WO1998026552B1 - Method and apparatus for access control in a distributed multiserver network environment - Google Patents
Method and apparatus for access control in a distributed multiserver network environmentInfo
- Publication number
- WO1998026552B1 WO1998026552B1 PCT/US1997/022116 US9722116W WO9826552B1 WO 1998026552 B1 WO1998026552 B1 WO 1998026552B1 US 9722116 W US9722116 W US 9722116W WO 9826552 B1 WO9826552 B1 WO 9826552B1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- network
- filtering
- cause
- computer system
- portion configured
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Abstract
The present invention includes a method and apparatus for providing access control to services within a computer network. More specifically, the present invention includes a services management system, or SMS. The SMS manages network connections between a series of client systems and a router. An access network control server (ANCS) manages the configuration of the router. For each network user, the SMS maintains a profile of filtering rules. When the user accesses the network, the SMS downloads the user's filtering profiles to the ANCS. The ANCS then uses the downloaded filtering profiles to reconfigure the router. The router then uses the filtering rules to selectively forward IP packets originating from the user's host system and directed at the network services.
Claims
WO 98/26552 AMENDED CLAIMS PCT/US97/22116
[received by the International Bureau on 15 June 1998 (15.06.98); original claim 18 amended; remaining claims unchanged (1 page)] a filtering profile for each service, each filtering profile including one or more filtering rules, a first portion configured to cause a computer system to establish the identity of a network user that is using a host client system, a second portion configured to cause a computer system to select one of more filtering profiles in accordance with the identity of the network user, and a third portion configured to cause a computer system to establish a packet filter in the computer network, the packet filter using the filtering rules included in the selected profiles to selectively forward packets originating at the host client system and directed at one or more of the services included in the network.
16. An apparatus as recited in claim 15 wherein the computer network includes a router and wherein the third portion includes a fourth portion configured to cause a computer system to reconfigure the router to selectively forward packets originating at the host client system in accordance with the filtering rules included in the selected profiles.
17. An apparatus as recited in claim 15 wherein the host client system is connected to the network using a cable modem and wherein the third portion includes a fourth portion configured to cause a computer system to reconfigure the cable modem to selectively forward packets originating at the host client system in accordance with the filtering rules included in the selected profiles.
18. An apparatus as recited in claim 15 wherein the second portion includes a fifth portion configured to cause a computer system to select the filtering profiles from a database.
STATEMENT UNDER ARTICLE 19
The above amendment to claim 18 is being submitted in accordance with the Patent Cooperation Treaty Article 19.
The claim has been amended primarily to correct a typographical error and to more accurately define the invention. The above-described amendment includes the amendment made to the related U.S. case which is pending.
The above-described amendment does not go beyond the disclosure of the international application as filed, and entry of this amendment is respectfully requested. A replacement sheet effecting the above-described amendment is being transmitted herewith.
16
Priority Applications (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| DE69735311T DE69735311D1 (en) | 1996-12-09 | 1997-12-06 | METHOD AND DEVICE FOR ACCESS CONTROL IN A DISTRIBUTED NETWORK ENVIRONMENT |
| EP97951533A EP0943199B1 (en) | 1996-12-09 | 1997-12-06 | Method and apparatus for access control in a distributed multiserver network environment |
| JP52679498A JP2001510603A (en) | 1996-12-09 | 1997-12-06 | Access control method and apparatus in distributed multi-server network environment |
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US08/762,393 | 1996-12-09 | ||
| US08/762,393 US5835727A (en) | 1996-12-09 | 1996-12-09 | Method and apparatus for controlling access to services within a computer network |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| WO1998026552A1 WO1998026552A1 (en) | 1998-06-18 |
| WO1998026552B1 true WO1998026552B1 (en) | 1998-07-30 |
Family
ID=25064911
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/US1997/022116 Ceased WO1998026552A1 (en) | 1996-12-09 | 1997-12-06 | Method and apparatus for access control in a distributed multiserver network environment |
Country Status (5)
| Country | Link |
|---|---|
| US (1) | US5835727A (en) |
| EP (1) | EP0943199B1 (en) |
| JP (1) | JP2001510603A (en) |
| DE (1) | DE69735311D1 (en) |
| WO (1) | WO1998026552A1 (en) |
