Patents by Inventor Michael Fine

Michael Fine has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20230051114
    Abstract: A computer-implemented method of operating a user-searchable database system of curated, themed digital content data, which method includes operating a Connects function to process and store heterogeneous digital content comprising topic data as curated topic data and identified connections between each topic and other topics, and operating a user interface to enable users to search the curated topics and present a search results page in a way that invites further investigation of topics searched, including a list or compilation of topics matching terms defining the search. The method also includes displaying topic elements corresponding to the list or compilation of matching topics in prioritized order based on each topic's relatedness to the search.
    Type: Application
    Filed: November 2, 2022
    Publication date: February 16, 2023
    Inventors: Michael Fine, Jesse ERLBAUM
  • Patent number: 11494822
    Abstract: A computer-implemented method of operating a user-searchable database system of curated, themed digital content data, which method includes operating a Connects function to process and store heterogeneous digital content comprising topic data as curated topic data and identified connections between each topic and other topics, and operating a user interface to enable users to search the curated topics and present a search results page in a way that invites further investigation of topics searched, including a list or compilation of topics matching terms defining the search. The method also includes displaying topic elements corresponding to the list or compilation of matching topics in prioritized order based on each topic's relatedness to the search.
    Type: Grant
    Filed: May 8, 2020
    Date of Patent: November 8, 2022
    Assignee: Mediander LLC
    Inventors: Michael Fine, Jesse Erlbaum
  • Publication number: 20210056605
    Abstract: A computer-implemented method of operating a user-searchable database system of curated, themed digital content data, which method includes operating a Connects function to process and store heterogeneous digital content comprising topic data as curated topic data and identified connections between each topic and other topics, and operating a user interface to enable users to search the curated topics and present a search results page in a way that invites further investigation of topics searched, including a list or compilation of topics matching terms defining the search. The method also includes displaying topic elements corresponding to the list or compilation of matching topics in prioritized order based on each topic's relatedness to the search.
    Type: Application
    Filed: May 8, 2020
    Publication date: February 25, 2021
    Inventors: Michael Fine, Jesse ERLBAUM
  • Publication number: 20140237543
    Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.
    Type: Application
    Filed: April 29, 2014
    Publication date: August 21, 2014
    Applicant: ARUBA NETWORKS, INC.
    Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
  • Patent number: 8713639
    Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.
    Type: Grant
    Filed: July 13, 2012
    Date of Patent: April 29, 2014
    Assignee: Aruba Networks, Inc.
    Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
  • Patent number: 8713201
    Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.
    Type: Grant
    Filed: May 27, 2010
    Date of Patent: April 29, 2014
    Assignee: Cisco Technology, Inc.
    Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
  • Patent number: 8555056
    Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.
    Type: Grant
    Filed: January 24, 2011
    Date of Patent: October 8, 2013
    Assignee: Cisco Technology, Inc.
    Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
  • Publication number: 20130042002
    Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.
    Type: Application
    Filed: July 13, 2012
    Publication date: February 14, 2013
    Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
  • Patent number: 8245281
    Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.
    Type: Grant
    Filed: December 28, 2007
    Date of Patent: August 14, 2012
    Assignee: Aruba Networks, Inc.
    Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
  • Patent number: 8037514
    Abstract: Various systems and method are disclosed for disseminating security server contact information in a network. For example, one method (e.g., performed by a security server) involves determining that a network device is a secure network device, in response to participating in a security exchange with the network device; and then sending a server list to the network device. The server list includes the network address of at least one security server. Another method (e.g., performed by a network device) involves initiating an authentication exchange; receiving a server list, which includes the network address of a security server, as part of the authentication exchange; and communicating with the security server by sending a packet to the network address included in the server list.
    Type: Grant
    Filed: March 1, 2005
    Date of Patent: October 11, 2011
    Assignee: Cisco Technology, Inc.
    Inventors: Irene H. Kuffel, Wilson Kok, Michael Fine, Fabio R. Maino, Jed Lin Lau
  • Patent number: 7992193
    Abstract: A method and an apparatus are disclosed for securing authentication, authorization and accounting (AAA) protocol messages. An encryption key, a device identifier value, and verification data are received and stored at a network device. The verification data comprises in part a copy the encryption key and the device identifier value, and has been encrypted using a private key of a server. A shared secret is generated by applying a computational function to the encryption key and the device identifier value. Based on the shared secret, a first message integrity check value for a message is generated. The message, the first integrity check value, and the verification data are sent to the server. The server decrypts the verification data using the private key, extracts the encryption key and the device identifier value, and generates the same shared secret by applying the same computational function to the extracted encryption key and device identifier value.
