Patents by Inventor Bashar Said Bou-Diab
Bashar Said Bou-Diab has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 9794272Abstract: A method and apparatus for monitoring data traffic in a communication network are provided. A router connected to the communication network monitors information contained in the data traffic, and based on the information determines whether data in the traffic is indicative of a malicious threat to one or more resources connected to the network. Parameters which control monitoring of traffic at the router, such as the sampling rate and what information is to be extracted from the data is varied according to the condition of the network so that the monitoring can be adapted to focus on traffic which relates to a particular suspected or detected threat.Type: GrantFiled: January 3, 2006Date of Patent: October 17, 2017Assignee: Alcatel LucentInventors: Lyle Strub, Adrian Grah, Bashar Said Bou-Diab
-
Patent number: 9516026Abstract: Network services infrastructure systems and methods are disclosed. Policies for client access to a services network and network services available in the services network are enforced at client gateways. Once authenticated and authorized at a client gateway, a client of the services network may make its own network service(s) available in the services network, use network services provided by other clients of the services network, or both. The policies are centrally managed within a services network and distributed to the client gateways. Various registries which store policies, information associated with network services, and possibly other information may also be provided.Type: GrantFiled: June 30, 2014Date of Patent: December 6, 2016Assignee: Alcatel LucentInventors: Brian McBride, Bashar Said Bou-Diab, Laura Mihaela Serghi
-
Patent number: 9201914Abstract: A system and method of processing data, including identifying a first data processing criteria, communicating the first data processing criteria from a data processing application to a network element, receiving sensor data from a plurality of sensors at the network element, operating on the sensor data at the network element to process the data according to the identified first data processing criteria, resulting in a first processed data result, transmitting the first processed data result from the network element to the data processing application, and processing the first processed data result at the data processing application resulting in a second processed data result. The criteria can be dynamically updated.Type: GrantFiled: June 19, 2007Date of Patent: December 1, 2015Assignee: Alcatel LucentInventors: Bashar Said Bou-Diab, Peter Rabinovitch
-
Publication number: 20140317683Abstract: Network services infrastructure systems and methods are disclosed. Policies for client access to a services network and network services available in the services network are enforced at client gateways. Once authenticated and authorized at a client gateway, a client of the services network may make its own network service(s) available in the services network, use network services provided by other clients of the services network, or both. The policies are centrally managed within a services network and distributed to the client gateways. Various registries which store policies, information associated with network services, and possibly other information may also be provided.Type: ApplicationFiled: June 30, 2014Publication date: October 23, 2014Applicant: ALCATEL LUCENTInventors: BRIAN MCBRIDE, BASHAR SAID BOU-DIAB, LAURA MIHAELA SERGHI
-
Patent number: 8503446Abstract: Instead of implementing per flow measurement at every interface of every IGMP Router or Snooping Proxy in the aggregation network, as in the prior art “per flow measurement” approaches, the present invention relates to a scheme where the IGMP Router or Snooping Proxy tracks the multicast subscription of each host (for IGMPv3) or subnet (for IGMPv1 and IGMPv2) and stores the information such as host id, the time the host joined a channel, the duration of the channel delivery, etc. in a database. This database (MIB) can then be pulled by a network management tool using SNMP or WSDM MUWS. According to the invention a mechanism for multicast host authorization is also provided.Type: GrantFiled: August 29, 2005Date of Patent: August 6, 2013Assignee: Alcatel LucentInventors: Bashar Said Bou-Diab, Bijan Raahemi, Jonathan Dean Segel
-
Patent number: 8369339Abstract: A system and method are provided for subscriber to content provider network access service management which is requested by and paid for by the content provider to the network access provider. In response to the request from the content provider the network access provider invokes changes in bandwidth and/or quality of service for network traffic traversing between the web service provided by the content provider and the subscriber, either automatically or in response to a run-time request. The changes made in bandwidth and/or quality of service for the network traffic enables more robust and timely content and applications to be delivered to the specific subscriber from the content provider.Type: GrantFiled: January 18, 2007Date of Patent: February 5, 2013Assignee: Alcatel LucentInventors: Zlatko Krstulich, Bashar Said Bou-Diab
-