Families Citing this family (218)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| SE9603801L (en) * | 1996-10-16 | 1998-04-17 | Ericsson Telefon Ab L M | System of communicating devices and a procedure in the system |
| CN1263267C (en) | 1997-03-12 | 2006-07-05 | 诺马蒂克斯股份有限公司 | Nomadic translator or router |
| US6272631B1 (en) * | 1997-06-30 | 2001-08-07 | Microsoft Corporation | Protected storage of core data secrets |
| US6286039B1 (en) | 1997-08-28 | 2001-09-04 | Cisco Technology, Inc. | Automatic static to dynamic IP address and DNS address management for remote communications network access |
| US6460084B1 (en) | 1997-08-28 | 2002-10-01 | Cisco Technology, Inc. | Forced network portal |
| US7043537B1 (en) | 1997-09-05 | 2006-05-09 | Cisco Technology, Inc | System and method for remote device management |
| JPH1196099A (en) * | 1997-09-19 | 1999-04-09 | Hitachi Ltd | Service providing system |
| US6938089B1 (en) * | 1997-10-16 | 2005-08-30 | Virtual Access Technology Limited | Apparatus and method for controlling access to a service over a communications system |
| US6065061A (en) * | 1997-12-16 | 2000-05-16 | Lucent Technologies Inc. | Internet protocol based network architecture for cable television access with switched fallback |
| US6240464B1 (en) | 1998-02-04 | 2001-05-29 | 3Com Corporation | Method and system for managing addresses for network host interfaces in a data-over-cable system |
| US6185624B1 (en) | 1998-02-04 | 2001-02-06 | 3Com Corporation | Method and system for cable modem management of a data-over-cable system |
| US6170061B1 (en) | 1998-02-04 | 2001-01-02 | 3Com Corporation | Method and system for secure cable modem registration |
| US6289013B1 (en) * | 1998-02-09 | 2001-09-11 | Lucent Technologies, Inc. | Packet filter method and apparatus employing reduced memory |
| US7411916B2 (en) * | 1998-02-26 | 2008-08-12 | Nortel Networks Limited | Data forwarding method and apparatus |
| DE69928504T2 (en) * | 1998-03-13 | 2006-07-27 | Schlumberger Omnes, Inc., Houston | Providing secure access to network services |
| US6205498B1 (en) | 1998-04-01 | 2001-03-20 | Microsoft Corporation | Method and system for message transfer session management |
| US6529932B1 (en) | 1998-04-01 | 2003-03-04 | Microsoft Corporation | Method and system for distributed transaction processing with asynchronous message delivery |
| US6446206B1 (en) | 1998-04-01 | 2002-09-03 | Microsoft Corporation | Method and system for access control of a message queue |
| US6678726B1 (en) * | 1998-04-02 | 2004-01-13 | Microsoft Corporation | Method and apparatus for automatically determining topology information for a computer within a message queuing network |
| US6370147B1 (en) | 1998-04-23 | 2002-04-09 | 3Com Corporation | Method for addressing of passive network hosts in a data-over-cable system |
| US6370141B1 (en) | 1998-04-29 | 2002-04-09 | Cisco Technology, Inc. | Method and apparatus for configuring an internet appliance |
| US6779118B1 (en) * | 1998-05-04 | 2004-08-17 | Auriq Systems, Inc. | User specific automatic data redirection system |
| US6105063A (en) * | 1998-05-05 | 2000-08-15 | International Business Machines Corp. | Client-server system for maintaining application preferences in a hierarchical data structure according to user and user group or terminal and terminal group contexts |
| US6141687A (en) * | 1998-05-08 | 2000-10-31 | Cisco Technology, Inc. | Using an authentication server to obtain dial-out information on a network |
| US6636485B1 (en) | 1998-05-14 | 2003-10-21 | 3Com Corporation | Method and system for providing quality-of-service in a data-over-cable system |
| US6223222B1 (en) | 1998-05-14 | 2001-04-24 | 3Com Corporation | Method and system for providing quality-of-service in a data-over-cable system using configuration protocol messaging |
| US6275853B1 (en) | 1998-05-27 | 2001-08-14 | 3Com Corporation | System and method for extending communications features using generic management information base objects |
| US6510162B1 (en) * | 1998-05-27 | 2003-01-21 | 3Com Corporation | System and method for managing channel usage in a data over cable system |
| US6295554B1 (en) | 1998-05-27 | 2001-09-25 | 3Com Corporation | System and method for communicating with a telco-return cable modem as a single communications device |
| US6560203B1 (en) | 1998-05-27 | 2003-05-06 | 3Com Corporation | Method for changing type-of-service in a data-over-cable system |
| US6442158B1 (en) | 1998-05-27 | 2002-08-27 | 3Com Corporation | Method and system for quality-of-service based data forwarding in a data-over-cable system |
| US6189102B1 (en) | 1998-05-27 | 2001-02-13 | 3Com Corporation | Method for authentication of network devices in a data-over cable system |
| US6331987B1 (en) | 1998-05-27 | 2001-12-18 | 3Com Corporation | Method and system for bundling data in a data-over-cable system |
| US6775276B1 (en) | 1998-05-27 | 2004-08-10 | 3Com Corporation | Method and system for seamless address allocation in a data-over-cable system |
| US6407985B1 (en) * | 1998-06-29 | 2002-06-18 | Cisco Technology, Inc. | Load sharing over blocked links |
