U.S. patents available from 1976 to present.
U.S. patent applications available from 2005 to present.

Icon_funbox Quotables

"I hate what they've done to my child...I would never let my own children watch it. "

Vladimir Zworykin, television pioneer ; Talking about an invention in which he played a critical role.

Newsletter  PatentStorm News

Make the Most of Our Site

See this month's Top Inventors and Most Cited Patents.

Stay on top of the latest innovations by subscribing to an RSS feed.

Registered users: Manage your profile.

 

Assignee: Juniper Networks, Inc.


Location: Sunnyvale, CA
No. of patents: 1062

1                      
NumberTitleIssue Date
8185946Wireless firewall with tear down messaging
Methods of screening incoming packets are provided. A first firewall detects a tunnel formation. A second firewall maintains a list of open firewall sessions. Each tunnel has one or more associated firewall sessions. The first firewall detects variable situations, s...
05/22/2012
8185933Local caching of endpoint security information
In general, the principles of this invention are directed to techniques of locally caching endpoint security information. In particular, a local access module caches endpoint security information maintained by a remote server. When a user attempts to access a networ...
05/22/2012
8185658Supporting virtual private networks using a first network topology for forwarding and a subset of the first network topology or a smaller topology for signaling
Virtual Private Networks (VPNs) are supported in which customers may use popular internet gateway protocol (IGPs) without the need to convert such IGPs, running on customer devices to a single protocol, such as the border gateway protocol (BGP). Scaling problems, wh...
05/22/2012
8185642Communication policy enforcement in a data network
A device is configured to receive authorization information from a first network device and to receive a request that data units sent to a destination device contain authorization information, where the request is received from a second network device. The device is...
05/22/2012
8184933Systems and methods for identifying cable connections in a computing system
A system includes a cable having a first end portion, a second end portion and a cable display module mechanically coupled to the first end portion of the cable. The cable has at least one optical fiber extending through the cable between the first end portion and t...
05/22/2012
8184540Packet lifetime-based memory allocation
A lifetime-based memory management scheme is described, whereby a network device first determines an expected lifetime for received packets, which correlates to the expected output queue latency time of the packets. The network device then buffers packets having mat...
05/22/2012
8176526Configurable redundant security device failover
Techniques are described for managing failover in redundant network devices. In particular, each device in a set of redundant network devices includes redundant processing modules. Each module provides a separate operating environment for a set of network services. ...
05/08/2012
8176311Initializing platform-specific features of a platform during early stages of booting the kernel
Techniques are described for providing a kernel with the ability to execute functions from a kernel module during processor initialization and initializing a platform using platform-specific modules. An initialization function of the platform-specific module is exec...
05/08/2012
8176245Dynamic disk throttling in a wide area network optimization device
A network device may operate to increase application performance over a wide area network. In one particular implementation, the network device may monitor accesses to a disk drive from entities and determine whether an entity is accessing the disk drive in a manner...
05/08/2012
8176219Router having routing engine software instance and interaface controller software instance on a single processor
A network device is described that concurrently executing more than one instance of an operating system on a single processor. Each of the instances of the operating system executes completely independent of the other instances. In this way, disparate instances may ...
05/08/2012
8176201Controlling the signaling of label-switched paths using a label distribution protocol employing messages which facilitate the use of external prefixes
Label distribution protocol (LDP) signaled label-switched paths (LSPs) are supported without requiring information about remote autonomous systems (ASs) to be injected into the local interior gateway protocol (IGP). This may be done by (i) decoupling a forwarding eq...
05/08/2012
8175008Auto MEP ID assignment within CFM maintenance association
A device may include a maintenance association endpoint configured to select a maintenance association endpoint identifier, transmit the maintenance association endpoint identifier to one or more other maintenance association endpoints, and automatically assign the ...
05/08/2012
8174991Methods and apparatus related to analysis of test packets
In one embodiment, a processor-readable medium storing code representing instructions that when executed by a processor cause the processor to store a set of stream signatures representing a set of test streams. The code can be configured to cause the processor to r...
05/08/2012
8171162Methods and apparatus for using both LDP and RSVP in a communications system
Methods and apparatus for allowing routers in an autonomous system to implement LDP and RSVP at the same time. RSVP can be used in the network core with LDP being used in network regions surrounding the core. LDP LSPs are tunneled through the RSVP network core using...
05/01/2012
8171099Network acceleration device having persistent in-memory cache
A network acceleration device includes a persistent, in-memory cache of network content. For example, the cache may store content in a manner that allows a software process to map virtual memory to specific, known regions of an underlying physical memory. Upon detec...
05/01/2012
8170033Virtual private local area network service (VPLS) flush mechanism for BGP-based VPLS networks
A network device includes a control unit configured to execute an extended layer three (L3) routing protocol within a control plane of the network device. The extended L3 routing protocol is extended to process a routing protocol control message having a set of laye...
05/01/2012
8170028Systems and methods for re-ordering data in distributed data forwarding
A network device includes an input interface, at least one processing path and an output interface. The input interface receives data units on a plurality of streams and assigns a first sequence number to each of the received data units. The at least one processing ...
05/01/2012
8169910Network traffic analysis using a flow table
A device may receive a data unit at a line interface of a network device, convey the data unit to a first component in the line interface, update a flow table in the first component based on the data unit, send a message to a second component in the network device, ...
05/01/2012
8166536Transformation of network filter expressions to a content addressable memory format
A network device, such as a firewall, may be configured to filter network traffic. The filter may include regular expressions that are converted by the firewall into a format that can be stored in a ternary content addressable memory. In one exemplary implementation...
