Patents by Inventor Michael Fine
Michael Fine has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20230051114Abstract: A computer-implemented method of operating a user-searchable database system of curated, themed digital content data, which method includes operating a Connects function to process and store heterogeneous digital content comprising topic data as curated topic data and identified connections between each topic and other topics, and operating a user interface to enable users to search the curated topics and present a search results page in a way that invites further investigation of topics searched, including a list or compilation of topics matching terms defining the search. The method also includes displaying topic elements corresponding to the list or compilation of matching topics in prioritized order based on each topic's relatedness to the search.Type: ApplicationFiled: November 2, 2022Publication date: February 16, 2023Inventors: Michael Fine, Jesse ERLBAUM
-
Patent number: 11494822Abstract: A computer-implemented method of operating a user-searchable database system of curated, themed digital content data, which method includes operating a Connects function to process and store heterogeneous digital content comprising topic data as curated topic data and identified connections between each topic and other topics, and operating a user interface to enable users to search the curated topics and present a search results page in a way that invites further investigation of topics searched, including a list or compilation of topics matching terms defining the search. The method also includes displaying topic elements corresponding to the list or compilation of matching topics in prioritized order based on each topic's relatedness to the search.Type: GrantFiled: May 8, 2020Date of Patent: November 8, 2022Assignee: Mediander LLCInventors: Michael Fine, Jesse Erlbaum
-
Publication number: 20210056605Abstract: A computer-implemented method of operating a user-searchable database system of curated, themed digital content data, which method includes operating a Connects function to process and store heterogeneous digital content comprising topic data as curated topic data and identified connections between each topic and other topics, and operating a user interface to enable users to search the curated topics and present a search results page in a way that invites further investigation of topics searched, including a list or compilation of topics matching terms defining the search. The method also includes displaying topic elements corresponding to the list or compilation of matching topics in prioritized order based on each topic's relatedness to the search.Type: ApplicationFiled: May 8, 2020Publication date: February 25, 2021Inventors: Michael Fine, Jesse ERLBAUM
-
Publication number: 20140237543Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.Type: ApplicationFiled: April 29, 2014Publication date: August 21, 2014Applicant: ARUBA NETWORKS, INC.Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
-
Patent number: 8713639Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.Type: GrantFiled: July 13, 2012Date of Patent: April 29, 2014Assignee: Aruba Networks, Inc.Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
-
Patent number: 8713201Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.Type: GrantFiled: May 27, 2010Date of Patent: April 29, 2014Assignee: Cisco Technology, Inc.Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
-
Patent number: 8555056Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.Type: GrantFiled: January 24, 2011Date of Patent: October 8, 2013Assignee: Cisco Technology, Inc.Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
-
Publication number: 20130042002Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.Type: ApplicationFiled: July 13, 2012Publication date: February 14, 2013Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
-
Patent number: 8245281Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.Type: GrantFiled: December 28, 2007Date of Patent: August 14, 2012Assignee: Aruba Networks, Inc.Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
-
Patent number: 8037514Abstract: Various systems and method are disclosed for disseminating security server contact information in a network. For example, one method (e.g., performed by a security server) involves determining that a network device is a secure network device, in response to participating in a security exchange with the network device; and then sending a server list to the network device. The server list includes the network address of at least one security server. Another method (e.g., performed by a network device) involves initiating an authentication exchange; receiving a server list, which includes the network address of a security server, as part of the authentication exchange; and communicating with the security server by sending a packet to the network address included in the server list.Type: GrantFiled: March 1, 2005Date of Patent: October 11, 2011Assignee: Cisco Technology, Inc.Inventors: Irene H. Kuffel, Wilson Kok, Michael Fine, Fabio R. Maino, Jed Lin Lau
-
Patent number: 7992193Abstract: A method and an apparatus are disclosed for securing authentication, authorization and accounting (AAA) protocol messages. An encryption key, a device identifier value, and verification data are received and stored at a network device. The verification data comprises in part a copy the encryption key and the device identifier value, and has been encrypted using a private key of a server. A shared secret is generated by applying a computational function to the encryption key and the device identifier value. Based on the shared secret, a first message integrity check value for a message is generated. The message, the first integrity check value, and the verification data are sent to the server. The server decrypts the verification data using the private key, extracts the encryption key and the device identifier value, and generates the same shared secret by applying the same computational function to the extracted encryption key and device identifier value.Type: GrantFiled: March 17, 2005Date of Patent: August 2, 2011Assignee: Cisco Technology, Inc.Inventors: Fabio Maino, Michael Fine, Irene Kuffel, Arthur Zavalkovsky
-
Publication number: 20110119752Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.Type: ApplicationFiled: January 24, 2011Publication date: May 19, 2011Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
-
Patent number: 7886145Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.Type: GrantFiled: November 23, 2004Date of Patent: February 8, 2011Assignee: Cisco Technology, Inc.Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
-
Patent number: 7877601Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.Type: GrantFiled: November 30, 2004Date of Patent: January 25, 2011Assignee: Cisco Technology, Inc.Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
-
Patent number: 7840708Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.Type: GrantFiled: August 13, 2007Date of Patent: November 23, 2010Assignee: Cisco Technology, Inc.Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
-
Publication number: 20100235544Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.Type: ApplicationFiled: May 27, 2010Publication date: September 16, 2010Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
-
Patent number: 7546458Abstract: An access point in a wireless communication system can be configured to include multiple virtual LANS (VLANs) based on security levels, thereby allowing secure traffic to be isolated from insecure traffic. Configuring the access point can include assigning a security level to each VLAN and setting a security association for each station associated with the access point. Based on this security association, each station can be assigned to an appropriate VLAN.Type: GrantFiled: October 18, 2002Date of Patent: June 9, 2009Assignee: Atheros Communications, Inc.Inventors: Aman Singla, Andrew M. Davidson, Michael Fine, Kevin Hayes
-
Publication number: 20090049196Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.Type: ApplicationFiled: August 13, 2007Publication date: February 19, 2009Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
-
Publication number: 20080163340Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.Type: ApplicationFiled: December 28, 2007Publication date: July 3, 2008Applicant: AVENDA SYSTEMS, INC.Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
-
Patent number: 7200145Abstract: The invention uses a layer 2 switch (L2 switch), or bridge, to separate user's message traffic by use of Virtual Local Area Networks (VLANs) defined within the switch. Three new types of ports are defined, “promiscuous” ports “isolated” ports, and “community” ports. Three types of VLANs internal to the switch are defined, “primary” VLANs, “isolated” VLANs and “community” VLANs. The promiscuous ports are connected to layer 3 or layer 4 devices. Isolated ports and community ports are connected to individual user's servers, etc., and maintain traffic for each user separate from other users. The primary VLAN connects to all promiscuous ports, to all isolated ports, and to all community ports. The primary VLAN is a one way connection from promiscuous ports to isolated or community ports. An isolated VLAN connects to all promiscuous ports and to all isolated ports. The isolated VLAN is a one way connection from an isolated port to the promiscuous ports.Type: GrantFiled: May 5, 2004Date of Patent: April 3, 2007Assignee: Cisco Technology, Inc.Inventors: Thomas J. Edsall, Marco Foschiano, Michael Fine, Thomas Nosella