Patents by Inventor Biswajit Nandy
Biswajit Nandy has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 10320619Abstract: Systems and methods for discovery and mapping of industrial control and SCADA networks are described herein. The disclosed systems and methods help operators ensure the cyber security of their SCADA network through accurate discovery, fingerprinting and mapping the industrial control network map, including PLCs (Programmable Logic Controller) and RTUs (Remote Terminal Unit), using passive techniques.Type: GrantFiled: November 13, 2017Date of Patent: June 11, 2019Assignee: SOLANA NETWORKS INC.Inventors: Nabil Seddigh, Biswajit Nandy, Rupinder Singh Makkar, Craig Dillabaugh, Kevin Wong
-
Publication number: 20180139104Abstract: Systems and methods for discovery and mapping of industrial control and SCADA networks are described herein. The disclosed systems and methods help operators ensure the cyber security of their SCADA network through accurate discovery, fingerprinting and mapping the industrial control network map, including PLCs (Programmable Logic Controller) and RTUs (Remote Terminal Unit), using passive techniques.Type: ApplicationFiled: November 13, 2017Publication date: May 17, 2018Inventors: Nabil SEDDIGH, Biswajit NANDY, Rupinder Singh MAKKAR, Craig DILLABAUGH, Kevin WONG
-
Patent number: 9210181Abstract: Disclosed is a method 101 to be used on collected network data flow 116 associated with a network 100; the method 101 includes: an anomaly-detection operation 103 including: (A) obtaining the collected network data flow 116; and (B) performing an iterative principal component analysis on the collected network data flow 116 to detect an anomaly associated with the collected network data flow 116. The method may be used in a server and a network, and may also be implemented as a non-transitory computer-readable media. A corresponding system for detecting the anomaly in the network flow data is also provided.Type: GrantFiled: May 26, 2014Date of Patent: December 8, 2015Assignee: SOLANA NETWORKS INC.Inventors: Biswajit Nandy, Nabil Seddigh, Rupinder Singh Makkar, Hassan Halabian, Ioannis Lambadaris
-
Publication number: 20150341376Abstract: Disclosed is a method 101 to be used on collected network data flow 116 associated with a network 100; the method 101 includes: an anomaly-detection operation 103 including: (A) obtaining the collected network data flow 116; and (B) performing an iterative principal component analysis on the collected network data flow 116 to detect an anomaly associated with the collected network data flow 116. The method may be used in a server and a network, and may also be implemented as a non-transitory computer-readable media. A corresponding system for detecting the anomaly in the network flow data is also provided.Type: ApplicationFiled: May 26, 2014Publication date: November 26, 2015Applicant: SOLANA NETWORKS INC.Inventors: Biswajit NANDY, Nabil SEDDIGH, Rupinder Singh MAKKAR, Hassan HALABIAN, Ioannis LAMBADARIS
-
Patent number: 9191325Abstract: Network traffic flow records received from a network probe are recorded in multiple sets of buckets of different granularity, optimized for the purpose of almost instant analysis and display as well as for longer term report generation. The flow data is pre-processed and stored redundantly in parallel in multiple bucketized data base tables of different time window sizes. Denormalized tables keyed on different combinations of traffic flow attributes are precomputed and stored in parallel tables redundantly to facilitate a near real time display of summarized network traffic data, and a capability to rapidly generate reports for different monitoring periods.Type: GrantFiled: October 29, 2013Date of Patent: November 17, 2015Assignee: SOLANA NETWORKS INC.Inventors: Donald William Arthur Bennett, Nisan Rowhani, Biswajit Nandy, Kevin Wong
-
Patent number: 9178824Abstract: Network traffic flow records received from a network probe are filtered and short traffic flows are selected so that the total number of short traffic flows is high but the number of bytes in the short traffic flows is negligible, followed by discarding of the short traffic flows. Traffic flow data is recorded in multiple sets of buckets of different granularity, optimized for the purpose of almost instant analysis and display as well as for longer term report generation. The traffic flow data is pre-processed and stored redundantly in parallel in multiple bucketized data base tables of different time window sizes. A corresponding method and system are provided.Type: GrantFiled: October 29, 2013Date of Patent: November 3, 2015Assignee: SOLANA NETWORKS INC.Inventors: Donald William Arthur Bennett, Nisan Rowhani, Biswajit Nandy, Kevin Wong
