Patents by Inventor Sean W. March

Sean W. March has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 8397276
    Abstract: A system to dynamically protect access to a first network receives a data unit containing a source address indicating a source of the data unit. The source address is matched with information stored in the system, and entry of the data unit to the first network is enabled or denied based on the matching. It is determined whether the data unit contains an identifier of a codec type that matches a stored codec type, and occurrence of an attack of the first network is indicated in response to determining that the identifier is of a codec type that does not match the stored codec type.
    Type: Grant
    Filed: March 23, 2010
    Date of Patent: March 12, 2013
    Assignee: Genband US LLC
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight
  • Patent number: 7940654
    Abstract: A method and apparatus of protecting a first network from unauthorized access includes storing profile information for each call session, and determining if an unauthorized access of the first network is occurring based on the profile information. The profile information includes a predetermined threshold indicating a maximum acceptable rate of incoming data units from an external network to the first network. If the incoming data unit rate exceeds the predetermined threshold, then a security action is taken, such as generating an alarm or preventing further transport of data units from the external network to the first network.
    Type: Grant
    Filed: November 3, 2006
    Date of Patent: May 10, 2011
    Assignee: Genband US LLC
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight
  • Publication number: 20100175110
    Abstract: A system to dynamically protect access to a first network receives a data unit containing a source address indicating a source of the data unit. The source address is matched with information stored in the system, and entry of the data unit to the first network is enabled or denied based on the matching. It is determined whether the data unit contains an identifier of a codec type that matches a stored codec type, and occurrence of an attack of the first network is indicated in response to determining that the identifier is of a codec type that does not match the stored codec type.
    Type: Application
    Filed: March 23, 2010
    Publication date: July 8, 2010
    Inventors: SEAN W. MARCH, Patrick N. Sollee, David W. Mcknight
  • Patent number: 7684317
    Abstract: A method and apparatus of protecting a first network from unauthorized access includes storing profile information for each call session, and determining if an unauthorized access of the first network is occurring based on the profile information. The profile information includes a predetermined threshold indicating a maximum acceptable rate of incoming data units from an external network to the first network. If the incoming data unit rate exceeds the predetermined threshold, then a security action is taken, such as generating an alarm or preventing further transport of data units from the external network to the first network.
    Type: Grant
    Filed: June 14, 2001
    Date of Patent: March 23, 2010
    Assignee: Nortel Networks Limited
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight
  • Patent number: 7068655
    Abstract: A method and apparatus for communicating data units (e.g., Internet Protocol or IP packets) between devices on one or more networks includes storing address and/or port translation information, and receiving a data unit having a source address and port and a destination address and port. Both the source and destination addresses and/or ports are translated, with the data unit containing the translated source and destination addresses and/or ports transmitted to a destination.
    Type: Grant
    Filed: June 14, 2001
    Date of Patent: June 27, 2006
    Assignee: Nortel Networks Limited
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight
  • Patent number: 6987765
    Abstract: A method and apparatus comprises a controller to establish a call session between a first endpoint and a second endpoint. Without exchanging call setup signaling with the first endpoint, the controller is able to pivot the call session from the second endpoint to another endpoint so that media communication can occur between the first and other endpoints. The first endpoint remains “anchored” in the call session. The pivot is accomplished by sending a call request to the other endpoint and exchanging messages with a media portal that controls the communication of packets between endpoints. The media portal contains a network address and translation module that performs translation of addresses and/or ports of media packets communicated from one endpoint to another.
    Type: Grant
    Filed: June 14, 2001
    Date of Patent: January 17, 2006
    Assignee: Nortel Networks Limited
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight
  • Publication number: 20030043740
    Abstract: A method and apparatus of protecting a first network from unauthorized access includes storing profile information for each call session, and determining if an unauthorized access of the first network is occurring based on the profile information. The profile information includes a predetermined threshold indicating a maximum acceptable rate of incoming data units from an external network to the first network. If the incoming data unit rate exceeds the predetermined threshold, then a security action is taken, such as generating an alarm or preventing further transport of data units from the external network to the first network.
    Type: Application
    Filed: June 14, 2001
    Publication date: March 6, 2003
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight
  • Publication number: 20030007497
    Abstract: A method and apparatus comprises a controller to establish a call session between a first endpoint and a second endpoint. Without exchanging call setup signaling with the first endpoint, the controller is able to pivot the call session from the second endpoint to another endpoint so that media communication can occur between the first and other endpoints. The first endpoint remains “anchored” in the call session. The pivot is accomplished by sending a call request to the other endpoint and exchanging messages with a media portal that controls the communication of packets between endpoints. The media portal contains a network address and translation module that performs translation of addresses and/or ports of media packets communicated from one endpoint to another.
    Type: Application
    Filed: June 14, 2001
    Publication date: January 9, 2003
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight
  • Publication number: 20030007486
    Abstract: A method and apparatus for communicating data units (e.g., Internet Protocol or IP packets) between devices on one or more networks includes storing address and/or port translation information, and receiving a data unit having a source address and port and a destination address and port. Both the source and destination addresses and/or ports are translated, with the data unit containing the translated source and destination addresses and/or ports transmitted to a destination.
    Type: Application
    Filed: June 14, 2001
    Publication date: January 9, 2003
    Inventors: Sean W. March, Patrick N. Sollee, David W. McKnight