"Inventing is a combination of brains and materials. The more brains you use, the less material you need."
Charles Kettering
Make the Most of Our Site
See this month's Top Inventors and Most Cited Patents.
Stay on top of the latest innovations by subscribing to an RSS feed.
Registered users: Manage your profile.
| Number | Title | Issue Date |
| 8185947 | System, method and apparatus for securely exchanging security keys and monitoring links in a IP communications network The present invention provides a system, method and apparatus for securely exchanging security keys and monitoring links in an IP communications network. The apparatus is disposed between the local device and the remote device and receives a security key associated ... | 05/22/2012 |
| 8181240 | Method and apparatus for preventing DOS attacks on trunk interfaces A method of protecting a data network from denial of service (DOS) attacks is described. The method may use various network tools to selectively block or disable portions of a data trunk experiencing a DOS attack, thereby preventing the DOS attack from reaching at l... | 05/15/2012 |
| 8171541 | Enabling provider network inter-working with mobile access Various example embodiments are disclosed herein. In an example embodiment, a method may comprise authenticating a subscriber based upon one or more messages received from a subscriber equipment, via an Access Network Gateway (ANG); sending an access authorization m... | 05/01/2012 |
| 8161543 | VLAN tunneling According to one embodiment of the invention, a method for establishing multiple tunnels for each virtual local area network is described. Upon receiving information over a first tunnel associated with a first virtual local area network, a determination is made whet... | 04/17/2012 |
| 8146148 | Tunneled security groups A method for providing security groups based on the use of tunneling is disclosed. The method includes assigning a security group identifier (SGI) to a packet and classifying the packet based on the packet's SGI. ... | 03/27/2012 |
| 8136151 | Systems and methods for remotely maintaining virtual private networks Systems and methods are disclosed for automatically configuring, managing, and maintaining a network device or VPN using a public network such as the Internet. Initial configuration of a network device or VPN occurs upon a user entering minimal information via a sim... | 03/13/2012 |
| 8136152 | Method and system for securely scanning network traffic A method and system for implementing secure network communications between a first device and a second device, at least one of the devices communicating with the other device via a firewall device, are provided. The method and system may include obtaining an encrypt... | 03/13/2012 |
| 8127349 | Point-to-multi-point/non-broadcasting multi-access VPN tunnels A system establishes a virtual private network (VPN) tunnel to a destination and determines a next hop for the VPN tunnel. The system inserts the next hop, and an address associated with the destination, into an entry of a first table. The system inserts the next ho... | 02/28/2012 |
| 8127350 | Multi-service VPN network client for mobile device An integrated, multi-service network client for cellular mobile devices is described. The multi-service network client can be deployed as a single software package on cellular mobile network devices to provide integrated services including secure enterprise virtual ... | 02/28/2012 |
| 8112797 | System and method to provide built-in and mobile VPN connectivity A system and method for facilitating the establishment of a virtual private network between a network and a remote computer, the system having: a mobile device connectable to the remote computer and storing a user profile, virtual private network information, and pa... | 02/07/2012 |
| 8104081 | IP security with seamless roaming and load balancing Described are a method and system for seamless roaming of a mobile node during a VPN session. A VPN session between the mobile node and a current VPN server in a network is established and synchronized with at least one fail-over VPN server in the network. An addres... | 01/24/2012 |
| 8104082 | Virtual security interface In some networking situations, securing an inner packet of a tunnel packet requires an intermediary networking device knowing a destination address of the secured inner packet. Consequently, an identity of a secured network is known to others and presents a security... | 01/24/2012 |
| 8091126 | Failure recognition A system and method for failure recognition is disclosed. The technology initially establishes a security association (SA) between a client and a first server on a network. In addition, an active reference count of a number of connections in the SA between the clien... | 01/03/2012 |
| 8074270 | Automatic configuration of network tunnels Techniques are described for establishing network tunnels that allow communication according to one or more routing protocols. The techniques allow for the automated configuration of a selector or other filter associated with the network tunnel. A network device, fo... | 12/06/2011 |
| 8024789 | Communication apparatus, program and method A communication apparatus comprises a storage unit for storing a first network list indicating plural networks; a receiving unit for receiving a second network list indicating plural networks from an outside by using a first authentication protocol; an operation uni... | 09/20/2011 |
| 8020203 | Techniques for high availability of virtual private networks (VPN's) Techniques for high availability of virtual private networks (VPN's) are provided. VPN gateways are organized as a virtual ring of VPN gateways. A client seeking to establish VPN communications with a destination resource is assigned one of the VPN gateways as a pri... | 09/13/2011 |
| 8011004 | Apparatus and method for VPN communication in socket-level Provided is an apparatus and method for virtual private network (VPN) communication in a socket level that can be applied in an Internet Protocol version 4(IPv4)/IPv6 complex network, and can process data in a socket level to make a VPN communication apparatus avail... | 08/30/2011 |
| 8006297 | Method and system for combined security protocol and packet filter offload and onload A network interface card (NIC) includes a security association database (SADB) comprising a plurality of security associations (SAs), a cryptographic offload engine configured to decrypt a packet using one of the plurality of SAs, a security policy database (SPD) co... | 08/23/2011 |
| 7992201 | Dynamic network tunnel endpoint selection Dynamically selecting an endpoint for a tunnel into an enterprise computing infrastructure. A client dynamically selects a gateway (which may alternatively be referred to as a boundary device or server) as a tunnel endpoint for connecting over a public network (or, ... | 08/02/2011 |
| 7987507 | Multipoint server for providing secure, scaleable connections between a plurality of network devices A method and system for implementing secure communications between a plurality of devices are provided. The method and system generally include the provision of at least one common encryption parameter to each of the plurality of devices, as well as an identificatio... | 07/26/2011 |