-
Publication number: 20150120856Abstract: Network traffic flow records received from a network probe are recorded in multiple sets of buckets of different granularity, optimized for the purpose of almost instant analysis and display as well as for longer term report generation. The flow data is pre-processed and stored redundantly in parallel in multiple bucketized data base tables of different time window sizes. Denormalized tables keyed on different combinations of traffic flow attributes are precomputed and stored in parallel tables redundantly to facilitate a near real time display of summarized network traffic data, and a capability to rapidly generate reports for different monitoring periods.Type: ApplicationFiled: October 29, 2013Publication date: April 30, 2015Applicant: SOLANA NETWORKS INC.Inventors: Donald William Arthur BENNETT, Nisan ROWHANI, Biswajit NANDY, Kevin WONG
-
Publication number: 20150120959Abstract: Network traffic flow records received from a network probe are filtered and short traffic flows are selected so that the total number of short traffic flows is high but the number of bytes in the short traffic flows is negligible, followed by discarding of the short traffic flows. Traffic flow data is recorded in multiple sets of buckets of different granularity, optimized for the purpose of almost instant analysis and display as well as for longer term report generation. The traffic flow data is pre-processed and stored redundantly in parallel in multiple bucketized data base tables of different time window sizes. A corresponding method and system are provided.Type: ApplicationFiled: October 29, 2013Publication date: April 30, 2015Applicant: SOLANA NETWORKS INC.Inventors: Donald William Arthur BENNETT, Nisan ROWHANI, Biswajit NANDY, Kevin WONG
-
Patent number: 8811346Abstract: Devices, networks and methods relating to routing gateway traffic in a mesh network for wireless access. A mesh network has multiple nodes in at least one gateway node through which all incoming and outgoing data traffic pass through. The nodes provide wireless access to wireless and user devices, each of which is associated with anode in the mesh network. Each gateway node contains a record detailing which nodes are providing wireless access to which wireless end user device and which nodes are associated with which end user devices. This record of each end user device's location is periodically updated as the gateway node periodically receives data from the nodes which detail the device is being serviced by which node. Any incoming data traffic destined for an end user device is encapsulated and routed to the proper node servicing that end user device.Type: GrantFiled: April 30, 2012Date of Patent: August 19, 2014Assignee: BelAir Networks Inc.Inventors: Stephen G. Rayment, Biswajit Nandy, Tricci Yuk-Ying So
-
Patent number: 8737235Abstract: A real-time network-analysis system comprises a network appliance and a plurality of management devices. The network appliance continuously monitors an object network and synthesizes a current network image comprising contemporaneous indicators of connectivity, occupancy, and performance of the object network. A management-client device may gain access to the network image for timely control and for use in producing long-term network-evolution plans. To enable the creation of a real-time network image, optimized topology synthesis algorithms are devised to minimize the computational effort. The real-time network-analysis system is adapted for use with an object network employing a variety of routing protocols, such as link-state protocols, and network-management protocols, such as the Simple-Network-Management protocol.Type: GrantFiled: December 11, 2009Date of Patent: May 27, 2014Assignee: Cavesson Software LLCInventors: Biswajit Nandy, Nabil Seddigh, Rupinder Singh Makkar, Peter Steven Pieda
-
Publication number: 20120213215Abstract: Devices, networks and methods relating to routing gateway traffic in a mesh network for wireless access. A mesh network has multiple nodes in at least one gateway node through which all incoming and outgoing data traffic pass through. The nodes provide wireless access to wireless and user devices, each of which is associated with anode in the mesh network. Each gateway node contains a record detailing which nodes are providing wireless access to which wireless end user device and which nodes are associated with which end user devices. This record of each end user device's location is periodically updated as the gateway node periodically receives data from the nodes which detail the device is being serviced by which node. Any incoming data traffic destined for an end user device is encapsulated and routed to the proper node servicing that end user device.Type: ApplicationFiled: April 30, 2012Publication date: August 23, 2012Inventors: Stephen G. Rayment, Biswajit Nandy, Tricci Yuk-Ying So
