Patents Assigned to Juniper Network, Inc.
-
Methods and apparatus for dynamic resource management within a distributed control plane of a switch
Patent number: 9282060Abstract: In some embodiments, a switch fabric system includes multiple access switches configured to be operatively coupled to a switch fabric. The multiple access switches include multiple ports each to be operatively coupled to a peripheral processing device. A first set of ports from the multiple ports and a second set of ports from the multiple ports are managed by a first network control entity when the switch fabric system is in a first configuration. The first set of ports is managed by the first network control entity and the second set of ports is managed by a second network control entity when the switch fabric system is in a second configuration. The second network control entity is automatically initiated when the system is changed from the first configuration to the second configuration.Type: GrantFiled: December 15, 2010Date of Patent: March 8, 2016Assignee: Juniper Networks, Inc.Inventors: Quaizar Vohra, Umesh Kondur, Nishanth Gaddam -
Patent number: 9282043Abstract: A device may determine a first aggregation level for aggregating incoming packets. The device may aggregate the incoming packets using the first aggregation level. The device may determine that a controlled packet pass rate for the incoming packets satisfies an arrival rate threshold based on aggregating the incoming packets using the first aggregation level. The device may determine a bandwidth violation trend associated with the incoming packets and the first aggregation level based on determining that the controlled packet pass rate satisfies the threshold. The device may determine that flow suppression is not effective at the first aggregation level based on the bandwidth violation trend, and may determine a second aggregation level based on determining that the flow suppression is not effective. The device may set the first aggregation level to the second aggregation level. The device may use the first aggregation level for aggregating additional incoming packets.Type: GrantFiled: September 24, 2013Date of Patent: March 8, 2016Assignee: Juniper Networks, Inc.Inventor: Qi-Zhong Cao
-
Patent number: 9282115Abstract: A computer-implemented method for detecting cache-poisoning attacks in networks using SDPs may include maintaining a cache of service information that identifies services provided by client devices connected to a network using an SDP. The method may also include detecting a cache-poisoning attack by (1) receiving, from a client device connected to the network, an SDP message related to a service allegedly provided via the network, (2) identifying, within the SDP message, an attribute of the service allegedly provided via the network, and then (3) determining that the client device is attempting to corrupt the cache of service information by determining that the identified attribute of the service suggests that the service is illegitimate. Finally, the method may include performing a security action to mitigate the cache-poisoning attack in response to detecting the cache-poisoning attack. Various other methods, systems, and computer-readable media are also disclosed.Type: GrantFiled: January 3, 2014Date of Patent: March 8, 2016Assignee: Juniper Networks, Inc.Inventors: Anil Kaushik, Vineet Verma, Stephen Grau, Sreenivas Voruganti, Abhishek Kumar
-
Patent number: 9276405Abstract: A system may include a switchover element configurable to source or sink power from or to an electronic device electrically coupled to the switchover element and a controller in communication with the switchover element. The controller may be configured to determine if the electronic device is healthy. When the electronic device is healthy, the controller may configure the switchover element to deliver power from the electronic device to the system andconfigure the switchover element to provide the power to any unhealthy electronic device electrically coupled to the system.Type: GrantFiled: December 28, 2011Date of Patent: March 1, 2016Assignee: Juniper Networks, Inc.Inventors: Hogan Lew, Ankur Singla, Harshad Nakil
-
Patent number: 9269307Abstract: A data processing unit, which is operatively coupled within a data center network, is configured to output a first visual indicia, a second visual indicia and a third visual indicia. The first visual indicia includes a set of light outputs, each of which is associated with a port status of a network port of the data processing unit. The second visual indicia includes a set of graphical outputs produced by a display screen, each of which is associated with an operating status of the data processing unit. The third visual indicia includes a set of backlight outputs produced by the display screen, each of which is associated with the operating status of the data processing unit.Type: GrantFiled: March 31, 2009Date of Patent: February 23, 2016Assignee: Juniper Networks, Inc.Inventor: Gunes Aybay
-
Patent number: 9270426Abstract: A network device computes a set of maximally redundant trees from an ingress network device to a plurality of egress network devices based on a network graph, in which each of the set of maximally redundant trees comprises a spanning tree to the plurality of egress network devices rooted at the network device. The network device computes the maximally redundant trees such that each of the links along each of the set of maximally redundant trees satisfies a specified traffic-engineering constraint. The ingress network device establishes a plurality of point to multipoint (P2MP) label switched paths (LSPs) from the network device as an ingress network device to the plurality of egress network devices along the set of maximally redundant trees, wherein each of the P2MP LSPs corresponds to a different one of the maximally redundant trees.Type: GrantFiled: September 11, 2012Date of Patent: February 23, 2016Assignee: Juniper Networks, Inc.Inventors: Alia Atlas, Maciek Konstantynowicz
-
