Patents by Inventor Pekka Nikander
Pekka Nikander has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20220263668Abstract: The invention enables the certification of a measurement result of a measuring device. A measuring device arranged in connection with a data security module according to the invention takes under processing a measurement result produced using a measuring instrument of the measuring device (501). The measuring device associates a digital calibration certificate associated with a public key corresponding to a secret key stored in a key storage with the measurement result taken under processing (502). The measuring device digitally signs the associated measurement result using a signing function of the data security module and the secret key stored in the key storage (503).Type: ApplicationFiled: May 8, 2020Publication date: August 18, 2022Inventors: Juuso AUTIOSALO, Petri KUOSMANEN, Tuukka MUSTAPÄÄ, Pekka NIKANDER
-
Patent number: 9628454Abstract: In order to delegate location update signaling responsibility from a Mobile Node to a Mobile Router, the Mobile Router is provided with a second symmetric key generated by a Mobile Node using a first symmetric key shared between the Mobile Node and a Peer Node. The Mobile Router is additionally provided with a “certificate” authenticating the second symmetric key using the first symmetric key. In this way, the mobile router can sign location update related messages sent to the Peer Node with the second symmetric key, and can provide the Peer Node with the certificate in order to allow the Peer Node to authenticate the right of the Mobile Router to act on behalf of the Mobile Node.Type: GrantFiled: February 12, 2007Date of Patent: April 18, 2017Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Jan Melen, Jukka Ylitalo, Pekka Nikander, Petri Jokela
-
Publication number: 20160140629Abstract: The invention relates to novel types of computing devices, their operating systems, and ecosystems supporting such computing devices. The invention is especially related to new ways of providing compensation to software providers.Type: ApplicationFiled: October 13, 2015Publication date: May 19, 2016Inventors: Joona KALLIO, Kristoffer LAWSON, Pekka NIKANDER, Javier REYES
-
Publication number: 20160139729Abstract: The invention relates to novel types of computing devices, their operating systems, and their user interfaces. The invention is especially related to methods and systems concerning user interfaces of touch screen based devices.Type: ApplicationFiled: October 13, 2015Publication date: May 19, 2016Inventors: Joona KALLIO, Kristoffer LAWSON, Pekka NIKANDER, Javier REYES
-
Patent number: 9154571Abstract: A method of making data, published on a first publication/subscribe (pubsub) network, available to hosts within a second publication/subscribe network where the networks are interconnected via the Internet. The method comprises registering a publication identity of said data within a rendezvous system located within the Internet, forwarding Subscribe requests associated with said publication identity from said second network to said rendezvous system and, at the rendezvous system, identifying a location of said data within said first network. The Subscribe request can then be forwarded to said first network, and said data delivered from said first network to said second network via the Internet.Type: GrantFiled: June 16, 2010Date of Patent: October 6, 2015Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Petri Jokela, Pekka Nikander, Teemu Rinta-Aho, Mikko Särelä
-
Patent number: 8843751Abstract: A method of verifying a request made in respect of an IPv6 address comprising a network routing prefix and a cryptographically generated Interface Identifier. The request includes a delegation certificate containing a public key of the host, one or more further parameters or a formula or formulae for generating one or more further parameters, a specification of a range or set of IPv6 network routing prefixes, an identity of a delegated host, and a digital signature taken over at least the identity and the specification of a range or set of IPv6 network routing prefixes using a private key associated with the public key. The method verifies that the network routing prefix of said IPv6 address is contained within the specification, verifying that the public key and the further parameter(s) can be used to generate the cryptographically generated Interface Identifier, and verifying said signature using the public key.Type: GrantFiled: March 4, 2008Date of Patent: September 23, 2014Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Gonzalo Camarillo, Pekka Nikander
-
Patent number: 8837729Abstract: A method of improving privacy by hiding, in an ordered sequence of messages M[x(1), D(1)], M[x(2), D(2)], etc, communicated between a first and at least one second party sharing a key k, metadata x(i) descriptive of message processing, wherein D(i) denotes payload data. The method comprises the first and the second party agreeing on a pseudo random mapping depending on a shared key k, Fk, mapping at least x(i) to y(i), and the first party modifying the messages by replacing x(i) by y(i) in each message M(x(i), D(i)). The first party then transmits the modified messages maintaining their original order, and on reception of a message M(y(m), D), the second party uses a mapping Gk to retrieve position m of received value and the original value x(m).Type: GrantFiled: February 10, 2006Date of Patent: September 16, 2014Assignee: Telefonaktiebolaget LM Ericsson (publ)Inventors: Pekka Nikander, Jari Arrko, Mats Näslund
-