Patent number: 8243591Abstract: A method of router interface level 2 redundancy, and router implementing the method, including one or more of the following: starting redundant ports that are members of a level 2 redundancy group (L2RG) in a DOWN state; determining that none of the redundant ports are in an ACTIVE state; switching a first one of the redundant ports to an ACTIVE state; activating an Internet protocol interface for the L2RG; inserting an Internet protocol route for an interface subnet in an FIB of a router that contains the redundant ports; binding the Internet protocol route for the interface to the first one of the redundant ports; transitioning the first one of the redundant ports to a DOWN state; transitioning the Internet protocol interface to the DOWN state from an UP state; and removing the Internet protocol route for the interface from the FIB of the router.Type: GrantFiled: February 12, 2008Date of Patent: August 14, 2012Assignee: Alcatel LucentInventors: Bashar Said Bou-Diab, John Coulter
-
Patent number: 8054766Abstract: The present invention permits translation of SM addresses (*, G1) and (*, G2) to configurable SSM addresses (S0, G0). IGMPv2 group membership queries from the receiver subnet are translated to IGMPv3 membership queries for processing in a SSM network. In the preferred embodiment, packets travel via a connection to the multicast router (mrouter). The mrouter queries an IGMPv2 receiver. The IGMPv2 receiver generates a membership report and sends it back to the mrouter. The mrouter translates the membership report into a (S0, G0) as specified in a multicast address translation table and stores the translation in the Multicast Forward Information Base (MFIB) located in the mrouter. Multicast payload addressed (S0, G0) flowing towards the IGMPv2 receiver can be translated to (S0, G0). When media data is addressed to (S0, G0), the mrouter consults the MFIB for forwarding and can also translate the destination address to (S1, G1).Type: GrantFiled: December 21, 2007Date of Patent: November 8, 2011Assignee: Alcatel LucentInventors: Bashar Said Bou-Diab, Olivier Le Moigne, John Coulter
-
Patent number: 7916669Abstract: A method and system for STP-aware subscriber management is disclosed for managing redundant access ports. The STP-aware system includes Access Loop Pairs which provide continuity of subscriber management information in the event of an access port failure. The STP-aware subscriber management system is particularly useful for overcoming the requirements for extra ports within Link Access Group configured access networks known in the art.Type: GrantFiled: December 31, 2008Date of Patent: March 29, 2011Assignee: Alcatel LucentInventors: Bashar Said Bou-Diab, John Coulter
-
Patent number: 7797382Abstract: Publish-subscribe XML multicast service within a VPN service is described. A backbone such as an IP/MPLS backbone connects multiple subscriber sites using VPN technology and VPN edge routers. XML publish-subscribe modules are addressable within the VPN and form an overlay network between the edge routers participating in the VPN. The XML publish-subscribe modules may perform either topic-based multicast or content-based multicast services. The multicast service is self-managed.Type: GrantFiled: December 2, 2005Date of Patent: September 14, 2010Assignee: Alcatel LucentInventor: Bashar Said Bou-Diab
-
Patent number: 7792025Abstract: A Session Admission Control (SAC) for negotiating admission control in a multi-services communications network including multicast services is described. The module distributes the admission process between a centralized decision function (SAC-PDP) and a distributed decision function (SAC-M) in a fashion that solves admission control scaling problems. The mechanism for interaction between the SAC-PDP and SAC-M is defined. Mechanisms are defined for the SAC-PDP to discover or learn the network capacity against which the admission control decisions will be made. Systems are also described for incorporating SAC-M in multicast replication points in the network, allowing multicast replication points to participate in the admission control process.Type: GrantFiled: October 11, 2005Date of Patent: September 7, 2010Assignee: Alcatel LucentInventors: Jonathan Dean Segel, Bashar Said Bou-Diab
-
Publication number: 20100165986Abstract: A method and system for STP-aware subscriber management is disclosed for managing redundant access ports. The STP-aware system includes Access Loop Pairs which provide continuity of subscriber management information in the event of an access port failure. The STP-aware subscriber management system is particularly useful for overcoming the requirements for extra ports within Link Access Group configured access networks known in the art.Type: ApplicationFiled: December 31, 2008Publication date: July 1, 2010Inventors: Bashar Said Bou-Diab, John Coulter
-
Patent number: 7719957Abstract: A system for providing resilient multimedia broadcasting services over a VPLS network is described. A Network Management System (NMS) calculates disjoint minimum cost trees using the Steiner algorithm, executed with extra steps to result in disjoint trees. Destination PE routers in the VPLS network are connected to the disjoint trees so that they can be serviced by either tree in case of a fault. Each of the disjoint trees is provisioned with enough bandwidth to carry all of the services provided by the VPLS network. Under normal operation, however, the services are distributed evenly over the trees. In the event of a fault, the services on a faulty tree are switched to another tree using split horizon bridging. Each Steiner tree can also be realized using point-to-multipoint LSPs which is fully protected by a precomputed point-to-multipoint LSP.Type: GrantFiled: August 29, 2005Date of Patent: May 18, 2010Assignee: Alcatel LucentInventors: Bijan Raahemi, Bashar Said Bou-Diab, Fernando Cuervo
-
