Patents by Inventor Shree N. Murthy
Shree N. Murthy has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 12659748Abstract: Techniques for detecting and/or confirming a Man-in-The-Middle (MiTM) attack using Fine Timing Measurement (FTM) are provided. In one aspect, a FTM exchange is initiated between a second station and a first station to detect or confirm a MiTM attack in a network in which a MiTM is positioned between the first station and a third station. The MiTM attack is detected or confirmed, or both, based at least in part on FTM information determined during the FTM exchange.Type: GrantFiled: August 28, 2023Date of Patent: June 16, 2026Assignee: Cisco Technology, Inc.Inventors: Domenico Ficara, Amine Choukir, Pascal Thubert, Jerome Henry, Shree N. Murthy
-
Patent number: 12659235Abstract: Systems and methods for creating user defined network in a network environment is provided. Users are able to create user defined networks which as private logical groups that extend across different wired and wireless networking constructs. A user may use an endpoint (e.g., mobile phone) to create a user defined network, to associate one or more endpoints with the user defined network, and to invite other users to add their endpoints to the user defined network. The user may create a policy for endpoints in the user defined network such as only allowing endpoints associated with the user defined network or restricting types of traffic that can be communicated to endpoints in the user defined network. The user defined network, and associated policies, may be enforced by the infrastructure devices in the network environment.Type: GrantFiled: October 22, 2021Date of Patent: June 16, 2026Assignee: Cisco Technology, Inc.Inventors: Shree N. Murthy, Stephen Michael Orr, Sanjay Kumar Hooda, Sudhir Kumar Jain, Darrin Joseph Miller, Ameet Prakash Kulkarni
-
Publication number: 20260135813Abstract: In some aspects, the techniques described herein relate to a method including: obtaining, at a network device from a user device, a request for a network session, the request including an indication of a user device profile; determining a traffic identifier to associate with the user device profile; binding the traffic identifier to a network policy to be applied to traffic associated with the user device profile; and providing the traffic identifier to the user device.Type: ApplicationFiled: January 7, 2026Publication date: May 14, 2026Inventors: Srinath Gundavelli, Shree N. Murthy, Matthew Stephen MacPherson, Ravi Kiran Guntupalli
-
Patent number: 12592893Abstract: In some aspects, the techniques described herein relate to a method including: obtaining, at a network device from a user device, a request for a network session, the request including an indication of a user device profile; determining a traffic identifier to associate with the user device profile; binding the traffic identifier to a network policy to be applied to traffic associated with the user device profile; and providing the traffic identifier to the user device.Type: GrantFiled: May 20, 2024Date of Patent: March 31, 2026Assignee: CISCO TECHNOLOGY, INC.Inventors: Srinath Gundavelli, Shree N. Murthy, Matthew Stephen MacPherson, Ravi Kiran Guntupalli
-
Publication number: 20250358232Abstract: In some aspects, the techniques described herein relate to a method including: obtaining, at a network device from a user device, a request for a network session, the request including an indication of a user device profile; determining a traffic identifier to associate with the user device profile; binding the traffic identifier to a network policy to be applied to traffic associated with the user device profile; and providing the traffic identifier to the user device.Type: ApplicationFiled: May 20, 2024Publication date: November 20, 2025Inventors: Srinath Gundavelli, Shree N. Murthy, Matthew Stephen MacPherson, Ravi Kiran Guntupalli
-
Patent number: 12401642Abstract: Methods are provided that support media access control (MAC) address rotation (RCM) by generating a passcode for associating a user defined network by one or more endpoint devices instead of using MAC addresses for their respective device identity. In these methods, a computing device obtains a registration request for establishing a user defined network (UDN) and generates a unique UDN identifier and a unique passcode associated with the unique UDN identifier. The unique passcode enables an authentication of one or more endpoint devices to connect to the UDN. The authentication is independent of the MAC address of a respective endpoint device. The computing device provides the UDN identifier and the unique passcode such that the UDN identifier and the unique passcode are for connecting the one or more endpoint devices to the UDN.Type: GrantFiled: July 1, 2022Date of Patent: August 26, 2025Assignee: CISCO TECHNOLOGY, INC.Inventors: Shree N. Murthy, Stephen Michael Orr
