Patents by Inventor Randy Chou

Randy Chou has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9325666
    Abstract: Services in a network device are added through providing virtual environments. Virtualization allows services based on other platforms or architectures to be run with minimum modification and in a secure manner. Connecting services to the host through a stateful firewall allows dynamic integration, and passes only traffic of interest to the service. Virtualization allows services written for different instruction architectures to be supported. Multiple virtualized environments each supporting a service may be run.
    Type: Grant
    Filed: December 22, 2014
    Date of Patent: April 26, 2016
    Assignee: ARUBA NETWORKS, INC.
    Inventors: John Taylor, Randy Chou, Pradeep Iyer, Dave Logan
  • Publication number: 20150229606
    Abstract: Services in a network device are added through providing virtual environments. Virtualization allows services based on other platforms or architectures to be run with minimum modification and in a secure manner. Connecting services to the host through a stateful firewall allows dynamic integration, and passes only traffic of interest to the service. Virtualization allows services written for different instruction architectures to be supported. Multiple virtualized environments each supporting a service may be run.
    Type: Application
    Filed: December 22, 2014
    Publication date: August 13, 2015
    Applicant: Aruba Networks, Inc.
    Inventors: John Taylor, Randy Chou, Pradeep Iyer, Dave Logan
  • Patent number: 8949965
    Abstract: Services in a network device are added through providing virtual environments. Virtualization allows services based on other platforms or architectures to be run with minimum modification and in a secure manner. Connecting services to the host through a stateful firewall allows dynamic integration, and passes only traffic of interest to the service. Virtualization allows services written for different instruction architectures to be supported. Multiple virtualized environments each supporting a service may be run.
    Type: Grant
    Filed: October 30, 2007
    Date of Patent: February 3, 2015
    Assignee: Aruba Networks, Inc.
    Inventors: John Taylor, Randy Chou, Pradeep Iyer, Dave Logan
  • Patent number: 8838957
    Abstract: According to one embodiment of the invention, a method comprises an operation of commencing a first phrase and passing control of an authentication handshaking protocol. The first phase is commenced for establishing a secure communication path by a data path processor within a first network device. The first phrase comprises an exchange of data during an authentication handshaking protocol. The passing of control for authentication handshaking protocol by the data path processor to a control path processor is conducted to complete the authentication handshaking protocol.
    Type: Grant
    Filed: February 28, 2013
    Date of Patent: September 16, 2014
    Assignee: Aruba Networks, Inc.
    Inventors: Randy Chou, Brijesh Nambiar
  • Patent number: 8392968
    Abstract: According to one embodiment of the invention, a method comprises an operation of commencing a first phrase and transfer processing of an authentication handshaking protocol. The first state is commenced for establishing a secure communication path by a first processor within a first network device. The first phrase comprises an exchange of data during a networking protocol. The transfer of processing for the networking protocol by the first processor to a second processor is conducted to complete the networking protocol.
    Type: Grant
    Filed: March 22, 2011
    Date of Patent: March 5, 2013
    Assignee: Aruba Networks, Inc.
    Inventors: Randy Chou, Brijesh Nambiar
  • Publication number: 20110173439
    Abstract: According to one embodiment of the invention, a method comprises an operation of commencing a first phrase and passing control of an authentication handshaking protocol. The first phase is commenced for establishing a secure communication path by a data path processor within a first network device. The first phrase comprises an exchange of data during an authentication handshaking protocol. The passing of control for authentication handshaking protocol by the data path processor to a control path processor is conducted to complete the authentication handshaking protocol.
    Type: Application
    Filed: March 22, 2011
    Publication date: July 14, 2011
    Inventors: Randy Chou, Brijesh Nambiar
  • Patent number: 7966646
    Abstract: According to one embodiment of the invention, a network device comprises a first processing element and a second processing element. The first processing element is adapted to handle an authentication handshaking protocol, such as the SSL/TLS Handshake, and upon receipt of a Client Key Exchange message, passes control of the authentication handshaking protocol to the second processing element. The second processing element completes the authentication handshaking protocol.
    Type: Grant
    Filed: July 31, 2006
    Date of Patent: June 21, 2011
    Assignee: Aruba Networks, Inc.
    Inventors: Randy Chou, Brijesh Nambiar
  • Publication number: 20110113244
    Abstract: According to one embodiment of the invention, a network device comprises a first processing element and a second processing element. The first processing element is adapted to handle an authentication handshaking protocol, such as the SSL/TLS Handshake, and upon receipt of a Client Key Exchange message, passes control of the authentication handshaking protocol to the second processing element. The second processing element completes the authentication handshaking protocol.
    Type: Application
    Filed: July 31, 2006
    Publication date: May 12, 2011
    Inventors: Randy Chou, Brijesh Nambiar
  • Publication number: 20090113535
    Abstract: Services in a network device are added through providing virtual environments. Virtualization allows services based on other platforms or architectures to be run with minimum modification and in a secure manner. Connecting services to the host through a stateful firewall allows dynamic integration, and passes only traffic of interest to the service. Virtualization allows services written for different instruction architectures to be supported. Multiple virtualized environments each supporting a service may be run.
    Type: Application
    Filed: October 30, 2007
    Publication date: April 30, 2009
    Applicant: Aruba Networks, Inc.
    Inventors: John Taylor, Randy Chou, Pradeep Iyer, Dave Logan
  • Patent number: 7376113
    Abstract: According to one embodiment of the invention, a method for securely extending a private network to include one or more remote access points (APs) comprises a first operation of establishing a secure communication path with a destination device. Then, the information received from a source device is prepared for transmission to the destination device. This involves the received information undergoing Layer 3 (L3) encryption prior to encapsulation into a message for transmission to the destination device if the received information constitutes control information. If the received information constitutes data, the received information optionally undergoes L3 encryption, since the payload data might be already L2 encrypted by the source device, prior to encapsulation into the message.
    Type: Grant
    Filed: April 1, 2005
    Date of Patent: May 20, 2008
    Assignee: Arubs Networks, Inc.
    Inventors: John Richard Taylor, Pradeep J. Iyer, Randy Chou
  • Publication number: 20080077972
    Abstract: In some embodiments, an apparatus includes a switch to interface between clients, the switch including an authentication server to perform client authentication for at least one of the clients. Other embodiments are described.
    Type: Application
    Filed: September 21, 2006
    Publication date: March 27, 2008
    Inventors: Randy Chou, Brijesh Nambiar
  • Publication number: 20060221916
    Abstract: According to one embodiment of the invention, a method for securely extending a private network to include one or more remote access points (APs) comprises a first operation of establishing a secure communication path with a destination device. Then, the information received from a source device is prepared for transmission to the destination device. This involves the received information undergoing Layer 3 (L3) encryption prior to encapsulation into a message for transmission to the destination device if the received information constitutes control information. If the received information constitutes data, the received information optionally undergoes L3 encryption, since the payload data might be already L2 encrypted by the source device, prior to encapsulation into the message.
    Type: Application
    Filed: April 1, 2005
    Publication date: October 5, 2006
    Inventors: John Taylor, Pradeep Iyer, Randy Chou