Patents Assigned to Extreme Networks
  • Patent number: 10944849
    Abstract: Techniques for synchronizing a network device to selectively operate according to a selectable operation policy. A system utilizing such techniques can a self-configuring network device operation coordination system and a self-configuring network device operation management system. A method utilizing such techniques can include synchronizing a network device to selectively operate according to a first operation policy and a second operation policy in providing network service access.
    Type: Grant
    Filed: September 30, 2016
    Date of Patent: March 9, 2021
    Assignee: Extreme Networks, Inc.
    Inventors: William Edward Lundgren, Alan Cuellar Amrod, Narayanan Krishnamoorthy, Richard Stephen Hector
  • Patent number: 10924465
    Abstract: Disclosed is a system comprising: an authentication datastore; a device presence engine; a traffic monitor engine; an authentication presence monitor engine; an authentication server selection engine; and a traffic routing engine. In operation: the device presence engine is configured to detect presence of a user device on a trusted network; the traffic monitor engine is configured to monitor, in response to the detection, traffic on the trusted network from the device; the authentication presence monitor engine is configured to evaluate onboarding characteristics of the user device in response to the monitoring; the authentication server selection engine is configured to select one of a plurality of authentication servers to authenticate the user device to the trusted network, the selecting based on the onboarding characteristics; and the traffic routing engine is configured to route traffic from the user device to the selected authentication server.
    Type: Grant
    Filed: July 9, 2019
    Date of Patent: February 16, 2021
    Assignee: Extreme Networks, Inc.
    Inventors: Xu Zou, Kenshin Sakura, Mingliang Li
  • Patent number: 10911353
    Abstract: Aspects of the present disclosure provide a suitable architecture for a router controller which configures forwarding rules in a packet router of a network visibility system. In an embodiment, the router controller contains multiple controller blocks, with each controller block to examine a corresponding set of packets and to generate a respective set of forwarding rules for configuring the packet router. The router controller may also contain a switch to receive multiple packets and to forward to each controller block the corresponding set of packets. Each controller block may forward the respective set of forwarding rules to the switch, with the switch in turn configuring the packet router with the respective set of forwarding rules.
    Type: Grant
    Filed: October 30, 2015
    Date of Patent: February 2, 2021
    Assignee: Extreme Networks, Inc.
    Inventors: Shailender Sharma, Rakesh Varimalla, Sathya Narayana Pottimurthy
  • Patent number: 10893403
    Abstract: A technique for deploying proximity beacons involves coupling proximity beacon transmitters and/or hubs to an enterprise network device. The coupling can be by way of physically connecting communication interfaces of the network device and the proximity beacon transmitter or hub. In some implementations, the communication interface can be implemented as a USB interface. In some implementations, the communication interface can be embedded within the network device, such that the communication interface can provide the physical connection in the form of an embedded or internal connection.
    Type: Grant
    Filed: October 29, 2018
    Date of Patent: January 12, 2021
    Assignee: Extreme Networks, Inc.
    Inventors: Changming Liu, Chris Scheers, Jingsong Fu, Haofeng Kou, Arun K. Goel, Matthew Stuart Gast
  • Patent number: 10887212
    Abstract: The present invention provides method and systems for dynamically mirroring network traffic. The mirroring of network traffic may comprise data that may be considered of particular interest. The network traffic may be mirrored by a mirror service portal from a mirror sender, referred to as a mirror source, to a mirror receiver, referred to as a mirror destination, locally or remotely over various network segments, such as private and public networks and the Internet. The network traffic may be mirrored to locations not involved in the network communications being mirrored. The present invention provides various techniques for dynamically mirroring data contained in the network traffic from a mirror source to a mirror destination.
    Type: Grant
    Filed: August 5, 2014
    Date of Patent: January 5, 2021
    Assignee: Extreme Networks, Inc.
    Inventors: David E. Frattura, Richard W. Graham, John Roese
  • Patent number: 10887786
    Abstract: Techniques for performing near-uniform load balancing in a visibility network based on usage prediction are provided. According to one embodiment, a packet broker of the visibility network can receive a control packet replicated from a core network, where the control packet includes a user or device identifier and a request to create a user session for a user identified by the user/device identifier. The packet broker can further determine, based on the user/device identifier and one or more other parameters, a rank value for the user session, where the rank value indicates an amount of network traffic that the user is likely to generate in the core network during the user session. The packet broker can then select an egress port for the user session based on the rank value and forward subsequent control and data traffic for the user session through the selected egress port.
    Type: Grant
    Filed: October 19, 2017
    Date of Patent: January 5, 2021
    Assignee: Extreme Networks, Inc.