-
Publication number: 20250080988Abstract: Techniques for detecting and/or confirming a Man-in-The-Middle (MiTM) attack using Fine Timing Measurement (FTM) are provided. In one aspect, a FTM exchange is initiated between a second station and a first station to detect or confirm a MiTM attack in a network in which a MiTM is positioned between the first station and a third station. The MiTM attack is detected or confirmed, or both, based at least in part on FTM information determined during the FTM exchange.Type: ApplicationFiled: August 28, 2023Publication date: March 6, 2025Inventors: Domenico FICARA, Amine CHOUKIR, Pascal THUBERT, Jerome HENRY, Shree N. MURTHY
-
Publication number: 20250071180Abstract: Profile-based association method for enterprise networks may be provided. A computing device may configure a first profile and a second profile. Next, the client device may be configured with a set of network profiles associated with a plurality of networks. A user of the client device may be queried for a profile choice for one of the plurality of networks. Then the client device may associate with the one of the plurality of networks according to the profile choice provide by the user.Type: ApplicationFiled: August 27, 2024Publication date: February 27, 2025Applicant: Cisco Technology, Inc.Inventors: Jerome Henry, Bart A. Brinckman, Vincent E. Parla, Srinath Gundavelli, Shree N. Murthy, Matthew S. MacPherson
-
Publication number: 20250016147Abstract: Aspects described herein include a method of automated grouping of client devices for a user-defined network (UDN). The method includes receiving, from a first client device, an authentication request to join an access provider network. The authentication request includes a unique identifier of the first client device. The method also includes transmitting the unique identifier to a UDN cloud and receiving a first list from the UDN cloud. The first list indicates that the UDN is associated with the unique identifier. The method further includes joining the first client device with a second client device present on the access provider network based on a second list from the UDN cloud. The second list indicates that the UDN is associated with the second device.Type: ApplicationFiled: August 13, 2024Publication date: January 9, 2025Inventors: Domenico FICARA, Roberto MUCCIFORA, Amine CHOUKIR, Shree N. MURTHY, Bart A. BRINCKMAN, Mirko RACA
-
Media access control (MAC) address anonymization based on allocations by network controller elements
Patent number: 12184648Abstract: A method is provided to anonymize the media access control (MAC) address of a client device. The method involves generating a plurality of media access control (MAC) addresses for use by a client device in a network. Policies are defined that determine which one of the plurality of MAC addresses is to be used by the client device. The plurality of MAC addresses allocated for use by the client device are registered with a management entity in the network.Type: GrantFiled: February 10, 2023Date of Patent: December 31, 2024Assignee: CISCO TECHNOLOGY, INC.Inventors: Srinath Gundavelli, Shree N. Murthy, Pradeep Kumar Kathail, Brian Weis -
Publication number: 20240388581Abstract: Methods are provided that support media access control (MAC) address rotation (RCM) by generating a passcode for associating a user defined network by one or more endpoint devices instead of using MAC addresses for their respective device identity. In these methods, a computing device obtains a registration request for establishing a user defined network (UDN) and generates a unique UDN identifier and a unique passcode associated with the unique UDN identifier. The unique passcode enables an authentication of one or more endpoint devices to connect to the UDN. The authentication is independent of the MAC address of a respective endpoint device. The computing device provides the UDN identifier and the unique passcode such that the UDN identifier and the unique passcode are for connecting the one or more endpoint devices to the UDN.Type: ApplicationFiled: July 30, 2024Publication date: November 21, 2024Inventors: Shree N. Murthy, Stephen Michael Orr
-