Patent number: 9262213Abstract: A device may receive task navigation information, identify a selection of a first task, of multiple tasks, based on the task navigation information, and provide a list of a group of tasks from the multiple tasks. The list of the group tasks may be based on information identifying tasks historically selected subsequent to the selection of the first task. The device may identify a selection of a second task, of the multiple tasks subsequent to identifying the selection of the first task; and store information identifying that the second task has been selected subsequent to the first task based on identifying the selection of the second task subsequent to the selection of the first task. The information identifying that the second task has been selected subsequent to the first task may include a number of times that the second task has been selected subsequent to the first task.Type: GrantFiled: September 30, 2013Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventors: Ricardo Augusto R. Gralhoz, Hal L. Stern
-
Patent number: 9264348Abstract: Data traffic loss in a an Ethernet Ring that is multihomed, in an active-standby manner, to a VPLS transport network (such as a Border Gateway Protocol (BGP) multihomed Ethernet Ring, an MC-LAG multihomed Ethernet Ring, or some other type of active-standby multihomed Ethernet Ring, etc.) (ring) is avoided. The exemplary multihomed ring running Ethernet Ring Protection (ERP) protocol includes a Ring Protection Link (RPL), a first node and a second node linked with a designated border router and a standby border router of the network, respectively. The data traffic loss in the multihomed ring is avoided by (i) receiving an indication that the link between the first node and the designated border router has failed; and (ii) invoking, responsive to the received indication, an ERP Media Access Control (MAC)-flush in the ring, even in the absence of a failed link in the ring and without activating the specified RPL.Type: GrantFiled: September 14, 2012Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventors: Pankaj Shukla, Sunesh Rustagi
-
Patent number: 9264743Abstract: A method may include providing a service to a customer premise device, the service including at least one of television service or Internet service, receiving a request for Internet content from the customer premise device, retrieving the Internet content, conditioning the Internet content according to at least one of a type of data of the Internet content or the service from which the request is received, allocating resources for delivering the Internet content based on one or more requirements associated with the type of data of the Internet content, and delivering the Internet content to the customer premise device.Type: GrantFiled: September 6, 2007Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventors: Timothy Diep, David Coletti
-
Patent number: 9264898Abstract: In general, techniques are described for emulating mobile authentication methods to establish authenticated connectivity between a mobile service provider gateway and a wireless device attached to an alternate access network. For example, a system operating according to the described techniques includes a mobile service provider network, an alternate access network having an access gateway, and an authentication server of the mobile service provider network that receives a network access request. A subscriber database responds to the network access request with virtual mobility information, wherein the network access request does not include an International Mobile Subscriber Identity (IMSI), and wherein the virtual mobility information comprises a virtual IMSI.Type: GrantFiled: July 19, 2012Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventors: Hartmut Schroeder, Nikolas Dawson Kitson, Sreenivasa Tellakula
-
Patent number: 9264093Abstract: An apparatus may include a multi-throw switch having a common terminal connected to an antenna of a wireless communication system. The multi-throw switch may be configured to direct signals received from the antenna between (1) an amplification path that connects a receive terminal of the multi-throw switch to a receiver of the wireless communication system and (2) at least one bypass path that connects an additional receive terminal of the multi-throw switch to the receiver. The amplification path may include at least one amplifier that amplifies signals received from the antenna, and the bypass path may have a gain that is less than a gain of the amplification path. Various other systems and methods are also disclosed.Type: GrantFiled: May 15, 2013Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventor: John R. Martin
-
Patent number: 9264131Abstract: An optical network device re-routes traffic from a path to a backup path in response to determining that a downstream segment of the primary path is not operational. The optical network device receives traffic on a slot of an optical fiber. For each data unit in the traffic, the optical network device determines, based on receiving the data unit on the slot and based on a flow identifier specified in the data unit, that a given path is associated with the data unit. If a downstream segment of the given path is not operational, the optical network device routes the data unit onto a backup path instead of routing the data unit along the given path. Bandwidth is not reserved for the backup path.Type: GrantFiled: February 6, 2015Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventor: Gert Grammel
-
Patent number: 9264321Abstract: In one embodiment, a processor-readable medium storing code representing instructions that when executed by a processor cause the processor to update, at a memory location, a first flow state value associated with a data flow to a second flow state value when at least one of a packet from the data flow is received or the memory location is selected after a time period has expired. At least a portion of the packet is analyzed when the second flow state value represents a flow rate of a network data flow anomaly.Type: GrantFiled: December 23, 2009Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventor: Gunes Aybay