    Inventors: Jude Pragash Vedam, Deepak Hegde, Ashwin Naresh, Shubharanjan Dasgupta
  • Patent number: 10880730
    Abstract: Wireless access points detect neighboring wireless access points in different subnets. Upon connecting with a wireless client, a wireless access point determines predictive roaming information for the wireless client. Predictive roaming information identifies the wireless client; its home network subnet; and includes connection information associated with the wireless client. The wireless access point forwards the predictive roaming information associated with a wireless client to neighboring wireless access points while the wireless client is still connected with the wireless access point. Neighboring wireless access points store received predictive roaming information. Upon connecting with a wireless client, a neighboring wireless access point determines if the wireless client matches the stored predictive roaming information.
    Type: Grant
    Filed: January 15, 2019
    Date of Patent: December 29, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Changming Liu, Yong Kang, Jianlin Zeng, Sreekanth Reddy
  • Patent number: 10880215
    Abstract: Systems, methods, and apparatuses are disclosed herein for providing an Individual Service Instance identifier (“I-SID”) translation service for accessing services on different networks. Packets designated for specific services via an I-SID Tag may be received at an edge network device and a lookup may be performed to locate the service on another network via the I-SID corresponding to the service, the I-SID being mapped at another network. The I-SID may be updated with the newly-located I-SID in order for the packet to reach an appropriate service on the other network.
    Type: Grant
    Filed: December 13, 2017
    Date of Patent: December 29, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Deborah Ellen Fitzgerald, Srikanth Keesara
  • Patent number: 10855562
    Abstract: Techniques for implementing traffic deduplication in a visibility network are provided. According to one embodiment, a packet broker of the visibility network can receive a control or data packet replicated from a core network. The packet broker can then apply a first stage deduplication process in which the packet broker attempts to deduplicate the control or data packet based on one or more interfaces of the core network from which the control or data packet originated, and apply a second stage deduplication process in which the packet broker attempts to deduplicate the control or data packet based on the content (e.g., payload) of the control or data packet.
    Type: Grant
    Filed: October 1, 2018
    Date of Patent: December 1, 2020
    Assignee: Extreme Networks, LLC
    Inventors: Deepak Hegde, Shailender Sharma, Rakesh Varimalla
  • Patent number: 10856361
    Abstract: A plug-in network device is disclosed. The plug-in network device can be used in association with a network management system and an infrastructure network device. The plug-in network device includes two antenna arrays, one of which is up-facing and one of which is front-facing. The plug-in network device can achieve wireless communication with the infrastructure network device via the up-facing antenna array and provide network services to wireless stations through the front-facing antenna array. The network management system can manage both the infrastructure network device and the plug-in network device.
    Type: Grant
    Filed: March 13, 2019
    Date of Patent: December 1, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: George Gang Chen, Edward Chee, Gururaj Govindasamy
  • Patent number: 10855668
    Abstract: Authenticating a client device coupled to an authenticator network device for a network. A service request is received from the client device at the authenticator network device. User credentials, including a user ID, a user key, and a nonce for a user are received at the authenticator network device. A token is generated using the received user credentials. The service request is modified to include the token and a user ID parameter that is the user ID to generate a modified service request. The modified service request is used to provide single sign-on access to a service that is the subject of the service request.
    Type: Grant
    Filed: February 13, 2017
    Date of Patent: December 1, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Peng Fan, Xu Zou, Wei Song
  • Patent number: 10848465
    Abstract: A security event that is associated with one or more communication devices is detected. For example, the security event may be an unexpected change in data being sent from a communication device outside an enterprise. In response to detecting the security event, a Virtual Service Network (VSN) is created that isolates one or more communication devices that may pose a security risk. A corrective action to mitigate the security event is then implemented. For example, the corrective action may be to dynamically instantiate a firewall on the VSN that blocks the transfer of data from the communication device outside the enterprise. This allows an administrator to review the security event and take further action if necessary. Because the VSN with the firewall is created dynamically, the network remains secure while the security event is investigated.
    Type: Grant
    Filed: October 3, 2016
    Date of Patent: November 24, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Shalini Yajnik, Anjur S. Krishnakumar, Venkatesh Krishnaswamy, Laurent Philonenko
  • Patent number: 10833948
    Abstract: Methods and apparatus are described for implementing service discovery protocols on subnetted zero configuration networks. A process for managing service advertisement across a plurality of subnets may comprise: collecting service advertisements on a local network level by designated network devices; sending listings of services from each of the designated devices to a master network device; sending a table of services for the plurality of subnets from the master device to all of the designated devices on the plurality of subnets; creating by each of the designated network devices for the corresponding subnet a service discovery proxy table listing the service advertisements on the subnets of the plurality of subnets beyond the subnet corresponding to the designated device; and periodically transmitting by each of the designated devices on the corresponding subnets service advertisements for the services of the corresponding service discovery proxy table.
    Type: Grant
    Filed: October 2, 2018
    Date of Patent: November 10, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Matthew Stuart Gast, Liang Wang, Yong Kang, Adam Michael Conway
  • Patent number: 10810095
    Abstract: Techniques and systems for performing a network activity within a network. The technique includes assigning one or a plurality of network devices subnets with network devices for performing network activities. Network devices within the assigned network device subnets can be assigned to act as a primary network device and a backup network device. The primary network device can perform the network activity. The backup network devices can monitor the primary network device and continue performing the network activities if the primary network device fails or is rogue.
