会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明授权
    • System and method for providing enterprise integration in a network environment
    • 在网络环境中提供企业集成的系统和方法
    • US08914520B2
    • 2014-12-16
    • US12619273
    • 2009-11-16
    • Mark GraysonJayaraman R. IyerRajesh S. Pazhyannur
    • Mark GraysonJayaraman R. IyerRajesh S. Pazhyannur
    • G06F15/16H04L12/66H04W12/06H04L12/46H04W84/04H04L29/06
    • H04W12/06H04L12/4641H04L63/0272H04W84/045
    • A method is provided in one example embodiment and includes receiving a request to authenticate an end user in a service provider network, and evaluating the request to identify the end user as belonging to an enterprise network. A tag is generated for a packet associated with a flow for the end user in the enterprise network. Routing occurs for subsequent packets associated with the flow between the enterprise network and the end user. The subsequent packets associated with the flow are not routed through the service provider network. In more particular embodiments, the end user is authenticated in the enterprise network after being authenticated in the service provider network. In addition, traffic for the end user can be separated based on one or more tags identified within the flow. A plurality of flows can be classified based on a customer identification (CID). The tag can be a virtual local area network (VLAN) tag generated at a base station.
    • 在一个示例实施例中提供了一种方法,并且包括接收对服务提供商网络中的最终用户进行认证的请求,以及评估将终端用户识别为属于企业网络的请求。 为与企业网络中的最终用户的流相关联的分组生成标签。 对于与企业网络和最终用户之间的流相关联的后续分组,发生路由。 与流相关联的后续分组不通过服务提供商网络路由。 在更具体的实施例中,在服务提供商网络中认证终端用户之后在企业网络中进行认证。 另外,最终用户的流量可以基于流内标识的一个或多个标签来分离。 可以基于客户标识(CID)对多个流进行分类。 标签可以是在基站处生成的虚拟局域网(VLAN)标签。
    • 5. 发明授权
    • Selective security termination in next generation mobile networks
    • 下一代移动网络中的选择性安全终止
    • US08705738B2
    • 2014-04-22
    • US11864201
    • 2007-09-28
    • Mark GraysonVojislav Vucetic
    • Mark GraysonVojislav Vucetic
    • H04L9/00
    • H04L63/0485H04L63/061H04L63/162H04L2463/061H04W12/02H04W84/042
    • Systems and/or methods of selectively terminating security in mobile networks are presented. User equipment (UE) can specify cipher termination location capabilities for encrypting/decrypting data packets to a base station in a mobile network. The mobile network can subsequently determine at which node in the network to terminate the cipher in part according to the capabilities provided and deliver the determined location to the UE. The determined cipher termination location can be provided in response to a request to initiate communications, the initial request can specify the capabilities. The UE can utilize the location to support disparate types of networks and to intelligently deal with hand-offs and other functions of the mobile network.
    • 提出了选择性地终止移动网络中的安全性的系统和/或方法。 用户设备(UE)可以指定用于将移动网络中的基站的数据分组加密/解密的密码终止位置能力。 移动网络随后可以确定网络中的哪个节点部分地根据所提供的能力终止密码,并将确定的位置传递给UE。 可以响应于发起通信的请求来提供确定的密码终止位置,初始请求可以指定能力。 UE可以利用该位置来支持不同类型的网络,并智能地处理移动网络的切换和其他功能。
    • 6. 发明授权
    • Routing packet flows along an optimized path in an IMS network
    • 路由分组沿着IMS网络中的优化路径流
    • US08599787B2
    • 2013-12-03
    • US11428439
    • 2006-07-03
    • Jayaraman R. IyerMark Grayson
    • Jayaraman R. IyerMark Grayson
    • H04W4/00H04L12/28
    • H04W8/082H04L45/00H04W80/04
    • Routing a packet flow in a communication session includes facilitating a communication session between a first endpoint and a second endpoint. A permanent anchor of a home network receives path offers sent by the first endpoint. An optimized path offer corresponds to an optimized path passing through a transient anchor of a visited network and bypassing the permanent anchor. A default path offer corresponds to a default path passing through the permanent anchor. The permanent anchor determines whether packet flows between the first endpoint and the second endpoint are to be routed along the optimized path. The default path offer is removed if the packet flows are to be routed along the optimized path. The optimized path offer is removed if not. The remaining path offer is forwarded to the second endpoint.