| US6275912B1 (en) | 1998-06-30 | 2001-08-14 | Microsoft Corporation | Method and system for storing data items to a storage device |
| US6202089B1 (en) | 1998-06-30 | 2001-03-13 | Microsoft Corporation | Method for configuring at runtime, identifying and using a plurality of remote procedure call endpoints on a single server process |
| US6256634B1 (en) | 1998-06-30 | 2001-07-03 | Microsoft Corporation | Method and system for purging tombstones for deleted data items in a replicated database |
| US6848108B1 (en) | 1998-06-30 | 2005-01-25 | Microsoft Corporation | Method and apparatus for creating, sending, and using self-descriptive objects as messages over a message queuing network |
| US6966004B1 (en) | 1998-08-03 | 2005-11-15 | Cisco Technology, Inc. | Method for providing single step log-on access to a differentiated computer network |
| US6311275B1 (en) | 1998-08-03 | 2001-10-30 | Cisco Technology, Inc. | Method for providing single step log-on access to a differentiated computer network |
| US6615358B1 (en) | 1998-08-07 | 2003-09-02 | Patrick W. Dowd | Firewall for processing connection-oriented and connectionless datagrams over a connection-oriented network |
| US7073196B1 (en) | 1998-08-07 | 2006-07-04 | The United States Of America As Represented By The National Security Agency | Firewall for processing a connectionless network packet |
| US6502192B1 (en) | 1998-09-03 | 2002-12-31 | Cisco Technology, Inc. | Security between client and server in a computer network |
| US6892229B1 (en) | 1998-09-30 | 2005-05-10 | 3Com Corporation | System and method for assigning dynamic host configuration protocol parameters in devices using resident network interfaces |
| US6212563B1 (en) | 1998-10-01 | 2001-04-03 | 3Com Corporation | Method and system for setting and managing externally provided internet protocol addresses using the dynamic host configuration protocol |
| US6212561B1 (en) | 1998-10-08 | 2001-04-03 | Cisco Technology, Inc. | Forced sequential access to specified domains in a computer network |
| US6243749B1 (en) | 1998-10-08 | 2001-06-05 | Cisco Technology, Inc. | Dynamic network address updating |
| US6263369B1 (en) | 1998-10-30 | 2001-07-17 | Cisco Technology, Inc. | Distributed architecture allowing local user authentication and authorization |
| US6385653B1 (en) | 1998-11-02 | 2002-05-07 | Cisco Technology, Inc. | Responding to network access requests using a transparent media access and uniform delivery of service |
| US6490289B1 (en) | 1998-11-03 | 2002-12-03 | Cisco Technology, Inc. | Multiple network connections from a single PPP link with network address translation |
| US6427174B1 (en) | 1998-11-12 | 2002-07-30 | Cisco Technology, Inc. | Dynamic IP addressing and quality of service assurance |
| US7165122B1 (en) | 1998-11-12 | 2007-01-16 | Cisco Technology, Inc. | Dynamic IP addressing and quality of service assurance |
| US6539431B1 (en) | 1998-11-12 | 2003-03-25 | Cisco Technology, Inc. | Support IP pool-based configuration |
| US7165117B1 (en) | 1998-11-12 | 2007-01-16 | Cisco Technology, Inc. | Dynamic IP addressing and quality of service assurance |
| US6253327B1 (en) | 1998-12-02 | 2001-06-26 | Cisco Technology, Inc. | Single step network logon based on point to point protocol |
| US6442165B1 (en) * | 1998-12-02 | 2002-08-27 | Cisco Technology, Inc. | Load balancing between service component instances |
| US6396833B1 (en) | 1998-12-02 | 2002-05-28 | Cisco Technology, Inc. | Per user and network routing tables |
| US7616640B1 (en) | 1998-12-02 | 2009-11-10 | Cisco Technology, Inc. | Load balancing between service component instances |
| US8266266B2 (en) | 1998-12-08 | 2012-09-11 | Nomadix, Inc. | Systems and methods for providing dynamic network authorization, authentication and accounting |
| US7194554B1 (en) | 1998-12-08 | 2007-03-20 | Nomadix, Inc. | Systems and methods for providing dynamic network authorization authentication and accounting |
| US8713641B1 (en) | 1998-12-08 | 2014-04-29 | Nomadix, Inc. | Systems and methods for authorizing, authenticating and accounting users having transparent computer access to a network using a gateway device |
| US6662135B1 (en) | 1998-12-09 | 2003-12-09 | 3Com Corporation | Method and apparatus for reflective mixer testing of a cable modem |
| US7370102B1 (en) | 1998-12-15 | 2008-05-06 | Cisco Technology, Inc. | Managing recovery of service components and notification of service errors and failures |
| US6718376B1 (en) | 1998-12-15 | 2004-04-06 | Cisco Technology, Inc. | Managing recovery of service components and notification of service errors and failures |
| US6917617B2 (en) * | 1998-12-16 | 2005-07-12 | Cisco Technology, Inc. | Use of precedence bits for quality of service |
| US6643260B1 (en) | 1998-12-18 | 2003-11-04 | Cisco Technology, Inc. | Method and apparatus for implementing a quality of service policy in a data communications network |
| US6657991B1 (en) | 1998-12-21 | 2003-12-02 | 3Com Corporation | Method and system for provisioning network addresses in a data-over-cable system |
