Patents by Inventor James C. Anders
James C. Anders has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 12634339Abstract: In a network, Domain Name Service (DNS) queries may be handled by one or more resolvers and one or more authoritative name servers. If a DNS distributed denial of service attack is launched against the network, it may degrade the performance of the authoritative name servers. As such, systems and methods for protection of authoritative name servers are provided.Type: GrantFiled: December 6, 2023Date of Patent: May 19, 2026Assignee: Level 3 Communications, LLCInventors: John R.B. Woodworth, Dean Ballew, Carol D. Lovell, Dan Luther, James C. Anders, Lisa Lamanna
-
Patent number: 12603916Abstract: In a network system in which a server receives packets each including a source address, and in which the server ordinarily responds to each packet, Distributed Denial of Service attacks may be launched by malicious actors controlling a plurality of network devices. In such an attack, the attacking devices may spoof the IP address of a legitimate device, e.g., they may include, in each packet, the source address of the legitimate device. As such, systems and methods for increased security using client address manipulation are provided.Type: GrantFiled: April 8, 2024Date of Patent: April 14, 2026Assignee: Level 3 Communications, LLCInventors: John R.B. Woodworth, Dean Ballew, Lisa Lamanna, James C. Anders, Dan Luther, Carol D. Lovell
-
Publication number: 20260006003Abstract: Novel tools and techniques are provided for implementing improvement to domain name system (“DNS”) security. In various embodiments, a computing system may receive a user datagram protocol (“UDP”)-based DNS request, and may send a UDP-based response message, which may include an empty payload portion and a header portion containing a truncate flag that is set, which indicates to resend the request as a transmission control protocol (“TCP”)-based DNS request. When the TCP-based DNS request is received within a first period, the computing system may send, to the source address, a TCP-based response message comprising an answer to a query (in the TCP-based DNS request) for a destination DNS record associated with a destination device. If no TCP-based DNS request is received from the source address within the first period, the computing system may block all UDP-based DNS requests from the source address for at least a second period.Type: ApplicationFiled: September 4, 2025Publication date: January 1, 2026Applicant: Level 3 Communications, LLCInventors: Dan Luther, Dean Ballew, John R.B. Woodworth, Carol Dawn Lovell, James C. Anders, Lisa Lamanna
-
Patent number: 12413554Abstract: Novel tools and techniques are provided for implementing improvement to domain name system (“DNS”) security. In various embodiments, a computing system may receive a user datagram protocol (“UDP”)-based DNS request, and may send a UDP-based response message, which may include an empty payload portion and a header portion containing a truncate flag that is set, which indicates to resend the request as a transmission control protocol (“TCP”)-based DNS request. When the TCP-based DNS request is received within a first period, the computing system may send, to the source address, a TCP-based response message comprising an answer to a query (in the TCP-based DNS request) for a destination DNS record associated with a destination device. If no TCP-based DNS request is received from the source address within the first period, the computing system may block all UDP-based DNS requests from the source address for at least a second period.Type: GrantFiled: January 31, 2024Date of Patent: September 9, 2025Assignee: Level 3 Communications, LLCInventors: Dan Luther, Dean Ballew, John R. B. Woodworth, Carol Dawn Lovell, James C. Anders, Lisa Lamanna
-
Publication number: 20240340307Abstract: In a network system in which a server receives packets each including a source address, and in which the server ordinarily responds to each packet, Distributed Denial of Service attacks may be launched by malicious actors controlling a plurality of network devices. In such an attack, the attacking devices may spoof the IP address of a legitimate device, e.g., they may include, in each packet, the source address of the legitimate device. As such, systems and methods for increased security using client address manipulation are provided.Type: ApplicationFiled: April 8, 2024Publication date: October 10, 2024Applicant: Level 3 Communications, LLCInventors: John R.B. Woodworth, Dean Ballew, Lisa Lamanna, James C. Anders, Dan Luther, Carol D. Lovell
-
Publication number: 20240267359Abstract: Novel tools and techniques are provided for implementing improvement to domain name system (“DNS”) security. In various embodiments, a computing system may receive a user datagram protocol (“UDP”)-based DNS request, and may send a UDP-based response message, which may include an empty payload portion and a header portion containing a truncate flag that is set, which indicates to resend the request as a transmission control protocol (“TCP”)-based DNS request. When the TCP-based DNS request is received within a first period, the computing system may send, to the source address, a TCP-based response message comprising an answer to a query (in the TCP-based DNS request) for a destination DNS record associated with a destination device. If no TCP-based DNS request is received from the source address within the first period, the computing system may block all UDP-based DNS requests from the source address for at least a second period.Type: ApplicationFiled: January 31, 2024Publication date: August 8, 2024Applicant: Level 3 Communications, LLCInventors: Dan Luther, Dean Ballew, John R.B. Woodworth, Carol Dawn Lovell, James C. Anders, Lisa Lamanna
-
Publication number: 20240187447Abstract: In a network, Domain Name Service (DNS) queries may be handled by one or more resolvers and one or more authoritative name servers. If a DNS distributed denial of service attack is launched against the network, it may degrade the performance of the authoritative name servers. As such, systems and methods for protection of authoritative name servers are provided.Type: ApplicationFiled: December 6, 2023Publication date: June 6, 2024Applicant: Level 3 Communications, LLCInventors: John R.B. Woodworth, Dean Ballew, Carol D. Lovell, Dan Luther, James C. Anders, Lisa Lamanna
-
Publication number: 20230269221Abstract: The present application describes the generation and use of micro-pools that are assigned to various DHCP servers by an agent. In examples, each micro-pool includes a set number of IP addresses. The agent tracks which DHCP servers are assigned which micro-pools. As the IP addresses of a micro-pool are assigned to requesting computing devices, the agent may subsequently assign an additional micro-pool to a particular DHCP server.Type: ApplicationFiled: April 21, 2023Publication date: August 24, 2023Applicant: CenturyLink Intellectual Property LLCInventors: John R.B. Woodworth, Dean Ballew, James C. Anders
-
Patent number: 11637808Abstract: The present application describes the generation and use of micro-pools that are assigned to various DHCP servers by an agent. In examples, each micro-pool includes a set number of IP addresses. The agent tracks which DHCP servers are assigned which micro-pools. As the IP addresses of a micro-pool are assigned to requesting computing devices, the agent may subsequently assign an additional micro-pool to a particular DHCP server.Type: GrantFiled: April 18, 2022Date of Patent: April 25, 2023Assignee: CenturyLink Intellectual Property LLCInventors: John R. B. Woodworth, Dean Ballew, James C. Anders
-
Publication number: 20220345445Abstract: The present application describes the generation and use of micro-pools that are assigned to various DHCP servers by an agent. In examples, each micro-pool includes a set number of IP addresses. The agent tracks which DHCP servers are assigned which micro-pools. As the IP addresses of a micro-pool are assigned to requesting computing devices, the agent may subsequently assign an additional micro-pool to a particular DHCP server.Type: ApplicationFiled: April 18, 2022Publication date: October 27, 2022Applicant: CenturyLink Intellectual Property LLCInventors: John R.B. Woodworth, Dean Ballew, James C. Anders