04/24/2012
8166140Automatic application of implementation-specific configuration policies
Techniques are described for application of implementation-specific configuration policies within a network device. For example, a device, such as a router, may comprise memory to store operational configuration data and candidate configuration data. The device furt...
04/24/2012
8165145Switching device
A switching device in a network system for transferring data includes one or more source line cards, one or more destination line cards and a switching fabric coupled to the source line cards and the destination line cards to enable data communication between any so...
04/24/2012
8165121Fast computation of loop free alternate next hops
A network device includes a route selection module configured to select an alternate next hop to use in forwarding network traffic to a destination in the event a primary next hop becomes unavailable, wherein a path to the destination device associated with the alte...
04/24/2012
8164392Error-free startup of low phase noise oscillators
An isolation switch is used to isolate the output of an oscillator, during startup of the oscillator, from the circuitry that uses the periodic signal generated by the oscillator. In one implementation, a device may include an oscillator to generate a periodic signa...
04/24/2012
8161521Controlling network access by applying super security policies
A device may monitor a security policy that governs a user access to a zone in a private network, propagate a change in status of the security policy to one or more devices that coordinate with each other to implement a super policy, detect whether conditions for tr...
04/17/2012
8161012File integrity verification using a verified, image-based file system
In general, the invention is directed to techniques for verifying the integrity of a file system and individually verifying files contained therein based on the integrity of the file system. For example, a computer-based device is described in which a computer-reada...
04/17/2012
8160085System and method for dynamically allocating buffers based on priority levels
Methods and systems consistent with the present invention provide dynamic buffer allocation to a plurality of queues of differing priority levels. Each queue is allocated fixed minimum number of buffers that will not be de-allocated during buffer reassignment. The r...
04/17/2012
8160076Auto-discovery of multicast virtual private networks
Principles of the invention are described for providing multicast virtual private networks (MVPNs) across a public network that are capable of carrying high-bandwidth multicast traffic with increased scalability. In particular, the MVPNs may transport layer three (L...
04/17/2012
8156213Merging network device configuration schemas
Techniques are described for merging device schemas to manage different versions of network devices in the same device family. In one example, a computing device includes an interface to receive a first schema to be used for managing a first version of a device in a...
04/10/2012
8156199Centralized control of client-side domain name resolution using VPN services
Techniques for centrally controlling client-side domain name resolution are described. A virtual private network (VPN) client installed on a client device may establish a VPN connection to a load-balancing server that balances load from client devices among a set of...
04/10/2012
8155150Cooperative MAC learning/aging in highly distributed forwarding system
A method may be performed by a device in a network, the device including multiple security process units (SPUs). The method includes receiving a packet over the network, the packet including a media access control (MAC) address, and assigning one SPU as the MAC addr...
04/10/2012
8154996Methods and apparatus for flow control associated with multi-staged queues
In one embodiment, a method, comprising receiving at a receive side of a physical link a request to suspend transmission of data from a queue within a transmit side of a first stage of queues and to suspend transmission via a path including the physical link, a port...
04/10/2012
8154994Header conversion technique
A header conversion device allowing reduced amount of hardware and memory and high-speed line switching is disclosed. In an ATM switching device having redundant incoming line systems, a header conversion table stores a set of header conversion information for one o...
04/10/2012
8151000Transparently providing layer two (L2) services across intermediate computer networks
A device provides layer two (L2) services between customer networks that are coupled by one or more intermediate computer networks. The device comprises a routing process that receives label information for a label switched path (LSP) through the intermediate networ...
04/03/2012
8150977Resource scheduler within a network device
A network device is described in which a dedicated resource scheduler monitors memory consumption to provide for improved processing of communication sessions. The scheduler maintains a dependency list of communication sessions, and reserves memory for communication...
04/03/2012
8150976Secure communications in a system having multi-homed devices
This disclosure relates to a secure network device for multi-homed devices. An example network device includes a state table, an association establishment module, and an inspection module. The state table is configured to store information for communication associat...
04/03/2012
8149976Precise frequency estimation of short data bursts
The invention performs frequency estimation over both the burst preamble, during which known symbols are transmitted, and also during the burst's data packet, which is subsequent to the preamble and extracted by the local detector. During the preamble, an initial fr...
04/03/2012
8149970Multiple input, multiple output channel, digital receiver tuner
The present invention teaches a compact and highly integrated multiple-channel digital tuner and receiver architecture, suitable for widespread field deployment, wherein each receiver demodulator channel may be remotely, automatically, dynamically, and economically ...
04/03/2012
8149730Methods and apparatus related to packet generation and analysis
In one embodiment, an apparatus includes a packet generation module that has a set of general purpose processing modules and is configured to define a test packet configured to emulate at least a portion of network traffic. The apparatus also includes a switch devic...
04/03/2012
8149691Push-based hierarchical state propagation within a multi-chassis network device
A multi-chassis network device sends state information to internal consumers within the multi-chassis device via a hierarchical distribution. As one example, a primary master routing engine within a control node of a multi-chassis router forwards state information t...
04/03/2012
8146147Combined firewalls
A method of providing a firewall to protect a set of virtual machines on a host node that is one of multiple host nodes that host virtual machines. The method stores a table of allowed connections for each virtual machine on the host node. Upon a particular virtual ...
03/27/2012
1                      
 
Sign InRegister
Username  
Password   
forgot password?