| US6986157B1 (en) | 1998-12-21 | 2006-01-10 | 3Com Corporation | Method and system for dynamic service registration in a data-over-cable system |
| US6351773B1 (en) | 1998-12-21 | 2002-02-26 | 3Com Corporation | Methods for restricting access of network devices to subscription services in a data-over-cable system |
| US6490290B1 (en) | 1998-12-30 | 2002-12-03 | Cisco Technology, Inc. | Default internet traffic and transparent passthrough |
| US6298383B1 (en) | 1999-01-04 | 2001-10-02 | Cisco Technology, Inc. | Integration of authentication authorization and accounting service and proxy service |
| US6871224B1 (en) | 1999-01-04 | 2005-03-22 | Cisco Technology, Inc. | Facility to transmit network management data to an umbrella management system |
| US6654801B2 (en) | 1999-01-04 | 2003-11-25 | Cisco Technology, Inc. | Remote system administration and seamless service integration of a data communication network management system |
| US6577642B1 (en) | 1999-01-15 | 2003-06-10 | 3Com Corporation | Method and system for virtual network administration with a data-over cable system |
| US6738377B1 (en) | 1999-01-29 | 2004-05-18 | International Business Machines Corporation | System and method for dynamic micro placement of IP connection filters |
| US6587468B1 (en) | 1999-02-10 | 2003-07-01 | Cisco Technology, Inc. | Reply to sender DHCP option |
| US7099338B1 (en) | 1999-02-27 | 2006-08-29 | 3Com Corporation | System and method for insuring dynamic host configuration protocol operation by a host connected to a data network |
| AU4181400A (en) * | 1999-03-29 | 2000-10-16 | Quark Media House Sarl | Dynamic application systems and processes for distributed computer environment |
| FR2793048A1 (en) * | 1999-04-29 | 2000-11-03 | Schlumberger Systems & Service | METHOD OF MANAGING CONTROLS IN SEVERAL APPLICATION FILES AND CHIP CARD FOR IMPLEMENTING THE METHOD |
| US7644439B2 (en) * | 1999-05-03 | 2010-01-05 | Cisco Technology, Inc. | Timing attacks against user logon and network I/O |
| US6466977B1 (en) | 1999-05-06 | 2002-10-15 | Cisco Technology, Inc. | Proxy on demand |
| US6430619B1 (en) | 1999-05-06 | 2002-08-06 | Cisco Technology, Inc. | Virtual private data network session count limitation |
| US6529955B1 (en) | 1999-05-06 | 2003-03-04 | Cisco Technology, Inc. | Proxy session count limitation |
| US6668283B1 (en) | 1999-05-21 | 2003-12-23 | Cisco Technology, Inc. | ISDN B-channel count limitation |
| WO2000072574A2 (en) * | 1999-05-21 | 2000-11-30 | Quokka Sports, Inc. | An architecture for controlling the flow and transformation of multimedia data |
| US6697862B1 (en) | 1999-05-21 | 2004-02-24 | 3Com Corporation | System and method for network address maintenance using dynamic host configuration protocol messages in a data-over-cable system |
| US6654387B1 (en) | 1999-05-21 | 2003-11-25 | 3Com Corporation | Method for network address table maintenance in a data-over-cable system using a network device registration procedure |
| US6611868B1 (en) | 1999-05-21 | 2003-08-26 | 3Com Corporation | Method and system for automatic link hang up |
| US6754622B1 (en) | 1999-05-24 | 2004-06-22 | 3Com Corporation | Method for network address table maintenance in a data-over-cable system using destination reachibility |
| US6985437B1 (en) | 1999-05-25 | 2006-01-10 | 3Com Corporation | Method for dynamic performance optimization in a data-over-cable system |
| US6785292B1 (en) | 1999-05-28 | 2004-08-31 | 3Com Corporation | Method for detecting radio frequency impairments in a data-over-cable system |
| US6591304B1 (en) | 1999-06-21 | 2003-07-08 | Cisco Technology, Inc. | Dynamic, scaleable attribute filtering in a multi-protocol compatible network access environment |
| US6865594B1 (en) | 1999-07-20 | 2005-03-08 | Sun Microsystems, Inc. | Methods and apparatus for automatically generating a routing table in a messaging server |
| US7058683B1 (en) | 1999-07-20 | 2006-06-06 | Sun Microsystems, Inc. | Methods and apparatus for providing a virtual host in electronic messaging servers |
| US6374292B1 (en) * | 1999-07-20 | 2002-04-16 | Sun Microsystems, Inc. | Access control system for an ISP hosted shared email server |
| AU7443500A (en) * | 1999-09-24 | 2001-04-24 | Comverse Network Systems, Ltd. | System and method for presorting rules for filtering packets on a network |
| US6553568B1 (en) | 1999-09-29 | 2003-04-22 | 3Com Corporation | Methods and systems for service level agreement enforcement on a data-over cable system |
| US7043553B2 (en) * | 1999-10-07 | 2006-05-09 | Cisco Technology, Inc. | Method and apparatus for securing information access |
| US6742126B1 (en) | 1999-10-07 | 2004-05-25 | Cisco Technology, Inc. | Method and apparatus for identifying a data communications session |
| US6467049B1 (en) | 1999-10-15 | 2002-10-15 | Cisco Technology, Inc. | Method and apparatus for configuration in multi processing engine computer systems |
| US6918044B1 (en) | 1999-10-15 | 2005-07-12 | Cisco Technology, Inc. | Password protection for high reliability computer systems |
| EP1222765A2 (en) * | 1999-10-15 | 2002-07-17 | Thomson Licensing S.A. | Secure internet compatible bi-directional communication system and user interface |