-
Patent number: 8189551Abstract: Devices, networks and methods relating to routing gateway traffic in a mesh network for wireless access. A mesh network has multiple nodes in at least one gateway node through which all incoming and outgoing data traffic pass through. The nodes provide wireless access to wireless and user devices, each of which is associated with a node in the mesh network. Each gateway node contains a record detailing which nodes are providing wireless access to which wireless end user device and which nodes are associated with which end user devices. This record of each end user device's location is periodically updated as the gateway node periodically receives data from the nodes which detail the device is being serviced by which node. Any incoming data traffic destined for an end user device is encapsulated and routed to the proper node servicing that end user device.Type: GrantFiled: May 12, 2009Date of Patent: May 29, 2012Assignee: BelAir Networks Inc.Inventors: Stephen G. Rayment, Biswajit Nandy, Tricci Yuk-Ying So
-
Patent number: 8125927Abstract: Methods and apparatus for topology discovery of a network having heterogeneous network devices are disclosed. A network appliance communicates with the network devices to acquire device descriptors and characterize the network devices accordingly. Topology discovery is based on device characteristics, media-access data, and encoded connectivity patterns, where each connectivity pattern is defined by devices of specific device types and respective media-access data. A topology deduction module of the network appliance synthesizes a network image starting with unconnected devices and progressively incorporating detected connectivity patterns.Type: GrantFiled: June 18, 2009Date of Patent: February 28, 2012Assignee: Solana Networks Inc.Inventors: Biswajit Nandy, Nabil Seddigh, Sabeel Ansari, Kevin Wong, Rupinder Singh Makkar
-
Publication number: 20100091664Abstract: A real-time network-analysis system comprises a network appliance and a plurality of management devices. The network appliance continuously monitors an object network and synthesizes a current network image comprising contemporaneous indicators of connectivity, occupancy, and performance of the object network. A management-client device may gain access to the network image for timely control and for use in producing long-term network-evolution plans. To enable the creation of a real-time network image, optimized topology synthesis algorithms are devised to minimize the computational effort. The real-time network-analysis system is adapted for use with an object network employing a variety of routing protocols, such as link-state protocols, and network-management protocols, such as the Simple-Network-Management protocol.Type: ApplicationFiled: December 11, 2009Publication date: April 15, 2010Inventors: Biswajit NANDY, Nabil Seddigh, Rupinder Singh Makkar, Peter Steven Pieda
-
Publication number: 20090316602Abstract: Methods and apparatus for topology discovery of a network having heterogeneous network devices are disclosed. A network appliance communicates with the network devices to acquire device descriptors and characterize the network devices accordingly. Topology discovery is based on device characteristics, media-access data, and encoded connectivity patterns, where each connectivity pattern is defined by devices of specific device types and respective media-access data. A topology deduction module of the network appliance synthesizes a network image starting with unconnected devices and progressively incorporating detected connectivity patterns.Type: ApplicationFiled: June 18, 2009Publication date: December 24, 2009Inventors: Biswajit Nandy, Nabil Seddigh, Sabeel Ansari, Kevin Wong, Rupinder Singh Makkar
-
Patent number: 7636318Abstract: A real-time network-analysis system comprises a network appliance and a plurality of management devices. The network appliance continuously monitors an object network and synthesizes a current network image comprising contemporaneous indicators of connectivity, occupancy, and performance of the object network. A management-client device may gain access to the network image for timely control and for use in producing long-term network-evolution plans. To enable the creation of a real-time network image, optimized topology synthesis algorithms are devised to minimize the computational effort. The real-time network-analysis system is adapted for use with an object network employing a variety of routing protocols, such as link-state protocols, and network-management protocols, such as the Simple-Network-Management protocol.Type: GrantFiled: December 1, 2006Date of Patent: December 22, 2009Assignee: Solana Networks Inc.Inventors: Biswajit Nandy, Nabil Seddigh, Rupinder Singh Makkar, Peter Steven Pieda
