Inventors list

Assignees list

Classification tree browser

Top 100 Inventors

Top 100 Assignees


Droms, MA

Ralph Droms, Westford, MA US

Patent application numberDescriptionPublished
20090138619METHOD AND APPARATUS FOR ASSIGNING NETWORK ADDRESSES BASED ON CONNECTION AUTHENTICATION - Techniques for assigning a network address to a host are based on authentication for a physical connection between the host and an intermediate device. One approach involves receiving first data at the intermediate device from an authentication and authorization server in response to a request for authentication for the physical connection. The first data indicates at least some of authentication and authorization information. A configuration request message from the host is also received at the intermediate device. The configuration request message is for discovering a logical network address for the host. A second message is generated based on the configuration request message and the first data. The second message is sent to a configuration server that provides the logical network address for the host. The configuration server is then able to provide the logical network address based on authorization and authentication information. The logical network address is thus based on the user, as is desirable to determine accounting information for billing purposes, to provide a minimum quality of service (QoS) according to a contract with the user, or to limit access by the user to the Internet and other services.05-28-2009
20090210522Dynamic Host Configuration Protocol (DHCP) Initialization Responsive to a Loss of Network Layer Connectivity - Disclosed are, inter alia, methods, apparatus, computer-storage media, mechanisms, and means associated with loss of network layer connectivity triggering Dynamic Host Configuration Protocol (DHCP) initialization. According to one embodiment, a network device connected to a network initializes one or more network communication values of the network device using DHCP. The network device monitors Network Layer (Layer 3) connectivity with a remote network device; and in response to detecting a loss of said monitored Network Layer connectivity, DHCP initialization of the network device is performed.08-20-2009
20100269155Method and Apparatus for Registering Auto-Configured Network Addresses Based On Connection Authentication - A method and apparatus for registering auto-configured network addresses includes receiving first data at a networking device connected to a host at a physical connection. The first data is received from a first server and indicates authentication information associated with the host. A first message is received at the networking device from the host. The first message requests configuration information and includes a logical network address for the host determined at least in part by the host. A second message is generated based on the first message and the first data. The second message is sent to a second server that registers the host by associating the logical network address with the first data.10-21-2010
20100287266AUTOMATED NETWORK DEVICE PROVISIONING USING DYNAMIC HOST CONFIGURATION PROTOCOL - In an embodiment, an electronic digital data packet router performs receiving a DHCP initiation message on a particular interface among a plurality of network interfaces,; modifying the DHCP initiation message by adding a particular DHCP option that signals a DHCP server to provide router configuration data, resulting in a modified DHCP initiation message; relaying the modified DHCP initiation message to the DHCP server; receiving, from the DHCP server, a DHCPOFFER message that comprises the particular DHCP option containing configuration data; configuring the router using the configuration data; relaying the DHCPOFFER message without the particular DHCP option on the particular interface toward another data packet router.11-11-2010
20100322241ROLE AWARE NETWORK SECURITY ENFORCEMENT - Generating a binding between a source address and one or more roles of a user accessing the network and distributing the binding to a filter node. The source address is currently assigned to the device. The binding may be generated by one or more nodes on an ingress path used during authentication of the user. The binding may be distributed to the filter node on demand or without any request from the filter node. Responsive to a determination that the user is associated with a new source address, a new binding is generated to associate a new source address with the one or more roles for the user. The new binding is distributed to the filter node. Another aspect is a method of enforcing a role based security policy at a filter node, using bindings of source addresses to roles.12-23-2010
20110182295AUTOMATICALLY IDENTIFYING AN EDGE-FACING ROUTER - Techniques for automatically identifying an edge-facing router in a network are provided.07-28-2011

Patent applications by Ralph Droms, Westford, MA US

Ralph Droms, Boxborough, MA US

Patent application numberDescriptionPublished
20120036243AUTOMATED CONFIGURATION OF NETWORK DEVICE PORTS - Methods and devices are provided for identifying end devices and automatically configuring associated network settings. Preferred implementations of the invention do not require users to manually identify connection types (e.g., RFID, IPphone, manufacturing device, etc.) or to manually configure the network device. Accordingly, such implementations allow automatic switch configuration, even for devices that use inconsistent protocols and/or protocols that are not well known. Some methods of the invention employ DHCP options combined with traffic snooping to identify devices and automatically apply appropriate switch port configuration.02-09-2012

Ralph E. Droms, Westford, MA US

Patent application numberDescriptionPublished
20110208845USE OF IPv6 IN ACCESS NETWORKS - An apparatus may include a port to receive a ranging request from a cable modem and a processor in communication with the port. The processor may assign a service identifier to the cable modem, match the service identifier with a link layer address of the cable modem, receive a router advertisement and comparing the source link layer address from the router advertisement to the link layer address of the cable modem, and determine if the link layer address of the cable modem is the same as the source link layer address.08-25-2011

Ralph Edward Droms, Westford, MA US

Patent application numberDescriptionPublished
20080259925Extensions to IPv6 neighbor discovery protocol for automated prefix delegation - In one embodiment, a method comprises detecting, by a router, a first router advertisement message from an attachment router that provides an attachment link used by the router, the first router advertisement message specifying a first IPv6 address prefix owned by the attachment router and usable for address autoconfiguration on the attachment link. The router detects an unsolicited delegated IPv6 address prefix from the attachment router and that is available for use by the router. The router claims a second IPv6 address prefix from at least a portion of the delegated IPv6 address prefix, for use on at least one ingress link of the router.10-23-2008
20080263353AUTOCONFIGURED PREFIX DELEGATION BASED ON DISTRIBUTED HASH - In one embodiment, a method comprises detecting, by a router, an unsolicited first router advertisement message from an attachment router that provides an attachment link used by the router, the first router advertisement message specifying a first IPv6 address prefix owned by the attachment router and usable for address autoconfiguration on the attachment link; detecting, by the router, an unsolicited delegated IPv6 address prefix from the attachment router and that is available for use by the router; and automatically selecting by the router a second IPv6 address prefix based on concatenating a suffix to the delegated IPv6 address prefix, including dynamically generating the suffix based on a prescribed distributed hash operation executed by the router, the second IPv6 address prefix for use on at least one ingress link of the router.10-23-2008
20100020821NEIGHBOR DISCOVERY IN CABLE NETWORKS - A network device has a communications link to allow the device to communicate with customer devices and a processor. The processor is to receive neighbor discovery messages from requesting customer devices, examine the neighbor discovery messages to determine if the neighbor discovery message should be forwarded to other of the customer devices, and respond to the requesting customer devices.01-28-2010
20110317711EXTENSIONS TO IPV6 NEIGHBOR DISCOVERY PROTOCOL FOR AUTOMATED PREFIX DELEGATION - In one embodiment, a method comprises detecting, by a router, a first router advertisement message from an attachment router that provides an attachment link used by the router, the first router advertisement message specifying a first IPv6 address prefix owned by the attachment router and usable for address autoconfiguration on the attachment link. The router detects an unsolicited delegated IPv6 address prefix from the attachment router and that is available for use by the router. The router claims a second IPv6 address prefix from at least a portion of the delegated IPv6 address prefix, for use on at least one ingress link of the router.12-29-2011

Patent applications by Ralph Edward Droms, Westford, MA US