| AU1224101A (en) | 1999-10-22 | 2001-05-08 | Nomadix, Inc. | Gateway device having an xml interface and associated method |
| US6718467B1 (en) | 1999-10-28 | 2004-04-06 | Cisco Technology, Inc. | Password based protocol for secure communications |
| US7308700B1 (en) * | 1999-12-15 | 2007-12-11 | Stmicroelectronics, Inc. | Network station management system and method |
| US6798746B1 (en) | 1999-12-18 | 2004-09-28 | Cisco Technology, Inc. | Method and apparatus for implementing a quality of service policy in a data communications network |
| DE19961399C2 (en) * | 1999-12-20 | 2002-08-22 | Mueschenborn Hans Joachim | Protection of security-critical data in networks |
| US6674743B1 (en) | 1999-12-30 | 2004-01-06 | 3Com Corporation | Method and apparatus for providing policy-based services for internal applications |
| US6895434B1 (en) * | 2000-01-03 | 2005-05-17 | Cisco Technology, Inc. | Sharing of NAS information between PoPs |
| US20020023164A1 (en) * | 2000-01-28 | 2002-02-21 | Lahr Nils B. | Method and apparatus for client-side authentication and stream selection in a content distribution system |
| US6928467B2 (en) * | 2000-02-02 | 2005-08-09 | Inno Path Software, Inc. | Apparatus and methods for providing data synchronization by facilitating data synchronization system design |
| US6816944B2 (en) | 2000-02-02 | 2004-11-09 | Innopath Software | Apparatus and methods for providing coordinated and personalized application and data management for resource-limited mobile devices |
| US6643694B1 (en) | 2000-02-09 | 2003-11-04 | Michael A. Chernin | System and method for integrating a proxy server, an e-mail server, and a DHCP server, with a graphic interface |
| US6496935B1 (en) * | 2000-03-02 | 2002-12-17 | Check Point Software Technologies Ltd | System, device and method for rapid packet filtering and processing |
| US7089580B1 (en) | 2000-03-29 | 2006-08-08 | 3Com Corporation | Method for improved cable modem ranging in a data-over-cable system |
| US6804262B1 (en) | 2000-04-28 | 2004-10-12 | 3Com Corporation | Method and apparatus for channel determination through power measurements |
| US6769023B1 (en) | 2000-05-31 | 2004-07-27 | International Business Machines Corporation | Facility for managing a service connection between a client process having a single threaded library and a server process |
| US6944881B1 (en) | 2000-06-19 | 2005-09-13 | 3Com Corporation | Method for using an initial maintenance opportunity for non-contention ranging |
| US7313608B1 (en) * | 2000-06-21 | 2007-12-25 | Nortel Networks Limited | Method and apparatus for using documents written in a markup language to access and configure network elements |
| US6832239B1 (en) | 2000-07-07 | 2004-12-14 | International Business Machines Corporation | Systems for managing network resources |
| US6816500B1 (en) | 2000-07-10 | 2004-11-09 | 3Com Corporation | Apparatus, method and system for multimedia access network channel management |
| US6771665B1 (en) | 2000-08-31 | 2004-08-03 | Cisco Technology, Inc. | Matching of RADIUS request and response packets during high traffic volume |
| US7411981B1 (en) | 2000-08-31 | 2008-08-12 | Cisco Technology, Inc. | Matching of radius request and response packets during high traffic volume |
| US7840691B1 (en) | 2000-09-07 | 2010-11-23 | Zamora Radio, Llc | Personal broadcast server system for providing a customized broadcast |
| US6807576B1 (en) | 2000-09-08 | 2004-10-19 | International Business Machines Corporation | Method and system for determining and graphically representing frame classification rule relationships |
| US7107326B1 (en) | 2000-10-13 | 2006-09-12 | 3Com Corporation | Method and system for integrating IP address reservations with policy provisioning |
| US7068597B1 (en) * | 2000-11-27 | 2006-06-27 | 3Com Corporation | System and method for automatic load balancing in a data-over-cable network |
| US8185615B1 (en) | 2000-11-28 | 2012-05-22 | Verizon Business Global Llc | Message, control and reporting interface for a distributed network access system |
| US7657628B1 (en) | 2000-11-28 | 2010-02-02 | Verizon Business Global Llc | External processor for a distributed network access system |
| US7046680B1 (en) * | 2000-11-28 | 2006-05-16 | Mci, Inc. | Network access system including a programmable access device having distributed service control |
| US8180870B1 (en) * | 2000-11-28 | 2012-05-15 | Verizon Business Global Llc | Programmable access device for a distributed network access system |
| US6940874B2 (en) | 2000-11-30 | 2005-09-06 | 3Com Corporation | Method for reducing interference from initializing network devices in a data-over-cable system |
| US6948184B1 (en) | 2000-11-30 | 2005-09-20 | 3Com Corporation | System and method for calibrating power level during initial ranging of a network client device |
| US7047563B1 (en) | 2000-12-07 | 2006-05-16 | Cisco Technology, Inc. | Command authorization via RADIUS |
| US7389354B1 (en) | 2000-12-11 | 2008-06-17 | Cisco Technology, Inc. | Preventing HTTP server attacks |
| US6985935B1 (en) | 2000-12-20 | 2006-01-10 | Cisco Technology, Inc. | Method and system for providing network access to PPP clients |
