METHOD AND SYSTEM FOR SECURE ZERO TOUCH DEVICE PROVISIONING

    公开(公告)号:US20210377119A1

    公开(公告)日:2021-12-02

    申请号:US17402964

    申请日:2021-08-16

    Abstract: A customer premises device may include a memory configured to store day 0 configuration instructions, a first network interface to couple to an out-of-band network, a second network interface operatively coupled to a customer network, and at least one processor configured to automatically and without user input execute the day 0 configuration instructions. The at least one processor is configured to establish and maintain a secure tunnel connection with a security gateway device via the out-of-band network and to establish a connection with a configuration platform on the provider network via the secure tunnel connection. Orchestration instructions for configuring one or more VNFs are received from the configuration platform via the tunnel connection. The at least one processor is further configured to receive VNF management instructions via the secure tunnel connection, wherein the VNF management instructions include one of: updates, reconfigurations, or patches.

    INTELLIGENT PROGRAMMABLE POLICIES FOR NETWORK FUNCTIONS

    公开(公告)号:US20210168216A1

    公开(公告)日:2021-06-03

    申请号:US17176408

    申请日:2021-02-16

    Abstract: Systems and methods described herein provide unified policy management framework network functions in enterprise networks. The systems and methods store an abstract micro-service template configured from predefined configuration elements; receive descriptive information for a vendor-specific micro-service that corresponds to the abstract micro-service template; solicit first customer labels for at least some of the predefined configuration elements associated with a group of users for a micro-service on a customer network; solicit second customer labels for other of the predefined configuration elements associated with applications used on the customer network; generate a vendor-agnostic micro-service template using the first customer labels, the second customer labels, and the abstract micro-service template; convert, based on the descriptive information, the vendor-agnostic micro-service template into a vendor-specific micro-service template for the customer; and generate, based on the vendor-specific micro-service template, a network policy for enforcement across multiple sites of the customer network.

    Intelligent programmable policies for network functions

    公开(公告)号:US10951719B2

    公开(公告)日:2021-03-16

    申请号:US16723287

    申请日:2019-12-20

    Abstract: Systems and methods described herein provide unified policy management framework network functions in enterprise networks. The systems and methods store an abstract micro-service template configured from predefined configuration elements; receive descriptive information for a vendor-specific micro-service that corresponds to the abstract micro-service template; solicit first customer labels for at least some of the predefined configuration elements associated with a group of users for a micro-service on a customer network; solicit second customer labels for other of the predefined configuration elements associated with applications used on the customer network; generate a vendor-agnostic micro-service template using the first customer labels, the second customer labels, and the abstract micro-service template; convert, based on the descriptive information, the vendor-agnostic micro-service template into a vendor-specific micro-service template for the customer; and generate, based on the vendor-specific micro-service template, a network policy for enforcement across multiple sites of the customer network.

    Virtualized network service management and diagnostics

    公开(公告)号:US10917308B2

    公开(公告)日:2021-02-09

    申请号:US16227511

    申请日:2018-12-20

    Abstract: A device monitors, for a software-defined networking wide area network (SD-WAN) deployment, a set of virtualized network services of the SD-WAN deployment, and applies a set of diagnostic tests to evaluate the set of virtualized network services. The device detects, based on monitoring the set of virtualized network services and in connection with applying the set of diagnostic tests, an event associated with a virtualized network service. The device analyzes, using an analytics model of SD-WAN operation, the event to identify an issue associated with the virtualized network service, and determines, based on the analytics model of SD-WAN operation, a recommendation relating to remediating the issue. The device generates an abstraction layer user interface to represent the set of virtualized network services and to convey the recommendation relating to remediating the issue, and implements, after providing the abstraction layer user interface, the recommendation to remediate the issue.

    Intelligent programmable policies for network functions

    公开(公告)号:US10554765B2

    公开(公告)日:2020-02-04

    申请号:US16017592

    申请日:2018-06-25

    Abstract: Systems and methods described herein provide unified policy management framework network functions in enterprise networks. The systems and methods store an abstract micro-service template configured from predefined configuration elements; receive descriptive information for a vendor-specific micro-service that corresponds to the abstract micro-service template; solicit first customer labels for at least some of the predefined configuration elements associated with a group of users for a micro-service on a customer network; solicit second customer labels for other of the predefined configuration elements associated with applications used on the customer network; generate a vendor-agnostic micro-service template using the first customer labels, the second customer labels, and the abstract micro-service template; convert, based on the descriptive information, the vendor-agnostic micro-service template into a vendor-specific micro-service template for the customer; and generate, based on the vendor-specific micro-service template, a network policy for enforcement across multiple sites of the customer network.

    Intelligent programmable policies for network functions

    公开(公告)号:US11349939B2

    公开(公告)日:2022-05-31

    申请号:US17176408

    申请日:2021-02-16

    Abstract: Systems and methods described herein provide unified policy management framework network functions in enterprise networks. The systems and methods store an abstract micro-service template configured from predefined configuration elements; receive descriptive information for a vendor-specific micro-service that corresponds to the abstract micro-service template; solicit first customer labels for at least some of the predefined configuration elements associated with a group of users for a micro-service on a customer network; solicit second customer labels for other of the predefined configuration elements associated with applications used on the customer network; generate a vendor-agnostic micro-service template using the first customer labels, the second customer labels, and the abstract micro-service template; convert, based on the descriptive information, the vendor-agnostic micro-service template into a vendor-specific micro-service template for the customer; and generate, based on the vendor-specific micro-service template, a network policy for enforcement across multiple sites of the customer network.

    INTELLIGENT PROGRAMMABLE POLICIES FOR NETWORK FUNCTIONS

    公开(公告)号:US20190394286A1

    公开(公告)日:2019-12-26

    申请号:US16017592

    申请日:2018-06-25

    Abstract: Systems and methods described herein provide unified policy management framework network functions in enterprise networks. The systems and methods store an abstract micro-service template configured from predefined configuration elements; receive descriptive information for a vendor-specific micro-service that corresponds to the abstract micro-service template; solicit first customer labels for at least some of the predefined configuration elements associated with a group of users for a micro-service on a customer network; solicit second customer labels for other of the predefined configuration elements associated with applications used on the customer network; generate a vendor-agnostic micro-service template using the first customer labels, the second customer labels, and the abstract micro-service template; convert, based on the descriptive information, the vendor-agnostic micro-service template into a vendor-specific micro-service template for the customer; and generate, based on the vendor-specific micro-service template, a network policy for enforcement across multiple sites of the customer network.

    TIER BASED VIRTUAL NETWORK FUNCTION CHAINING DESIGN

    公开(公告)号:US20190327145A1

    公开(公告)日:2019-10-24

    申请号:US16459416

    申请日:2019-07-01

    Abstract: Techniques described herein may be used to condense a large quantity of Virtual Network Function (VNF) chains (that each correspond to a network service) into a much smaller quantity of VNF records; and extract any of the large quantity of VNF chains from the smaller quantity of network service records. This may be accomplished by assigning a Number (No.) of Services attribute and a Tier attribute into each VNF record. The No. of Services attribute and Tier attribute may enable the VNF records to reference one another such that the larger quantity of VNF chains may, in effect, be entirely represented by the much smaller quantity of VNF records, thereby conserving storage space, streamlining VNF chain management, and reducing the processing and memory capacity required to search, configure, and deploy virtual network services.

Patent Agency Ranking