Patents by Inventor Shay Nahum

Shay Nahum has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 7733869
    Abstract: A method and apparatus for emulating VPLS within an ATM network. Provider Edge devices are configured for VPLS connections. For each pair of provider edge devices supporting the same VPLS ID, one device establishes a virtual circuit between the pair. Thus, a full mesh of virtual circuits is established between provider edge devices, and a VPLS-like service can be offered to users without having to implement MPLS. Establishing the virtual circuits within a PNNI hierarchy maybe facilitated by each provider edge device propagating through the hierarchy an information group containing an association between the ATM address of the device and a VPLS ID, so that each provider edge device learns all ATM addresses to be associated with each VPLS ID. The method of advertising ATM addresses can be applied to other services requiring a number of interconnections between provider edge devices, such as Virtual Private Networks.
    Type: Grant
    Filed: December 10, 2003
    Date of Patent: June 8, 2010
    Assignee: Alcatel-Lucent
    Inventors: John Fischer, Shay Nahum, Carl Rajsic, Shawn McAllister
  • Patent number: 7436770
    Abstract: The packet rate limiting method and system is used for detecting and blocking the effects of DoS attacks on IP networks. The method uses an ACL counter that stores an action parameter in the first 3 most significant bits and uses 13 bits as a packet counter. A rate limit is enforced by setting the packet counter to an initial value, and resetting this value at given intervals of time. The action parameter enables the ACL to accept or deny packets based on this rate limit. If the number of packets in the incoming flow saturates the packet counter before the reset time, the packets are denied access to the network until the counter is next reset. The denied packets may be just discarded or may be extracted for further examination.
    Type: Grant
    Filed: January 21, 2004
    Date of Patent: October 14, 2008
    Assignee: Alcatel Lucent
    Inventors: Jason Sterne, Adrian Grah, Shay Nahum, Predrag Kostic, Herman Ho Ming Liu
  • Patent number: 7236492
    Abstract: A packet processing device has an on-board match engine memory. Actions to be taken on a packet can be looked up in the match engine memory using a key comprising a match engine index and a protocol field from the packet. The match engine index is obtained from either a relatively small on-board parser memory or a larger context memory. The parser memory contains match engine indices for sparse protocols. Performance approaching that of hard-wired packet processors can be obtained. New protocols or changes in protocols can be accommodated by writing new values into the match engine, parser and context memories. The packet processing device can be provided in a pipelined architecture.
    Type: Grant
    Filed: November 21, 2001
    Date of Patent: June 26, 2007
    Assignee: Alcatel-Lucent Canada Inc.
    Inventors: Tom Davis, Chad Kendall, Shay Nahum
  • Patent number: 7184440
    Abstract: A multi-protocol switch that supports both ATM and IP traffic and method for use is presented. The multi-protocol switch associates certain input connections, as identified by virtual path identifier/virtual connection identifier (VPI/VCI), with either IP or ATM traffic. When the connection identifier for a cell received indicates that the cell is an ATM cell, the multi-protocol switch forwards the cell through the switch, where the forwarding is based on the connection identifier for the cell. If the connection identifier for a cell indicates that the cell is IP traffic, the cell is stored with other cells included in the IP packet to which the cells correspond within the ingress line card of the switch. The destination address included in the packet is used to determine a forwarding decision for the cells included in the packet. After at least partial reassembly, the packet is segmented and forwarded through the switch based on the forwarding decision determined from the destination address.
    Type: Grant
    Filed: July 26, 2000
    Date of Patent: February 27, 2007
    Assignee: Alcatel Canada Inc.
    Inventors: Jason T. Sterne, Thomas E. Davis, Robert E. Robotham, Shay Nahum
  • Publication number: 20050157647
    Abstract: The packet rate limiting method and system is used for detecting and blocking the effects of DoS attacks on IP networks. The method uses an ACL counter that stores an action parameter in the first 3 most significant bits and uses 13 bits as a packet counter. A rate limit is enforced by setting the packet counter to an initial value, and resetting this value at given intervals of time. The action parameter enables the ACL to accept or deny packets based on this rate limit. If the number of packets in the incoming flow saturates the packet counter before the reset time, the packets are denied access to the network until the counter is next reset. The denied packets may be just discarded or may be extracted for further examination.
    Type: Application
    Filed: January 21, 2004
    Publication date: July 21, 2005
    Applicant: Alcatel
    Inventors: Jason Sterne, Adrian Grah, Shay Nahum, Predrag Kostic, Herman Liu
  • Publication number: 20050129024
    Abstract: A method and apparatus are provided for emulating VPLS within an ATM network. Provider Edge devices are configured for the VPLS connections. Each provider edge device advertises its configured VPLS IDs to other provider edge devices by propagating an information group up the PNNI hierarchy, the information group containing an association between an ATM address of the provider edge device and the VPLS ID. Information groups are propagated back down the PNNI hierarchy, so that each lowest level node learns all ATM addresses to be associated with each VPLS ID. For each pair of provider edge devices supporting the same VPLS ID, one of the provider edge devices establishes a virtual circuit between the pair. In this way, a mesh of virtual circuits is established between provider edge devices, and a VPLS-like service can be offered to users without having to implement MPLS.
    Type: Application
    Filed: December 10, 2003
    Publication date: June 16, 2005
    Applicant: Alcatel
    Inventors: John Fisher, Shay Nahum, Carl Rajsic, Shawn McAllister
  • Publication number: 20030103499
    Abstract: A packet processing device has an on-board match engine memory. Actions to be taken on a packet can be looked up in the match engine memory using a key comprising a match engine index and a protocol field from the packet. The match engine index is obtained from either a relatively small on-board parser memory or a larger context memory. The parser memory contains match engine indices for sparse protocols. Performance approaching that of hard-wired packet processors can be obtained. New protocols or changes in protocols can be accommodated by writing new values into the match engine, parser and context memories. The packet processing device can be provided in a pipelined architecture.
    Type: Application
    Filed: November 21, 2001
    Publication date: June 5, 2003
    Inventors: Tom Davis, Chad Kendall, Shay Nahum