-
Patent number: 9264420Abstract: A method may include authenticating a device to a first server, where the device includes an agent; receiving a request, in the first server from a second server, to verify the authenticity of the device, where the device is not authenticated to the second server; sending a browser plug-in to the device to communicate with the agent for verifying the authenticity of the device; receiving, in the first server, a message from the agent verifying the authenticity of the device; and sending a message from the first server to the second server to authenticate the device to the second server.Type: GrantFiled: January 6, 2014Date of Patent: February 16, 2016Assignee: Juniper Networks, Inc.Inventors: Roger A. Chickering, Paul Funk
-
Patent number: 9258726Abstract: In some embodiments, an apparatus includes a spectral scanning controller configured to interrupt service at a wireless access point (WAP) such that the WAP performs spectral scanning during service interruption. The spectral scanning controller is configured to interrupt service at the WAP at a first scanning frequency when the spectral scanning controller is in a first configuration. The spectral scanning controller is configured to interrupt service at the WAP at a second scanning frequency different from the first scanning frequency when the spectral scanning controller is in a second configuration. The spectral scanning controller is configured to move from the first configuration to the second configuration in response to a change in at least one of a service demand, a service quality, a spectral scanning demand or a spectral scanning quality.Type: GrantFiled: March 30, 2012Date of Patent: February 9, 2016Assignee: Juniper Networks, Inc.Inventors: Liang-Jong Huang, Lap Kong Law
-
Patent number: 9256416Abstract: In some embodiments, a method includes installing at an access point that (1) includes a first software image and (2) is operatively coupled to a network controller via network, a second software image different from the first software image. The method includes defining in response to the installation, a virtual client disposed in the access point. The virtual client is configured to send to the network controller via the network a first validation data unit that causes the network controller to send a second validation data unit to the access point if the first validation data unit is received by the network controller. The method also includes installing at the access point that includes the second software image, the first software image and uninstalling the second software image if the access point does not receive the second validation data unit in response to the first validation data unit.Type: GrantFiled: March 28, 2013Date of Patent: February 9, 2016Assignee: Juniper Networks, Inc.Inventors: Murali Vemula, Siva Madasamy, Srihari Ramachandra, Pradeep Kudethur
-
Patent number: 9258762Abstract: In general, techniques are described for atomically installing and withdrawing host routes along paths connecting network routers to attenuate packet loss for mobile nodes migrating among wireless LAN access networks and a mobile network. In some examples, whenever the mobile node moves from one attachment point to the next, it triggers the distribution of its host route from the new attachment point toward the service provider network hub provider edge (PE) router that anchors the mobile node on a service provider network. Routers participating in the Mobile VPN install the host route “atomically” from the attachment point to the mobile gateway so as to ensure convergence of the network forwarding plane with the host route toward the new attachment point prior to transitioning mobile node connectivity from a previous attachment point.Type: GrantFiled: November 17, 2014Date of Patent: February 9, 2016Assignee: Juniper Networks, Inc.Inventors: Hendrikus G. P. Bosch, Martin Djernaes
-
Patent number: 9258238Abstract: A centralized controller provides dynamic end-to-end network path setup across multiple network layers. In particular, the centralized controller manages end-to-end network path setup that provisions a path at both the transport network layer (e.g., optical) and the service network layer (e.g., IP/MPLS). The centralized controller performs path computation for an optical path at the transport network layer and for a path at the service network layer that transports network traffic on the underlying optical transport path, based on information obtained by the centralized controller from the underlying network components at both layers.Type: GrantFiled: August 30, 2013Date of Patent: February 9, 2016Assignee: Juniper Networks, Inc.Inventors: Nitin Bahadur, Kenneth E. Gray, Thomas D. Nadeau, Alia K. Atlas
-
Patent number: 9258076Abstract: A laser system includes an array of lasers that emit light at a number of different, fixed wavelengths. A group of optical transport systems connect to the laser system. Each of the optical transport systems is configured to modulate data signals onto the light from the laser system to create optical signals and transmit the optical signals on one or more optical fibers.Type: GrantFiled: June 22, 2015Date of Patent: February 9, 2016Assignee: Juniper Networks, Inc.Inventor: Pradeep S. Sindhu
-
Patent number: 9258267Abstract: A network device establishes a logical channel with each server device of multiple server devices, where each logical channel is not shared with another server device of the multiple server devices. The network device also determines a network loopback Internet protocol (IP) address for each server device of the multiple server devices, and associates each network loopback IP address with a corresponding logical channel. The network device further receives a packet destined for a particular server device, and provides the packet to the particular server device via the logical channel associated with the particular server device.Type: GrantFiled: November 27, 2013Date of Patent: February 9, 2016Assignee: Juniper Networks, Inc.Inventors: George Rainovic, Chandra Pandey