Patent number: 8824474Abstract: Methods of providing packet routing information, according to various embodiments, may include encoding the packet routing information into a compact representation of set membership. The methods may include putting the compact representation of set membership into a header of a packet. Moreover, the methods may include computing the compact representation of set membership using input parameters that include at least one packet-specific, flow-specific or processing-context-specific parameter.Type: GrantFiled: October 1, 2009Date of Patent: September 2, 2014Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Christian Esteve Rothenberg, Petri Jokkela, Pekka Nikander, Mikko Särelä, Jukka Ylitalo
-
Patent number: 8788705Abstract: Methods and arrangements for supporting a forwarding process in routers when routing data packets through a packet-switched network, by employing hierarchical parameters in which the hops of a predetermined transmission path between a sender and a receiver are encoded. A name server generates and distributes router-associated keys to routers in the network which keys are used for computing the hierarchical parameters.Type: GrantFiled: January 4, 2010Date of Patent: July 22, 2014Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Karl Norrman, Jukka Ylitalo, Mats Näslund, Pekka Nikander
-
Patent number: 8644256Abstract: A method of forwarding IP packets, sent to an old care-of-address of a mobile node, to the mobile node following a handover of the mobile node from a first old access router to a second new access router. The method comprises, prior to completion of said handover, providing said first router or another proxy node with information necessary to determine the new IP care-of address to be used by the mobile node when the mobile node is transferred to the second access router. At said first router or said proxy node, the new care-of-address for the mobile node is determined using said information and ownership of the new care-of-address by the mobile node confirmed, and subsequently packets received at said first access network and destined for said old care-of-address are forwarded to the predicted care-of-address address.Type: GrantFiled: July 13, 2011Date of Patent: February 4, 2014Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Pekka Nikander, Jari Arkko
-
Patent number: 8583919Abstract: A method of handling mobility of a sender in a multicast packet sending scenario. The method comprises firstly establishing a multicast tree across a packet data network and transmitting multicast packets from the sender to a plurality of receivers via said multicast tree. Prior to a mobility event in respect of said sender, a suitable transfer anchor node is identified within said network, and the tree re-rooted to that transfer anchor node. Subsequently, multicast packets are transmitted from said sender to said transfer anchor node and injected into the multicast tree at said transfer anchor node. Following said mobility event, said sender continues to send multicast packets to said transfer anchor node for injection into the multicast tree.Type: GrantFiled: October 23, 2008Date of Patent: November 12, 2013Assignee: Telefonaktiegolaget L M Ericsson (Publ)Inventors: Mikko Sarela, Pekka Nikander
-
Patent number: 8559434Abstract: A method of providing packet routing information comprises: encoding routing information from a source node to one or more destination nodes into a compact representation of set membership; and putting the compact representation of sets into a header of a packet that is to be sent from the source node to the destination node(s). The compact representation may be obtained by: generating d representations of a set of identifiers; generating d candidate compact representations of set membership from the d representations of the identifiers; and selecting one of the candidate compact representation of set membership. The selection may be made on the basis of which of the candidate compact representations has the lowest rate of returning false positives.Type: GrantFiled: October 10, 2008Date of Patent: October 15, 2013Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Christian Esteve Rothenberg, Petri Jokela, Jimmy Kjällman, Pekka Nikander, Teemu Rinta-Aho, Jukka Ylitalo
-
Patent number: 8547848Abstract: A method of controlling traffic flow through a service node located within a packet network, which traffic flow originates at a plurality of sending nodes and is destined for a receiving node. The service node is one of a multiplicity of service nodes configured in a tree or other acyclic structure, e.g. of an overlay network. The method comprises receiving a challenge from said receiving node or a downstream service node, generating and caching a further challenge, and combining that further challenge with the received challenges to generate a modified challenge. The modified challenge is then sent to a sending node or to an upstream service node. Subsequently, a request is received, destined for said receiving node and originating at a sending node. A solution accompanying said request is validated using the cached further challenge, and the request forwarded towards said receiving node only if the solution is valid. Otherwise, the request is dropped.Type: GrantFiled: July 9, 2008Date of Patent: October 1, 2013Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Pekka Nikander, Mikko Sarela
-
Publication number: 20130124757Abstract: Methods and arrangements for supporting a forwarding process in routers when routing data packets through a packet-switched network, by employing hierarchical parameters in which the hops of a predetermined transmission path between a sender and a receiver are encoded. A name server generates and distributes router-associated keys to routers in the network which keys are used for computing the hierarchical parameters.Type: ApplicationFiled: January 4, 2010Publication date: May 16, 2013Inventors: Karl Norrman, Jukka Ylitalo, Mats Näslund, Pekka Nikander