| US20020107953A1 (en) * | 2001-01-16 | 2002-08-08 | Mark Ontiveros | Method and device for monitoring data traffic and preventing unauthorized access to a network |
| US6988148B1 (en) | 2001-01-19 | 2006-01-17 | Cisco Technology, Inc. | IP pool management utilizing an IP pool MIB |
| US6952428B1 (en) | 2001-01-26 | 2005-10-04 | 3Com Corporation | System and method for a specialized dynamic host configuration protocol proxy in a data-over-cable network |
| US7073055B1 (en) | 2001-02-22 | 2006-07-04 | 3Com Corporation | System and method for providing distributed and dynamic network services for remote access server users |
| US20020120484A1 (en) * | 2001-02-23 | 2002-08-29 | International Business Machines Corporation | Method and system for providing intelligent rules-based engine with heuristics for determining optimal routing and processing of business events |
| US7222255B1 (en) | 2001-02-28 | 2007-05-22 | 3Com Corporation | System and method for network performance testing |
| US20020129276A1 (en) * | 2001-03-08 | 2002-09-12 | Watts Michael P.C. | Dual network with distributed firewall for network security |
| US20040139204A1 (en) * | 2001-04-23 | 2004-07-15 | Siegried Ergezinger | Architecture for providing services in the internet |
| US7962482B2 (en) | 2001-05-16 | 2011-06-14 | Pandora Media, Inc. | Methods and systems for utilizing contextual feedback to generate and modify playlists |
| US6987735B2 (en) * | 2001-05-24 | 2006-01-17 | International Business Machines Corporation | System and method for enhancing the availability of routing systems through equal cost multipath |
| US7197549B1 (en) | 2001-06-04 | 2007-03-27 | Cisco Technology, Inc. | On-demand address pools |
| US7788345B1 (en) | 2001-06-04 | 2010-08-31 | Cisco Technology, Inc. | Resource allocation and reclamation for on-demand address pools |
| US6947983B2 (en) * | 2001-06-22 | 2005-09-20 | International Business Machines Corporation | Method and system for exploiting likelihood in filter rule enforcement |
| US7845004B2 (en) * | 2001-07-27 | 2010-11-30 | International Business Machines Corporation | Correlating network information and intrusion information to find the entry point of an attack upon a protected computer |
| US7209962B2 (en) * | 2001-07-30 | 2007-04-24 | International Business Machines Corporation | System and method for IP packet filtering based on non-IP packet traffic attributes |
| US7088678B1 (en) | 2001-08-27 | 2006-08-08 | 3Com Corporation | System and method for traffic shaping based on generalized congestion and flow control |
| US7146402B2 (en) * | 2001-08-31 | 2006-12-05 | Sendmail, Inc. | E-mail system providing filtering methodology on a per-domain basis |
| ATE477540T1 (en) * | 2001-09-14 | 2010-08-15 | Nokia Inc | APPARATUS AND METHOD FOR PACKET FORWARDING |
| US7085306B1 (en) | 2001-10-30 | 2006-08-01 | 3Com Corporation | System and method for a multi-frequency upstream channel in a computer network |
| US7672249B2 (en) | 2001-12-13 | 2010-03-02 | Cisco Technology, Inc. | Configurable network appliance |
| US7953087B1 (en) * | 2001-12-28 | 2011-05-31 | The Directv Group, Inc. | Content filtering using static source routes |
| US7072337B1 (en) | 2002-01-25 | 2006-07-04 | 3Com Corporation | System and method for resolving network addresses for network devices on distributed network subnets |
| KR100527794B1 (en) * | 2002-02-26 | 2005-11-09 | (주)넷피아닷컴 | system for interceptting an acces of a network and method thereof |
| US20030191845A1 (en) * | 2002-04-03 | 2003-10-09 | Hinds John Sherman | Method, apparatus and system for establishing communications between communications devices |
| US7443865B1 (en) | 2002-04-04 | 2008-10-28 | Cisco Technology, Inc. | Multiple network connections from a single PPP link with network address translation |
| WO2003088611A1 (en) * | 2002-04-12 | 2003-10-23 | Siemens Aktiengesellschaft | Representation of boolean expressions for specifying filters using xml |
| US7386632B1 (en) | 2002-06-07 | 2008-06-10 | Cisco Technology, Inc. | Dynamic IP addressing and quality of service assurance |
| US20040003069A1 (en) * | 2002-06-28 | 2004-01-01 | Broadcom Corporation | Selective early drop method and system |
| US6917946B2 (en) * | 2002-08-12 | 2005-07-12 | International Business Machines Corporation | Method and system for partitioning filter rules for multi-search enforcement |
| US8117639B2 (en) * | 2002-10-10 | 2012-02-14 | Rocksteady Technologies, Llc | System and method for providing access control |
| WO2004036371A2 (en) * | 2002-10-16 | 2004-04-29 | Rocksteady Networks, Inc. | System and method for dynamic bandwidth provisioning |
| GB0226573D0 (en) * | 2002-11-14 | 2002-12-18 | Hewlett Packard Co | Data delivery |
| US20040128545A1 (en) * | 2002-12-31 | 2004-07-01 | International Business Machines Corporation | Host controlled dynamic firewall system |
| US6961413B2 (en) | 2003-02-19 | 2005-11-01 | Sarakas Stephen T | Residential telephone system and method |
| US7490348B1 (en) | 2003-03-17 | 2009-02-10 | Harris Technology, Llc | Wireless network having multiple communication allowances |