Patent number: 7668802Abstract: An XML matching engine and method are provided, where policy rules expressed using XPath/XQuery policies are matched to streaming XML documents. Two distinct data structures are used: a combined modified DFA data structure for storing simple XPath queries (no wildcards or descendents) and a modified AFilter structure for storing complex queries (with wildcards or/and descendents). As the matching engine receives XML tags from XML parser, matching is performed in both structures in parallel.Type: GrantFiled: July 30, 2007Date of Patent: February 23, 2010Assignee: Alcatel LucentInventors: Bashar Said Bou-Diab, Paul Boone
-
Publication number: 20090201909Abstract: A method of router interface level 2 redundancy, and router implementing the method, including one or more of the following: starting redundant ports that are members of a level 2 redundancy group (L2RG) in a DOWN state; determining that none of the redundant ports are in an ACTIVE state; switching a first one of the redundant ports to an ACTIVE state; activating an Internet protocol interface for the L2RG; inserting an Internet protocol route for an interface subnet in an FIB of a router that contains the redundant ports; binding the Internet protocol route for the interface to the first one of the redundant ports; transitioning the first one of the redundant ports to a DOWN state; transitioning the Internet protocol interface to the DOWN state from an UP state; and removing the Internet protocol route for the interface from the FIB of the router.Type: ApplicationFiled: February 12, 2008Publication date: August 13, 2009Applicant: ALCATEL LUCENInventors: Bashar Said Bou-Diab, John Coulter
-
Publication number: 20090161674Abstract: The present invention permits translation of SM addresses (*, G1) and (*, G2) to configurable SSM addresses (S0, G0). IGMPv2 group membership queries from the receiver subnet are translated to IGMPv3 membership queries for processing in a SSM network. In the preferred embodiment, packets travel via a connection to the multicast router (mrouter). The mrouter queries an IGMPv2 receiver. The IGMPv2 receiver generates a membership report and sends it back to the mrouter. The mrouter translates the membership report into a (S0, G0) as specified in a multicast address translation table and stores the translation in the Multicast Forward Information Base (MFIB) located in the mrouter. Multicast payload addressed (S0, G0) flowing towards the IGMPv2 receiver can be translated to (S0, G0). When media data is addressed to (S0, G0), the mrouter consults the MFIB for forwarding and can also translate the destination address to (S1, G1).Type: ApplicationFiled: December 21, 2007Publication date: June 25, 2009Inventors: Bashar Said Bou-Diab, Olivier Le Moigne, John Coulter
-
Patent number: 7535845Abstract: A selective, flow-based datapath architecture is described. A Flow Control Block Manager (FCBM) is located in a flow-based datapath for selectively and intelligently processing packets in the Flow Path. If, according to the FCBM, efficiency gains can be achieved by creating a flow control block and employing flow-based processing on a packet stream, the packets are processed accordingly. If, however, insufficient gains are anticipated the packets are processed in a flow-unaware manner. The FCBM determines the manner in which to process packets based on a set of criteria.Type: GrantFiled: October 28, 2004Date of Patent: May 19, 2009Assignee: Alcatel LucentInventors: Bashar Said Bou-Diab, Lyle Strub, Milan Zoranovic, Gerard Damm, Jerome Cornet
-
Publication number: 20090037379Abstract: An XML matching engine and method are provided, where policy rules expressed using XPath/XQuery policies are matched to streaming XML documents. Two distinct data structures are used: a combined modified DFA data structure for storing simple XPath queries (no wildcards or descendents) and a modified AFilter structure for storing complex queries (with wildcards or/and descendents). As the matching engine receives XML tags from XML parser, matching is performed in both structures in parallel.Type: ApplicationFiled: July 30, 2007Publication date: February 5, 2009Applicant: ALCATEL LUCENTInventors: Bashar Said Bou-Diab, Paul Boone
-
Patent number: 7483438Abstract: Systems and methods for managing network services between private networks are disclosed. Advertisement of network services which are available in a services network is controlled in accordance with a policy associated with each network service. Network service information is advertised to an external services network only for those network services which have associated policies permitting distribution of the network services through external networks. External network services may also or instead be advertised to a services network from one or more external services networks and subsequently made available in the services network.Type: GrantFiled: April 14, 2005Date of Patent: January 27, 2009Assignee: Alcatel LucentInventors: Laura Mihaela Serghi, Brian McBride, Bashar Said Bou-Diab
-
Publication number: 20080320128Abstract: A system and method of processing data, including identifying a first data processing criteria, communicating the first data processing criteria from a data processing application to a network element, receiving sensor data from a plurality of sensors at the network element, operating on the sensor data at the network element to process the data according to the identified first data processing criteria, resulting in a first processed data result, transmitting the first processed data result from the network element to the data processing application, and processing the first processed data result at the data processing application resulting in a second processed data result. The criteria can be dynamically updated.Type: ApplicationFiled: June 19, 2007Publication date: December 25, 2008Applicant: ALCATEL LUCENTInventors: Bashar Said Bou-Diab, Peter Rabinovitch