Patents by Inventor Shujin Zhang

Shujin Zhang has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20020002621
    Abstract: Multiple simultaneous network connections from a single PPP connection may be accomplished. A primary PPP connection is established between a user and a first network. A first real network address for the user is then received, the first real network address assigned by the first network. Then, the gateway may establish a secondary network session between a gateway and a second network, receiving a second real network address assigned by the second network. Additional network connections may be added as secondary network sessions. Network address translation is then performed on packets traveling between the user and any of the secondary network sessions, but not on packets traveling between the user and the primary PPP connection. This allows for connection to multiple networks without disturbing the primary PPP session and also allows for the utilization of applications which may not be used with network address translation on the primary PPP session.
    Type: Application
    Filed: November 3, 1998
    Publication date: January 3, 2002
    Inventors: SHUJIN ZHANG, JANE JIAYING JIN, JIE CHU, MARIA ALICE DOS SANTOS, SHUXIAN LOU
  • Patent number: 6324585
    Abstract: A gateway is provided which resolves a DNS request in a manner that minimizes the time and bandwidth required to conduct a DNS search as well as increases the chances that a DNS request will be answered for systems in which the gateway is connected to more than one network simultaneously.
    Type: Grant
    Filed: November 19, 1998
    Date of Patent: November 27, 2001
    Assignee: Cisco Technology, Inc.
    Inventors: Shujin Zhang, Aravind Sitaraman, Shuxian Lou
  • Patent number: 6311275
    Abstract: A method for providing single step log-on access for a subscriber to a computer network. The computer network is differentiated into public and private areas. Secure access to the private areas is provided by a Service Selection Gateway (SSG) Server, introduced between a conventional Network Access Server (NAS) and an Authentication Authorization and Accounting (AAA) Server. The SSG Server intercepts and manipulates packets of data exchanged between the NAS and the AAA Server to obtain all the information it needs to automatically log the user on when the user logs on to the NAS. An authorized user is thus spared the task of having to re-enter username and password data or launch a separate application in order to gain secure access to private areas of the network.
    Type: Grant
    Filed: August 3, 1998
    Date of Patent: October 30, 2001
    Assignee: Cisco Technology, Inc.
    Inventors: Jane Jiaying Jin, Jie Chu, Maria Alice Dos Santos, Shuxian Lou, Xi Xu, Shujin Zhang
  • Patent number: 6301618
    Abstract: The present invention is a method and apparatus for providing the owners of domain sites on a computer network or the owners of private remotely accessible intra networks the capability to force authorized users to disconnect from any open connections to other public or private domains or networks before a connection with the owners domain or network can be established. This forced sequential access of a specified domain or network is accomplished by inserting a sequential-only attribute into the service profile for a specified user. Upon the user initiating a log-on sequence through an access point, the user's service profile is pulled from a memory bank and an assessment is made as to whether or not the sequential-only attribute exists for the desired specified domain or network to be accessed.
    Type: Grant
    Filed: September 11, 2000
    Date of Patent: October 9, 2001
    Assignee: Cisco Technology, Inc.
    Inventors: Aravind Sitaraman, Shuxian Lou, Shujin Zhang
  • Patent number: 6263369
    Abstract: A network access point for locally processing an access request is configured to include an information bus, an access event publisher, and at least one local cache having at least one user record. The access event publisher publishes at least one network access event on the information bus during the processing of the access request. The first local cache is coupled to and is responsive to the network access event by updating the user record according to information contained by the network access event if the information includes a home access point ID that corresponds to the first local cache. The network access point may be part of a communications system having a mother cache. The mother cache is coupled to the first local cache and includes user records of subscribers supported by the communications system.
    Type: Grant
    Filed: October 30, 1998
    Date of Patent: July 17, 2001
    Assignee: Cisco Technology, Inc.
    Inventors: Aravind Sitaraman, Houshang Nayeb Hosseini, Jie Chu, Leslie Alan Thomas, Shujin Zhang
  • Patent number: 6253327
    Abstract: A method and apparatus for providing single-step logon access for a subscriber to a differentiated computer network having more than one separate access area. In a method for single-step logon a network gateway interface grants a subscriber access to both one or more public network domains, such as the Internet, and one or more private domains, such as community of interest domains or intra-network domains, without requiring the subscriber to launch a separate logon application. Once the subscriber has completed a single step logon to the network interface, the service provider is able to provide the subscriber with simultaneous secure channel access to both public areas and secured private areas.
    Type: Grant
    Filed: December 2, 1998
    Date of Patent: June 26, 2001
    Assignee: Cisco Technology, Inc.
    Inventors: Shujin Zhang, Shuxian Lou
  • Patent number: 6212561
    Abstract: The present invention is a method and apparatus for providing the owners of domain sites on a computer network or the owners of private remotely accessible intra networks the capability to force authorized users to disconnect from any open connections to other public or private domains or networks before a connection with the owners domain or network can be established. This forced sequential access of a specified domain or network is accomplished by inserting a sequential-only attribute into the service profile for a specified user. Upon the user initiating a log-on sequence through an access point, the user's service profile is pulled from a memory bank and an assessment is made as to whether or not the sequential-only attribute exists for the desired specified domain or network to be accessed.
    Type: Grant
    Filed: October 8, 1998
    Date of Patent: April 3, 2001
    Assignee: Cisco Technology, Inc.
    Inventors: Aravind Sitaraman, Shuxian Lou, Shujin Zhang
  • Patent number: 6119160
    Abstract: A method and apparatus for providing computer network access points the capability for multiple-level accounting. A gateway device located at the access point is capable of generating Internet protocol accounting start and stop requests based on various events that need to be accounted for when a user accesses a network. These events include the user account logon, the service establishments and the Point to Point protocol (PPP) connections between the gateway device and public and private domains within the network. The counter is capable of tracking the duration of sessions and connections and the byte-count associated with the specified session or connection. The gateway device communicates with an accounting server which stores the accounting requests and matches start requests with subsequent stop requests.
    Type: Grant
    Filed: October 13, 1998
    Date of Patent: September 12, 2000
    Assignee: Cisco Technology, Inc.
    Inventors: Shujin Zhang, Shuxian Lou, Roman Peter Kochan, Aravind Sitaraman