| US20040193906A1 (en) * | 2003-03-24 | 2004-09-30 | Shual Dar | Network service security |
| US7624438B2 (en) | 2003-08-20 | 2009-11-24 | Eric White | System and method for providing a secure connection between networked computers |
| US7899918B1 (en) | 2003-10-10 | 2011-03-01 | Cisco Technology, Inc. | Service accounting in a network |
| US7853705B2 (en) * | 2003-11-06 | 2010-12-14 | Cisco Technology, Inc. | On demand session provisioning of IP flows |
| US7558864B2 (en) * | 2004-01-27 | 2009-07-07 | International Business Machines Corporation | Method, system and product for identifying, reserving, and logically provisioning resources in provisioning data processing systems |
| US8543710B2 (en) | 2004-03-10 | 2013-09-24 | Rpx Corporation | Method and system for controlling network access |
| US7610621B2 (en) | 2004-03-10 | 2009-10-27 | Eric White | System and method for behavior-based firewall modeling |
| US7665130B2 (en) * | 2004-03-10 | 2010-02-16 | Eric White | System and method for double-capture/double-redirect to a different location |
| JP4334379B2 (en) | 2004-03-12 | 2009-09-30 | 富士通株式会社 | Network system |
| WO2006003995A1 (en) * | 2004-07-06 | 2006-01-12 | Ntt Docomo, Inc. | Message transmission system and message transmission method |
| US20080062992A1 (en) * | 2004-07-06 | 2008-03-13 | Ntt Docomo, Inc. | Message Transfer System and Message Transfer Method |
| US7782878B2 (en) * | 2004-08-16 | 2010-08-24 | I2Telecom Ip Holdings, Inc. | System and method for sharing an IP address |
| US20060041935A1 (en) * | 2004-08-17 | 2006-02-23 | Conley James W | Methodology for configuring network firewall |
| US20060190990A1 (en) * | 2005-02-23 | 2006-08-24 | Shimon Gruper | Method and system for controlling access to a service provided through a network |
| US7437435B2 (en) * | 2005-10-31 | 2008-10-14 | Inventec Corporation | Automatically setting method and related system |
| US7761553B2 (en) * | 2005-11-29 | 2010-07-20 | Telefonaktiebolaget L M Ericsson (Publ) | Method and arrangement in an access system |
| US20070245414A1 (en) * | 2006-04-14 | 2007-10-18 | Microsoft Corporation | Proxy Authentication and Indirect Certificate Chaining |
| TW200746780A (en) * | 2006-06-09 | 2007-12-16 | Color City Entpr Co Ltd | Automatic Internet access apparatus and method for Internet phone |
| CN101102266B (en) * | 2006-07-03 | 2010-05-19 | 华为技术有限公司 | Routing method and system based on packet network |
| US7929552B2 (en) | 2006-10-26 | 2011-04-19 | At&T Intellectual Property I, L.P. | Automated IP pool management |
| US20080162284A1 (en) * | 2006-12-27 | 2008-07-03 | Clarus Marketing Group, Llc | System and method for conducting electronic commerce and providing incentives therein |
| WO2009008003A2 (en) * | 2007-07-10 | 2009-01-15 | Bhavin Turakhia | Method and system for restricting access of one or more users to a service |
| US20120117110A1 (en) | 2010-09-29 | 2012-05-10 | Eloy Technology, Llc | Dynamic location-based media collection aggregation |
| WO2014150567A1 (en) | 2013-03-15 | 2014-09-25 | Asguard Networks, Inc. | Industrial network security |
| US9294503B2 (en) | 2013-08-26 | 2016-03-22 | A10 Networks, Inc. | Health monitor based distributed denial of service attack mitigation |
| US9729580B2 (en) | 2014-07-30 | 2017-08-08 | Tempered Networks, Inc. | Performing actions via devices that establish a secure, private network |
| US9756071B1 (en) | 2014-09-16 | 2017-09-05 | A10 Networks, Inc. | DNS denial of service attack protection |
| US9537886B1 (en) | 2014-10-23 | 2017-01-03 | A10 Networks, Inc. | Flagging security threats in web service requests |
| US9584318B1 (en) | 2014-12-30 | 2017-02-28 | A10 Networks, Inc. | Perfect forward secrecy distributed denial of service attack defense |
| US9900343B1 (en) | 2015-01-05 | 2018-02-20 | A10 Networks, Inc. | Distributed denial of service cellular signaling |
| US9848013B1 (en) | 2015-02-05 | 2017-12-19 | A10 Networks, Inc. | Perfect forward secrecy distributed denial of service attack detection |
| US10063591B1 (en) | 2015-02-14 | 2018-08-28 | A10 Networks, Inc. | Implementing and optimizing secure socket layer intercept |
| US9300635B1 (en) | 2015-06-15 | 2016-03-29 | Tempered Networks, Inc. | Overlay network with position independent insertion and tap points |
| US10505984B2 (en) | 2015-12-08 | 2019-12-10 | A10 Networks, Inc. | Exchange of control information between secure socket layer gateways |
| US10469594B2 (en) | 2015-12-08 | 2019-11-05 | A10 Networks, Inc. | Implementation of secure socket layer intercept |
| US10116634B2 (en) | 2016-06-28 | 2018-10-30 | A10 Networks, Inc. | Intercepting secure session upon receipt of untrusted certificate |
| US9729581B1 (en) | 2016-07-01 | 2017-08-08 | Tempered Networks, Inc. | Horizontal switch scalability via load balancing |
| US10158666B2 (en) | 2016-07-26 | 2018-12-18 | A10 Networks, Inc. | Mitigating TCP SYN DDoS attacks using TCP reset |
| US10981051B2 (en) | 2017-12-19 | 2021-04-20 | Activision Publishing, Inc. | Synchronized, fully programmable game controllers |