    Type: Grant
    Filed: March 17, 2005
    Date of Patent: August 2, 2011
    Assignee: Cisco Technology, Inc.
    Inventors: Fabio Maino, Michael Fine, Irene Kuffel, Arthur Zavalkovsky
  • Publication number: 20110119752
    Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.
    Type: Application
    Filed: January 24, 2011
    Publication date: May 19, 2011
    Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
  • Patent number: 7886145
    Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.
    Type: Grant
    Filed: November 23, 2004
    Date of Patent: February 8, 2011
    Assignee: Cisco Technology, Inc.
    Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
  • Patent number: 7877601
    Abstract: A method and system for including security information with a packet is disclosed. A packet is detected as it exits a first network and enters a second network. The first network is configured to support a network security technique, and the second network is not configured to support the network security technique. Network security information associated with the network security technique is included with the packet. A network device is configured to include network security information in overhead of a packet. A method for identifying a first network device in a network is also disclosed. Identification information of the first network is communicated to a second network device.
    Type: Grant
    Filed: November 30, 2004
    Date of Patent: January 25, 2011
    Assignee: Cisco Technology, Inc.
    Inventors: Michael R. Smith, Padmanabha Nallur, Wilson Kok, Michael Fine
  • Patent number: 7840708
    Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.
    Type: Grant
    Filed: August 13, 2007
    Date of Patent: November 23, 2010
    Assignee: Cisco Technology, Inc.
    Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
  • Publication number: 20100235544
    Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.
    Type: Application
    Filed: May 27, 2010
    Publication date: September 16, 2010
    Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
  • Patent number: 7546458
    Abstract: An access point in a wireless communication system can be configured to include multiple virtual LANS (VLANs) based on security levels, thereby allowing secure traffic to be isolated from insecure traffic. Configuring the access point can include assigning a security level to each VLAN and setting a security association for each station associated with the access point. Based on this security association, each station can be assigned to an appropriate VLAN.
    Type: Grant
    Filed: October 18, 2002
    Date of Patent: June 9, 2009
    Assignee: Atheros Communications, Inc.
    Inventors: Aman Singla, Andrew M. Davidson, Michael Fine, Kevin Hayes
  • Publication number: 20090049196
    Abstract: A method and system for the assignment of security group information using a proxy is disclosed. The method includes receiving an address of a network device at a first network device, receiving a security group of the network device at the first network device and associating the address information and the security group information with one another at the first network device. The first network device is coupled to a second network device. The address is represented by address information, which is received from the second network device. The security group is identified using the security group information, which indicates the network device is a member of the security group. The address information and the security group information are associated with one another by storing the address information and the security group information at the first network device.
    Type: Application
    Filed: August 13, 2007
    Publication date: February 19, 2009
    Inventors: Michael R. Smith, Awais B. Nemat, Michael Fine
  • Publication number: 20080163340
    Abstract: A method and apparatus for integrating various network access control frameworks under the control of a single policy decision point (PDP). The apparatus supports pluggable protocol terminators to interface to any number of access protocols or backend support services. The apparatus contains Trust and Identity Mediators to mediate between the protocol terminators and a canonical policy subsystem, translating attributes between framework representations, and a canonical representation using extensible data-driven dictionaries.
    Type: Application
    Filed: December 28, 2007
    Publication date: July 3, 2008
    Applicant: AVENDA SYSTEMS, INC.
    Inventors: Santhosh Cheeniyil, Krishna Prabhakar, Michael Fine
  • Patent number: 7200145
    Abstract: The invention uses a layer 2 switch (L2 switch), or bridge, to separate user's message traffic by use of Virtual Local Area Networks (VLANs) defined within the switch. Three new types of ports are defined, “promiscuous” ports “isolated” ports, and “community” ports. Three types of VLANs internal to the switch are defined, “primary” VLANs, “isolated” VLANs and “community” VLANs. The promiscuous ports are connected to layer 3 or layer 4 devices. Isolated ports and community ports are connected to individual user's servers, etc., and maintain traffic for each user separate from other users. The primary VLAN connects to all promiscuous ports, to all isolated ports, and to all community ports. The primary VLAN is a one way connection from promiscuous ports to isolated or community ports. An isolated VLAN connects to all promiscuous ports and to all isolated ports. The isolated VLAN is a one way connection from an isolated port to the promiscuous ports.
    Type: Grant
    Filed: May 5, 2004
    Date of Patent: April 3, 2007
    Assignee: Cisco Technology, Inc.
    Inventors: Thomas J. Edsall, Marco Foschiano, Michael Fine, Thomas Nosella