and generates Key Performance Indicators (KPIs) for the user data flows. The PCI generator generates PCIs based on the KPIs and the data-plane PCI configuration. The flow controller updates the FDT based on the PCIs and the data-plane PCI configuration. The SDN data-plane machine processes the user data flows per the updated FDT.

    AUTHORIZATION OF COMMUNICATION LINKS BETWEEN END USER DEVICES USING INTERMEDIARY NODES
    9.
    发明申请
    AUTHORIZATION OF COMMUNICATION LINKS BETWEEN END USER DEVICES USING INTERMEDIARY NODES 审中-公开
    使用中间节目的最终用户设备之间的通信链接的授权

    公开(公告)号:US20160255060A1

    公开(公告)日:2016-09-01

    申请号:US15150650

    申请日:2016-05-10

    摘要: Systems, methods, and software for operating communication systems are provided herein. In one example, method of operating a communication system to establish secure communications between a first user device communicating in a first communication network and a second user device communicating in a second communication network is presented. The method includes, responsive to a communication request received from the first user device, establishing a secure communication link between the first user device and a first security node. When a second security node has a security relationship established with the first security node, the method includes establishing the secure communication link for the secure communications between the first user device and the second user device using at least the security relationship between the first security node and the second security node, and exchanging the secure communications over the secure communication link.

    摘要翻译: 本文提供了用于操作通信系统的系统,方法和软件。 在一个示例中,呈现操作通信系统以在第一通信网络中通信的第一用户设备与在第二通信网络中通信的第二用户设备之间建立安全通信的方法。 该方法包括响应于从第一用户设备接收到的通信请求,在第一用户设备和第一安全节点之间建立安全通信链路。 当第二安全节点具有与第一安全节点建立的安全关系时,该方法包括使用至少第一安全节点和第二安全节点之间的安全关系来建立用于第一用户设备和第二用户设备之间的安全通信的安全通信链路, 第二安全节点,并且通过安全通信链路交换安全通信。

    Timing security flags in common public radio interface
    10.
    发明授权
    Timing security flags in common public radio interface 有权
    公共无线电接口中的定时安全标志

    公开(公告)号:US09258707B1

    公开(公告)日:2016-02-09

    申请号:US14033633

    申请日:2013-09-23

    IPC分类号: H04J3/24 H04W12/06

    摘要: Examples disclosed herein provide systems, methods, and software for communication using Common Public Radio Interface. In one example, a system for CPRI communication includes a radio equipment control system configured to generate a timing security flag for a basic frame, insert the security flag into the basic frame, and initiate transfer of the basic frame to a radio equipment system. The radio equipment system is further configured to receive the basic frame, identify validity of the timing security flag, and upon validation, update timing on the radio equipment.

    摘要翻译: 本文公开的示例提供了使用公共无线电接口的通信的系统,方法和软件。 在一个示例中,用于CPRI通信的系统包括:无线电设备控制系统,被配置为生成用于基本帧的定时安全标志,将安全标志插入到基本帧中,并且启动将基本帧传送到无线电设备系统。 无线电设备系统还被配置为接收基本帧,识别定时安全标志的有效性,并且在验证时,在无线电设备上进行更新定时。