Patents by Inventor Hugo J. W. Vliegen

Hugo J. W. Vliegen has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9992310
    Abstract: An egress frame processing method, an Ethernet frame is received. Information defining an Internet Protocol (IP) tunnel between the network device and a peer network device over a public wide area network is determined. A media access control security (MACsec) policy that defines how to protect the Ethernet frame is determined based on the information defining the IP tunnel. The Ethernet frame is protected according to the MACsec policy. The following fields are appended to the protected Ethernet frame: (i) an unprotected layer 3 (L3) encapsulation identifying a layer 2 (L2)-over-L3 tunnel protocol; (ii) an unprotected IP header corresponding to the IP tunnel; and (iii) an unprotected outer Ethernet header, to produce a partly protected egress frame. The partly protected egress frame is transmitted to the peer network device over the IP tunnel of the public wide area network.
    Type: Grant
    Filed: March 22, 2016
    Date of Patent: June 5, 2018
    Assignee: Cisco Technology, Inc.
    Inventors: Kuralvanan Arangasamy, Brian Eliot Weis, Rakesh Chopra, Hugo J. W. Vliegen
  • Patent number: 9967372
    Abstract: In an egress processing method, an egress frame is received. The egress frame includes an outer Ethernet frame, an Internet Protocol (IP) header, a layer 3 (L3) encapsulation identifying a layer 2 (L2)-over-L3 tunnel protocol, and an inner Ethernet frame with a payload. The outer Ethernet frame, the IP header, and the inner Ethernet frame, and the L3 encapsulation are parsed. Based on results of the parsing, a media access control security (MACsec) policy that defines how to protect the inner Ethernet frame is determined, and the inner Ethernet frame is protected according to the MACsec policy, while leaving unprotected the outer Ethernet frame, the IP header, and the L3 encapsulation, to produce a partly protected output egress frame. The partly protected output egress frame is transmitted to the peer network device over a public wide area network.
    Type: Grant
    Filed: March 22, 2016
    Date of Patent: May 8, 2018
    Assignee: Cisco Technology, Inc.
    Inventors: Kuralvanan Arangasamy, Brian Eliot Weis, Rakesh Chopra, Hugo J. W. Vliegen
  • Publication number: 20170104851
    Abstract: An egress frame processing method, an Ethernet frame is received. Information defining an Internet Protocol (IP) tunnel between the network device and a peer network device over a public wide area network is determined. A media access control security (MACsec) policy that defines how to protect the Ethernet frame is determined based on the information defining the IP tunnel. The Ethernet frame is protected according to the MACsec policy. The following fields are appended to the protected Ethernet frame: (i) an unprotected layer 3 (L3) encapsulation identifying a layer 2 (L2)-over-L3 tunnel protocol; (ii) an unprotected IP header corresponding to the IP tunnel; and (iii) an unprotected outer Ethernet header, to produce a partly protected egress frame. The partly protected egress frame is transmitted to the peer network device over the IP tunnel of the public wide area network.
    Type: Application
    Filed: March 22, 2016
    Publication date: April 13, 2017
    Inventors: Kuralvanan Arangasamy, Brian Eliot Weis, Rakesh Chopra, Hugo J.W. Vliegen
  • Publication number: 20170104850
    Abstract: In an egress processing method, an egress frame is received. The egress frame includes an outer Ethernet frame, an Internet Protocol (IP) header, a layer 3 (L3) encapsulation identifying a layer 2 (L2)-over-L3 tunnel protocol, and an inner Ethernet frame with a payload. The outer Ethernet frame, the IP header, and the inner Ethernet frame, and the L3 encapsulation are parsed. Based on results of the parsing, a media access control security (MACsec) policy that defines how to protect the inner Ethernet frame is determined, and the inner Ethernet frame is protected according to the MACsec policy, while leaving unprotected the outer Ethernet frame, the IP header, and the L3 encapsulation, to produce a partly protected output egress frame. The partly protected output egress frame is transmitted to the peer network device over a public wide area network.
    Type: Application
    Filed: March 22, 2016
    Publication date: April 13, 2017
    Inventors: Kuralvanan Arangasamy, Brian Eliot Weis, Rakesh Chopra, Hugo J.W. Vliegen
  • Patent number: 8037204
    Abstract: A method and system for train inauguration over an internet protocol (IP) based communication network. The present invention describes a method of train inauguration that includes identifying a leading car of a plurality of cars that form a train. The train includes at least one unit of cars such that a first unit includes the leading car. Network and configuration information is discovered for cars in the train using a discovery protocol. The network and configuration information is broadcast to units in the train. Car and unit topology of the train is generated based on the network and configuration information and the leading car that is identified. NAT translation addresses are generated for fixed IP addresses of devices in the plurality of cars. Routing information is exchanged between routers to enable communication between devices in the train using the NAT translation addresses.
    Type: Grant
    Filed: February 11, 2005
    Date of Patent: October 11, 2011
    Assignee: Cisco Technology, Inc.
    Inventors: Luc Breton, Domenico Brunetti, Hugo J. W. Vliegen
  • Patent number: 7050801
    Abstract: A method and system for hitless wireless roaming in a mobile environment. The present invention describes a system for wireless connectivity in fast moving trains. The system comprises a router for routing Internet Protocol (IP) communication signals to and from a wireless network. The router is located on an object. A first antenna is also located on the object and is communicatively coupled to the router for transmitting the communication signals to and from a plurality of access points on the wireless network. A second antenna is also communicatively coupled to the router for transmitting the communication signals to and from the plurality of access points. The second antenna is positioned a distance from the first antenna on the object that allows the router continuous access to the wireless network as the first antenna and the second antenna roam through the wireless network while the object is moving.
    Type: Grant
    Filed: January 19, 2004
    Date of Patent: May 23, 2006
    Assignee: Cisco Technology, Inc.
    Inventors: Michael Segal, Samuel H. Ezekiel, Hugo J. W. Vliegen
  • Patent number: D728539
    Type: Grant
    Filed: March 26, 2012
    Date of Patent: May 5, 2015
    Assignee: Cisco Technology, Inc.
    Inventors: Craig Donald Dubrule, Mahbubul Alam, Hugo J. W. Vliegen, Chandrodaya Prasad
  • Patent number: D757697
    Type: Grant
    Filed: March 24, 2015
    Date of Patent: May 31, 2016
    Assignee: Cisco Technology, Inc.
    Inventors: Craig Donald Dubrule, Mahbubul Alam, Hugo J. W. Vliegen, Chandrodaya Prasad