| US10069726B1 (en) | 2018-03-16 | 2018-09-04 | Tempered Networks, Inc. | Overlay network identity-based relay |
| US10116539B1 (en) | 2018-05-23 | 2018-10-30 | Tempered Networks, Inc. | Multi-link network gateway with monitoring and dynamic failover |
| US10158545B1 (en) | 2018-05-31 | 2018-12-18 | Tempered Networks, Inc. | Monitoring overlay networks |
| US10911418B1 (en) | 2020-06-26 | 2021-02-02 | Tempered Networks, Inc. | Port level policy isolation in overlay networks |
| US11329956B2 (en) | 2020-07-28 | 2022-05-10 | Bank Of America Corporation | Scalable encryption framework using virtualization and adaptive sampling |
| US11070594B1 (en) | 2020-10-16 | 2021-07-20 | Tempered Networks, Inc. | Applying overlay network policy based on users |
| US10999154B1 (en) | 2020-10-23 | 2021-05-04 | Tempered Networks, Inc. | Relay node management for overlay networks |
Family Cites Families (9)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US5263157A (en) * | 1990-02-15 | 1993-11-16 | International Business Machines Corporation | Method and system for providing user access control within a distributed data processing system by the exchange of access control profiles |
| AU4661793A (en) * | 1992-07-02 | 1994-01-31 | Wellfleet Communications | Data packet processing method and apparatus |
| US5446736A (en) * | 1993-10-07 | 1995-08-29 | Ast Research, Inc. | Method and apparatus for connecting a node to a wireless network using a standard protocol |
| US5606668A (en) * | 1993-12-15 | 1997-02-25 | Checkpoint Software Technologies Ltd. | System for securing inbound and outbound data packet flow in a computer network |
| US5530703A (en) * | 1994-09-23 | 1996-06-25 | 3Com Corporation | Remote communication server with automatic filtering |
| US5541911A (en) * | 1994-10-12 | 1996-07-30 | 3Com Corporation | Remote smart filtering communication management system |
| JPH08116334A (en) * | 1994-10-14 | 1996-05-07 | Fujitsu Ltd | Monitoring / fault analysis method and device in network composed of a plurality of LANs |
| CA2137587C (en) * | 1994-12-08 | 1999-03-23 | Murray Charles Baker | Broadcast/multicast filtering by the bridge-based access point |
| US5648965A (en) * | 1995-07-07 | 1997-07-15 | Sun Microsystems, Inc. | Method and apparatus for dynamic distributed packet tracing and analysis |
-
1996
- 1996-12-09 US US08/762,393 patent/US5835727A/en not_active Expired - Lifetime
-
1997
- 1997-12-06 EP EP97951533A patent/EP0943199B1/en not_active Expired - Lifetime
- 1997-12-06 DE DE69735311T patent/DE69735311D1/en not_active Expired - Lifetime
- 1997-12-06 JP JP52679498A patent/JP2001510603A/en not_active Ceased
- 1997-12-06 WO PCT/US1997/022116 patent/WO1998026552A1/en not_active Ceased
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| WO1998026552B1 (en) | Method and apparatus for access control in a distributed multiserver network environment | |
| EP0943199B1 (en) | Method and apparatus for access control in a distributed multiserver network environment | |
| EP1076975B1 (en) | User specific automatic data redirection system | |
| US6442588B1 (en) | Method of administering a dynamic filtering firewall | |
| Nakamura et al. | Reliable broadcast protocol for selectively partially ordering PDUs (SPO protocol) | |
| WO2003026319A3 (en) | System and method for enabling mobile edge services | |
| AU2002317425A1 (en) | Optimized routing between communication networks | |
| MY134858A (en) | Wide area network system providing secure transmission | |
| EP0895374A3 (en) | Communication system for a computer network | |
| WO2004008178A3 (en) | System and method for providing partial presence notifications | |
| EP0874486A3 (en) | Information providing method which enables data communication costs to be reduced, and information providing system for implementing the method | |
| CA2210817A1 (en) | Client object api and gateway to enable oltp via the internet | |
| TWI265688B (en) | Method, system and apparatus for monitoring and controlling data transfer in communication networks | |
| EP0828367A3 (en) | A proxy server apparatus, a proxy server system, and a server apparatus | |
| WO2000046691A3 (en) | Order entry system for changing communication service | |
| MY129776A (en) | System and method for providing group communication services in an existing communication system | |
| WO2003049367A3 (en) | Method for making available features for alternative connections of primary connections | |
| AU4618099A (en) | Combining services in an internet-type network | |
| EP1265417A3 (en) | Device management system and method | |
| EP0921655A3 (en) | Multicast transmission method | |
| DE60201716T2 (en) | Method and apparatus for protecting e-commerce site against distributed denial-of-service attacks | |
| US20040158643A1 (en) | Network control method and equipment | |
| AU2001260926A1 (en) | Method and apparatus for intercepting packets in a packet-oriented network | |
| US20070156898A1 (en) | Method, apparatus and computer program for access control | |
| CA2487499A1 (en) | Method, means, and computer program product for controlling and/or restricting use of telecommunications connection |