    • 在通信会话中路由分组流包括促进第一端点和第二端点之间的通信会话。 家庭网络的永久锚点接收由第一端点发送的路径优惠。 优化的路径提供对应于经过被访问网络的暂时锚点并绕过永久锚点的优化路径。 默认路径提供对应于通过永久锚点的默认路径。 永久锚定器确定在第一端点和第二端点之间的分组流是否沿着优化路径被路由。 如果要沿着优化的路径路由数据包流,则默认路径提供被删除。 如果没有,优化的路径优惠将被删除。 剩余的路径提供转发到第二个端点。
    • 8. 发明授权
    • System and method for implementing fast reauthentication
    • 实现快速重新认证的系统和方法
    • US08356171B2
    • 2013-01-15
    • US11411482
    • 2006-04-26
    • Kevin ShatzkamerAnand K. OswalMark GraysonJayaraman IyerNavan Narang
    • Kevin ShatzkamerAnand K. OswalMark GraysonJayaraman IyerNavan Narang
    • G06F21/00
    • H04L63/0892H04L63/08H04L63/164H04W12/06H04W88/16
    • A system for efficiently reauthenticating a client of a network. In a specific embodiment, the system includes an authentication server and a Security GateWay (SGW) in communication with the client. The SGW includes reauthentication information associated with the client. In a more specific embodiment, the authentication server includes an Authentication, Authorization, and Accounting (AAA) server. The SGW further includes one or more routines for employing the reauthentication information to reauthenticate the client. The AAA server performs initial authentication of the client to enable client access to the network, which yields the reauthentication information. The reauthentication information includes one or more keys and/or counters, such as an authorization key, an encryption key, and a master key, which is/are predetermined by the AAA server.
    • 一种用于有效地重新认证网络客户端的系统。 在具体实施例中,系统包括与客户端通信的认证服务器和安全门禁(SGW)。 SGW包括与客户端相关联的重新认证信息。 在更具体的实施例中,认证服务器包括认证,授权和计费(AAA)服务器。 SGW还包括用于使用重新认证信息重新认证客户端的一个或多个例程。 AAA服务器执行客户端的初始认证,以使客户端能够访问网络,从而产生重新认证信息。 重新认证信息包括由AAA服务器预先确定的一个或多个密钥和/或计数器,例如授权密钥,加密密钥和主密钥。
    • 10. 发明申请
    • Enterprise Controller Handover Management of Wireless User Devices Between Radio Access Point Devices
    • 无线接入点设备之间的无线用户设备的企业控制器切换管理
    • US20120129525A1
    • 2012-05-24
    • US12952417
    • 2010-11-23
    • Rajesh PazhyannurMark GraysonAllaukik AbhishekDaniel WeeSanthalingam BalasekarHang Jin
    • Rajesh PazhyannurMark GraysonAllaukik AbhishekDaniel WeeSanthalingam BalasekarHang Jin
    • H04W36/08
    • H04W36/08
    • Techniques are provided for transmitting and receiving communications on behalf of wireless user equipment devices between a plurality of radio access point (RAP) devices and a gateway apparatus through a controller apparatus. A controller apparatus generates a plurality of first identifiers used for communications on behalf of corresponding wireless user devices between the controller apparatus and respective RAPs. Each first identifier identifies a wireless user device and a RAP to which the wireless user device is associated. The controller apparatus maps each first identifier to a corresponding one of a plurality of second identifiers for communications exchanged on behalf of the wireless user devices between the controller apparatus and a gateway apparatus in the wireless cellular communication network. The controller apparatus remaps a new first identifier to an existing second identifier when a particular wireless user device has handed over from a first RAP to a second RAP.
    • 提供了代表无线用户设备在多个无线接入点(RAP)设备和网关设备之间通过控制器设备发送和接收通信的技术。 控制器装置在控制器装置和相应的RAP之间代表相应的无线用户装置产生用于通信的多个第一标识符。 每个第一标识符标识无线用户设备和无线用户设备所关联的RAP。 控制器设备将每个第一标识符映射到无线蜂窝通信网络中的控制器设备和网关设备之间代表无线用户设备交换的通信的多个第二标识符中的相应一个标识符。 当特定无线用户设备已经从第一RAP切换到第二RAP时,控制器设备将新的第一标识符重新映射到现有的第二标识符。