-
Patent number: 8428005Abstract: A network comprises a plurality of Access Routers arranged in one or more NetLMM domains. A domain comprises distributed routing information in the form of one or more Bloom filters or Bloom filter equivalents. In one embodiment, each Access Router may have an associated Local Bloom filter or Bloom filter equivalent that provides information as to which mobile nodes are currently behind the respective Access Router. Each Access Router sends its associated Local Bloom filter or Bloom filter equivalent to every other Access Router of the domain. An Access Router uses the Bloom filters or Bloom filter equivalents received from every other Access Router of the domain to determine to which Access Router to send a packet destined to a specified Mobile Node. Another embodiment uses partly-distributed routing information.Type: GrantFiled: June 14, 2007Date of Patent: April 23, 2013Assignee: Telefonaktiebolaget L M Ericsson (Publ)Inventor: Pekka Nikander
-
Publication number: 20130016042Abstract: A haptic device may allow a user to explore the tactile sensations associated with information being displayed on a display. This methodology can be referred to as a “hold-and-feel” mode. The user may first perform a gesture to inform the device to hold the display stationary, in order to explore the information, instead of scrolling or panning the information on the display. For example, to enter the “hold-and-feel” mode, a user may press one finger on the side of the screen to lock the information content with respect to the screen so that the display contents are no longer moved as the user slides another finger over the screen. In a haptic device that supports tactile sensory stimulation, this “hold-and-feel” mode allows the user to feel one or more objects or elements (e.g., a link or image) on the screen, for example, as variations of surface texture.Type: ApplicationFiled: July 3, 2012Publication date: January 17, 2013Inventors: Ville Makinen, Jukka Linjama, Pekka Nikander, Jonas Bengtsson
-
Publication number: 20120300781Abstract: A network node (4) is adapted to insert a collecting Bloom filter into a packet, and send the packet towards a second network node (8) by a hop-by-hop routing protocol. The network node (4) subsequently receives a packet sent by the second network node (8), with the header of the packet sent by the second network node containing a Bloom filter or Bloom Filter equivalent that encodes forwarding information from the second network node (8) to the network node (4). The Bloom filter or Bloom Filter equivalent received at the network node (4) may also encode forwarding information from the network node (4) to the second network node (8). In this case, the network node (4) may then determine, from the forwarding information in the Bloom filter or Bloom Filter equivalent, a first hop for forwarding packets towards the second node (8).Type: ApplicationFiled: December 10, 2010Publication date: November 29, 2012Applicant: TELEFONAKTIEBOLAGET L M ERICSSON (PUBL)Inventors: Mikko Särelä, Petri Jokela, Pekka Nikander
-
Patent number: 8320309Abstract: A method and gateway node for routing IP traffic to and from a mobile terminal able to connect to the Internet via two or more gateway nodes. A multi-addressing multi-homing protocol is implemented at each gateway node on behalf of the mobile terminal. The gateway nodes share protocol state information to enable gateway nodes to update state information at the corresponding node when the mobile terminal changes gateway nodes.Type: GrantFiled: April 25, 2006Date of Patent: November 27, 2012Assignee: Telefonaktiebolaget LM Ericsson (publ)Inventors: Pekka Nikander, Henrik Levkowetz
-
Publication number: 20120287934Abstract: A network node (NB1) located within a domain is adapted to receive, from another node, a packet having an in-packet Bloom filter or Bloom filter equivalent encoding information about a route within the domain. The node reversibly modifies the in-packet Bloom filter or Bloom filter equivalent in a manner which is linear with respect to the operation used to add links to the Bloom filter or Bloom filter equivalent. The node then forward the packet with its header containing the modified Bloom filter or Bloom filter to another node (NA1). The invention allows secure Bloom filter-based routing in a domain (Domain B), while requiring that only routers (NB1) at the domain boundary are secure routers. Other routers (NB2, NB3, NB4) in the domain may operate conventionally, and may be secure routers or insecure routers. The modification may be a bit permutation.Type: ApplicationFiled: October 22, 2010Publication date: November 15, 2012Applicant: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Mikko Särelä, Mats Näslund, Pekka Nikander
-
Publication number: 20120082163Abstract: Packet routing information is encoded into a non-static compact representation of set membership, the compact representation of set membership being for inclusion into a header of a packet. The compact representation of set membership is computed using input parameters that include at least one packet-specific, flow-specific or processing-context-specific parameter. By making the compact representation of set membership packet-dependent, flow-dependent or processing-context-dependent it becomes harder for, for example, a potential attacker to obtain information needed to mount a DDoS attack. In a variant of the invention, the packet routing information is represented as a plurality of non-static identifiers for inclusion into a header of a packet.Type: ApplicationFiled: October 1, 2009Publication date: April 5, 2012Inventors: Christian Esteve Rothenberg, Petri Jokkela, Pekka Nikander, Mikko Särelä, Jukka Ylitalo