| Patent application number | Description | Published |
| 20090138619 | METHOD AND APPARATUS FOR ASSIGNING NETWORK ADDRESSES BASED ON CONNECTION AUTHENTICATION - Techniques for assigning a network address to a host are based on authentication for a physical connection between the host and an intermediate device. One approach involves receiving first data at the intermediate device from an authentication and authorization server in response to a request for authentication for the physical connection. The first data indicates at least some of authentication and authorization information. A configuration request message from the host is also received at the intermediate device. The configuration request message is for discovering a logical network address for the host. A second message is generated based on the configuration request message and the first data. The second message is sent to a configuration server that provides the logical network address for the host. The configuration server is then able to provide the logical network address based on authorization and authentication information. The logical network address is thus based on the user, as is desirable to determine accounting information for billing purposes, to provide a minimum quality of service (QoS) according to a contract with the user, or to limit access by the user to the Internet and other services. | 05-28-2009 |
| 20090210522 | Dynamic Host Configuration Protocol (DHCP) Initialization Responsive to a Loss of Network Layer Connectivity - Disclosed are, inter alia, methods, apparatus, computer-storage media, mechanisms, and means associated with loss of network layer connectivity triggering Dynamic Host Configuration Protocol (DHCP) initialization. According to one embodiment, a network device connected to a network initializes one or more network communication values of the network device using DHCP. The network device monitors Network Layer (Layer 3) connectivity with a remote network device; and in response to detecting a loss of said monitored Network Layer connectivity, DHCP initialization of the network device is performed. | 08-20-2009 |
| 20100269155 | Method and Apparatus for Registering Auto-Configured Network Addresses Based On Connection Authentication - A method and apparatus for registering auto-configured network addresses includes receiving first data at a networking device connected to a host at a physical connection. The first data is received from a first server and indicates authentication information associated with the host. A first message is received at the networking device from the host. The first message requests configuration information and includes a logical network address for the host determined at least in part by the host. A second message is generated based on the first message and the first data. The second message is sent to a second server that registers the host by associating the logical network address with the first data. | 10-21-2010 |
| 20100287266 | AUTOMATED NETWORK DEVICE PROVISIONING USING DYNAMIC HOST CONFIGURATION PROTOCOL - In an embodiment, an electronic digital data packet router performs receiving a DHCP initiation message on a particular interface among a plurality of network interfaces,; modifying the DHCP initiation message by adding a particular DHCP option that signals a DHCP server to provide router configuration data, resulting in a modified DHCP initiation message; relaying the modified DHCP initiation message to the DHCP server; receiving, from the DHCP server, a DHCPOFFER message that comprises the particular DHCP option containing configuration data; configuring the router using the configuration data; relaying the DHCPOFFER message without the particular DHCP option on the particular interface toward another data packet router. | 11-11-2010 |
| 20100322241 | ROLE AWARE NETWORK SECURITY ENFORCEMENT - Generating a binding between a source address and one or more roles of a user accessing the network and distributing the binding to a filter node. The source address is currently assigned to the device. The binding may be generated by one or more nodes on an ingress path used during authentication of the user. The binding may be distributed to the filter node on demand or without any request from the filter node. Responsive to a determination that the user is associated with a new source address, a new binding is generated to associate a new source address with the one or more roles for the user. The new binding is distributed to the filter node. Another aspect is a method of enforcing a role based security policy at a filter node, using bindings of source addresses to roles. | 12-23-2010 |
| 20110182295 | AUTOMATICALLY IDENTIFYING AN EDGE-FACING ROUTER - Techniques for automatically identifying an edge-facing router in a network are provided. | 07-28-2011 |
| Patent application number | Description | Published |
| 20080259925 | Extensions to IPv6 neighbor discovery protocol for automated prefix delegation - In one embodiment, a method comprises detecting, by a router, a first router advertisement message from an attachment router that provides an attachment link used by the router, the first router advertisement message specifying a first IPv6 address prefix owned by the attachment router and usable for address autoconfiguration on the attachment link. The router detects an unsolicited delegated IPv6 address prefix from the attachment router and that is available for use by the router. The router claims a second IPv6 address prefix from at least a portion of the delegated IPv6 address prefix, for use on at least one ingress link of the router. | 10-23-2008 |
| 20080263353 | AUTOCONFIGURED PREFIX DELEGATION BASED ON DISTRIBUTED HASH - In one embodiment, a method comprises detecting, by a router, an unsolicited first router advertisement message from an attachment router that provides an attachment link used by the router, the first router advertisement message specifying a first IPv6 address prefix owned by the attachment router and usable for address autoconfiguration on the attachment link; detecting, by the router, an unsolicited delegated IPv6 address prefix from the attachment router and that is available for use by the router; and automatically selecting by the router a second IPv6 address prefix based on concatenating a suffix to the delegated IPv6 address prefix, including dynamically generating the suffix based on a prescribed distributed hash operation executed by the router, the second IPv6 address prefix for use on at least one ingress link of the router. | 10-23-2008 |
| 20100020821 | NEIGHBOR DISCOVERY IN CABLE NETWORKS - A network device has a communications link to allow the device to communicate with customer devices and a processor. The processor is to receive neighbor discovery messages from requesting customer devices, examine the neighbor discovery messages to determine if the neighbor discovery message should be forwarded to other of the customer devices, and respond to the requesting customer devices. | 01-28-2010 |
| 20110317711 | EXTENSIONS TO IPV6 NEIGHBOR DISCOVERY PROTOCOL FOR AUTOMATED PREFIX DELEGATION - In one embodiment, a method comprises detecting, by a router, a first router advertisement message from an attachment router that provides an attachment link used by the router, the first router advertisement message specifying a first IPv6 address prefix owned by the attachment router and usable for address autoconfiguration on the attachment link. The router detects an unsolicited delegated IPv6 address prefix from the attachment router and that is available for use by the router. The router claims a second IPv6 address prefix from at least a portion of the delegated IPv6 address prefix, for use on at least one ingress link of the router. | 12-29-2011 |