-
Publication number: 20090225735Abstract: Devices, networks and methods relating to routing gateway traffic in a mesh network for wireless access. A mesh network has multiple nodes in at least one gateway node through which all incoming and outgoing data traffic pass through. The nodes provide wireless access to wireless and user devices, each of which is associated with a node in the mesh network. Each gateway node contains a record detailing which nodes are providing wireless access to which wireless end user device and which nodes are associated with which end user devices. This record of each end user device's location is periodically updated as the gateway node periodically receives data from the nodes which detail the device is being serviced by which node. Any incoming data traffic destined for an end user device is encapsulated and routed to the proper node servicing that end user device.Type: ApplicationFiled: May 12, 2009Publication date: September 10, 2009Inventors: Stephen G. Rayment, Biswajit Nandy, Tricci Yuk-Ying So
-
Patent number: 7557689Abstract: An alert system for a communications network has a plurality of client devices and a plurality of alert servers each adapted to provide alerts to a respective subset of the client devices to provide scalability. Users at the client devices subscribe to receive alerts by selecting a scope of distribution of alerts. The selection involves selecting a type of alert to receive, a level of severity of alerts to receive, and a geographic scope. In response to receiving a request to issue an alert, an alert server notifies the other alert servers of the alert. Each alert server determines which client devices of the respective subset of client devices are to receive the alert. Each alert server then sends an alert message to its client devices that are to receive the alert.Type: GrantFiled: November 20, 2006Date of Patent: July 7, 2009Assignee: Solana Networks Inc.Inventors: Nabil Seddigh, Biswajit Nandy, Rupinder Singh Makkar, Donald William Arthur Bennett
-
Patent number: 7545782Abstract: Devices, networks and methods relating to routing gateway traffic in a mesh network for wireless access. A mesh network has multiple nodes in at least one gateway node through which all incoming and outgoing data traffic pass through. The nodes provide wireless access to wireless and user devices, each of which is associated with a node in the mesh network. Each gateway node contains a record detailing which nodes are providing wireless access to which wireless end user device and which nodes are associated with which end user devices. This record of each end user device's location is periodically updated as the gateway node periodically receives data from the nodes which detail the device is being serviced by which node. Any incoming data traffic destined for an end user device is encapsulated and routed to the proper node servicing that end user device.Type: GrantFiled: February 19, 2004Date of Patent: June 9, 2009Assignee: BelAir Networks, Inc.Inventors: Stephen G. Rayment, Biswajit Nandy, Tricci Yuk-Ying So
-
Patent number: 7529480Abstract: A method for monitoring lightpaths in an optical network comprising nodes interconnected by wavelength-multiplexed links is disclosed. Each lightpath is identified by a respective optical signature. A node stores identifiers of optical signatures of lightpaths designated to traverse the node and identifiers of adjacent nodes. Each node also maintains a record of all optical signatures it detects. A command-line interface associated with a selected node tracks a selected lightpath, designated to traverse the selected node, by propagating messages in an upstream direction, a downstream direction, or both, requesting other nodes to provide information pertinent to the selected lightpath. The selected node may also send messages to all its neighboring nodes requesting each to indicated detection, or otherwise, of the selected lightpath.Type: GrantFiled: December 2, 2003Date of Patent: May 5, 2009Assignee: Alcatel-Lucent Canada Inc.Inventors: Nabil Seddigh, Biswajit Nandy, Paul David Obeda, Douglas Heath Patriarche, Udo Mircea Neustadter