| 7987506 | Methods and systems for dynamically updating a routing table in a virtual private network A method, system, and computer program product for dynamically updating a routing table in a virtual private network including a concentrator with a routing table and one or more security associations is provided. A change is identified in the virtual private networ... | 07/26/2011 |
| 7984496 | Systems and methods for secure communication over a wireless network A method of secure communication between a wireless device and a target network is presented, comprising receiving a communication addressed to a target network, the communication comprising a data payload and originating from a wireless device on a trusted wireless... | 07/19/2011 |
| 7984495 | Method and an apparatus to identify security association of virtual private network tunnels A method and an apparatus to identify security association (SA) of virtual private network (VPN) tunnels are disclosed. In one embodiment, the method includes generating a free list having a first plurality of numbers, and randomizing the free list, wherein the firs... | 07/19/2011 |
| 7979901 | Controlling the number of internet protocol security (IPsec) security associations The invention provides a system and method for controlling the number of Internet Protocol Security (IPsec) security associations per Internet Key Exchange (IKE) security association for a single user. The limit on the number of security association (SA) tunnels per... | 07/12/2011 |
| 7975294 | VPN management A client attempts to transmit a presence state to a presence server that is behind a firewall of a secure network. If the client is inside the firewall, the presence server instructs resources within the secure network to directly communicate with the client. Howeve... | 07/05/2011 |
| 7954145 | Dynamically configuring a client for virtual private network (VPN) access Techniques for virtual private network (VPN) access are provided. A dynamic determination, in response to privileges, is made as to whether a principal and a device of a principal are to receive a thin client virtual private network (VPN) installation for a thin cli... | 05/31/2011 |
| 7954146 | Implicit population of access control lists Communication applications may include lists of users with which a user of the application communicates. If two users of a communications application each include the other user on their user lists, an implicit trust may be established between the users. For example... | 05/31/2011 |
| 7941843 | Mobile wireless communication system, mobile wireless terminal apparatus, virtual private network relay apparatus and connection authentication server Mobile wireless communication system 100 of the present invention has virtual private network relay apparatus 105 which establishes an IPsec tunnel with network relay apparatus 104 installed on private network 102 via public network 10... | 05/10/2011 |
| 7921458 | Packet routing method, computer system, and computer product A gateway receives from a file server a packet addressed to another gateway in the same alliance, and transfers the packet to the other gateway. The gateway transmits a packet to the file server via another gateway in the same alliance. Upon receiving a packet from ... | 04/05/2011 |
| 7917947 | Secured communication channel between IT administrators using network management software as the basis to manage networks A network management system is used to secure a communications channel between at least two clients. The network management system includes a network management server which includes network management software. The network management server is coupled to the client... | 03/29/2011 |
| 7917948 | Method and apparatus for dynamically securing voice and other delay-sensitive network traffic A method comprises receiving a request for secure network traffic from a device having a private network address at a source node, obtaining the private network address of a requested destination device at a destination node from a route server based on signaling in... | 03/29/2011 |
| 7900250 | Method of providing secure groups using a combination of group and pair-wise keying A key selection process is provided which secures traffic between VPN end-points using a combination of SVPN group keys and pair-wise keys. The type of key used is based on the dynamic needs of traffic between the end-points, where the needs may include throughput a... | 03/01/2011 |
| 7886354 | Method and apparatus for local area networks A mechanism for segregating traffic amongst STAs that are associated with a bridge, referred to herein as the personal virtual bridged local area network (personal VLAN), is based upon the use of a VLAN to segregate traffic. The IEEE 802.1Q-1998 (virtual bridged LAN... | 02/08/2011 |
| 7882558 | Tunnel designation system for virtual private networks A system and method are provided to couple tunnel servers to tunnel clients executing host applications for use in a virtual private network (VPN) environment. A receiver receives requests from host applications executing on the tunnel clients. The requests are addr... | 02/01/2011 |
| 7882557 | System and method to provide built-in and mobile VPN connectivity A system and method for facilitating the establishment of a virtual private network between a network and a remote computer, the system having: a mobile device connectable to the remote computer and storing a user profile, virtual private network information, and pa... | 02/01/2011 |
| 7870604 | Methods and apparatus to configure network nodes supporting virtual connections A computer system includes functionality enabling a provider edge router to determine whether network data such as VRF information is properly associated with a corresponding virtual private network. A first node through which the network data is transmitted generat... | 01/11/2011 |
| 7861292 | Method and apparatus for incrementally deploying ingress filtering on the Internet Ingress filtering has been adopted by the IETF as a methodology for preventing denial of service congestive attacks that spoof the source address in packets that are addressed to host server victims. Unless universally adopted by all ISPs on the Internet, however, a... | 12/28/2010 |
| 7849505 | System and method of selecting a virtual private network access server The present disclosure is directed to a system and method of selecting a virtual private network access server. In a particular embodiment, the method includes receiving a request from a client device to access a network resource via a virtual private network (VPN).... | 12/07/2010 |
| 7840996 | Remote directory browsing through a secure gateway of a virtual private network In general, techniques are described of enabling a client-based web browser application to browse a directory structure provided by a server on a private network via a secure gateway. In particular, an intermediate gateway device is positioned on a network path betw... | 11/23/2010 |
| 7836497 | Apparatus and method for resilient IP security/internet key exchange security gateway A method and apparatus adapting a Virtual Router Redundancy Protocol (VRRP) between a set of physical SEGs that realize a V-SEG function towards a remote IPsec/IKE peer. In tandem with the VRRP, a new protocol, referred to herein as the IPsec/IKE SA Transfer Protoco... | 11/16/2010 |