    Type: Grant
    Filed: January 31, 2018
    Date of Patent: October 20, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Long Fu, Dalun Bao, Weimin Du, Jie Zhang
  • Patent number: 10805390
    Abstract: A method and apparatus for automated mirroring is presented. A network device running as a Fabric Attach (FA) server configured to mirror traffic to a Remote Switch Port Analyzer (RSPAN) Virtual Local Area Network (VLAN), issues an FA Type Length Value (TLV) on its uplink to the FA server. The TLV includes a request to associate said RSPAN VLAN with a Service Identifier (I-SID) used to carry mirror traffic in a network. The network device sends the mirrored traffic on the RSPAN VLAN on its uplink to the FA server. The network device signals the I-SID into the network, and detects receive interest in the I-SID. The network device delivers the mirrored traffic to devices that expressed a receive interest in the mirrored traffic.
    Type: Grant
    Filed: October 8, 2018
    Date of Patent: October 13, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Srikanth Keesara, Venkat Dabbara, Parthiv Shrimankar, Robert Lee
  • Patent number: 10798634
    Abstract: A method and system for selecting a route in a wireless network for the transmission of a data packet between wireless nodes in the network using a modified link-state routing algorithm. A subset of nodes called portal nodes within the network are elected to do the broadcasting for the entire network. A wireless node identifies a unicast route back to its root portal node, and sends a link-state register message to this portal node. These link-state register messages received by each portal node are aggregated by them and are broadcast to each of the wireless nodes for storage. When a data packet is thereafter received by a wireless node from a neighboring node, it detects if the data packet satisfies one of a plurality of predetermined conditions and rebroadcasts the data packet to neighboring wireless nodes if none of the conditions is satisfied.
    Type: Grant
    Filed: May 2, 2018
    Date of Patent: October 6, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Yong Kang, Changming Liu
  • Patent number: 10785187
    Abstract: Implementing auto attach for a shortest path bridging (SPB) network comprises determining, on an access point, that an auto attach device communicating in a SPB network is enabled for auto attach, and an advertisement is transmitted to a mobile station. The access point acts a proxy between the mobile station and the auto-attach device by communicably coupling the auto attach device and the mobile station via the access point. A virtual local area network (VLAN) identification and service instance identifier (I-SID) is received from the mobile station, when is then transmitted to the auto-attach device. A VLAN (independent of any static VLAN associated with the WLAN) is created off of the VLAN identification and an indication that the I-SID and the VLAN have been accepted. Data communications are then provided between the mobile station and the auto attach device via the VLAN and the access point.
    Type: Grant
    Filed: October 28, 2019
    Date of Patent: September 22, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Deborah Ellen Fitzgerald, Srikanth Keesara
  • Publication number: 20200295806
    Abstract: A technique for improving wireless communication characteristics involving matching transmitter antenna patterns to receiver antenna patterns. In a specific implementation, the transmitter antenna pattern adapts to changing parameters, such as when a smartphone is initially held in a first orientation and is later held in a second orientation. Because the transmitter antenna pattern matches receiver antenna patterns, signal quality between stations improves. In some implementations, antennas are organized and mounted to maximize spatial diversity to cause peak gains in different directions.
    Type: Application
    Filed: June 3, 2020
    Publication date: September 17, 2020
    Applicant: Extreme Networks, Inc.
    Inventors: Changming Liu, George Gang CHEN, Hai LIN, Liangfu ZHANG
  • Patent number: 10778784
    Abstract: Systems and methods for steering clients based on network service access characteristics. Systems can include a network service access characteristics specific network device client steering system and a network service access characteristics specific radio client steering system. Methods can include steering clients to network devices in accessing network services based on network service access characteristics and steering clients to radios in accessing network services based on network service access characteristics.
    Type: Grant
    Filed: February 22, 2017
    Date of Patent: September 15, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Wei Feng, Vineet Verma
  • Patent number: 10771475
    Abstract: Techniques for exchanging control and configuration information in a network visibility system are provided. In one embodiment, a control plane component of the network visibility system can receive one or more first messages from a data plane component of the network visibility system, where the one or more first messages define one or more forwarding resources available on the data plane component. The control plane component can further retrieve configuration information stored on the control plane component that comprises one or more network prefixes to be monitored by the network visibility system, and can determine one or more mappings between the network prefixes and the forwarding resources. Upon determining the one or more mappings, the control plane component can generate one or more packet forwarding rules based on the mappings.
    Type: Grant
    Filed: September 9, 2015
    Date of Patent: September 8, 2020
    Assignee: Extreme Networks, Inc.
    Inventors: Xiaochu Chen, Arvindsrinivasan Lakshmi Narasimhan, Shailender Sharma, Ivy Pei-Shan Hsu, Sanjeev Chhabria, Rakesh Varimalla