Patent number: 12107721Abstract: In one embodiment, dynamic user private networks are virtually segmented within a shared virtual network. A network control system maintains the dynamic logical segmentation of the shared virtual network. User entities (e.g., user devices and/or services) are communicatively coupled to respective personal virtual networks via endpoints of access devices. Each of these endpoints is associated with a corresponding user private network. Responsive in real-time to automated processing of a received electronic particular user request, the network control system automatically modifies the dynamic logical segmentation of the shared virtual network to move a particular user entity on the shared virtual network to newly being on the first dynamic user private network without being disconnected from the shared virtual network. One embodiment uses different user private network identifiers (UPN-IDs) associated with endpoints and received packets to identify their respective user private network.Type: GrantFiled: January 30, 2024Date of Patent: October 1, 2024Assignee: Cisco Technology, Inc.Inventors: Shyamsundar N. Maniyar, Sanjay Kumar Hooda, Shree N. Murthy, Sonal Prem Kumar Chhabria, Akshay Dorwat
-
Patent number: 12081534Abstract: Aspects described herein include a method of automated grouping of client devices for a user-defined network (UDN). The method includes receiving, from a client device an authentication request to join an access provider network. The authentication request includes a unique identifier of the client device for a federation-based network. The method further includes transmitting the unique identifier to a UDN cloud, transmitting the authentication request to an identity provider, and receiving, responsive to the identity provider authenticating the authentication request, a list of one or more UDNs from the UDN cloud that are associated with the unique identifier. The method further includes joining the client device with one or more other client devices present on the access provider network listing a same UDN.Type: GrantFiled: July 29, 2021Date of Patent: September 3, 2024Assignee: Cisco Technology, Inc.Inventors: Domenico Ficara, Roberto Muccifora, Amine Choukir, Shree N. Murthy, Bart A. Brinckman, Mirko Raca
-
Publication number: 20240171457Abstract: In one embodiment, dynamic user private networks are virtually segmented within a shared virtual network. A network control system maintains the dynamic logical segmentation of the shared virtual network. User entities (e.g., user devices and/or services) are communicatively coupled to respective personal virtual networks via endpoints of access devices. Each of these endpoints is associated with a corresponding user private network. Responsive in real-time to automated processing of a received electronic particular user request, the network control system automatically modifies the dynamic logical segmentation of the shared virtual network to move a particular user entity on the shared virtual network to newly being on the first dynamic user private network without being disconnected from the shared virtual network. One embodiment uses different user private network identifiers (UPN-IDs) associated with endpoints and received packets to identify their respective user private network.Type: ApplicationFiled: January 30, 2024Publication date: May 23, 2024Inventors: Shyamsundar N. Maniyar, Sanjay Kumar Hooda, Shree N. Murthy, Sonal Prem Kumar Chhabria, Akshay Dorwat
-
Patent number: 11909591Abstract: In one embodiment, dynamic user private networks are virtually segmented within a shared virtual network. A network control system maintains the dynamic logical segmentation of the shared virtual network. User entities (e.g., user devices and/or services) are communicatively coupled to respective personal virtual networks via endpoints of access devices. Each of these endpoints is associated with a corresponding user private network. Responsive in real-time to automated processing of a received electronic particular user request, the network control system automatically modifies the dynamic logical segmentation of the shared virtual network to move a particular user entity on the shared virtual network to newly being on the first dynamic user private network without being disconnected from the shared virtual network. One embodiment uses different user private network identifiers (UPN-IDs) associated with endpoints and received packets to identify their respective user private network.Type: GrantFiled: May 23, 2023Date of Patent: February 20, 2024Assignee: Cisco Technology, Inc.Inventors: Shyamsundar N. Maniyar, Sanjay Kumar Hooda, Shree N. Murthy, Sonal Prem Kumar Chhabria, Akshay Dorwat
-
Patent number: 11895085Abstract: A network management center includes a Dynamic Host Configuration Protocol (DHCP) server. The network management center obtains from an identity server, client information indicating authentication of a client device in a wireless network that is connected to a network fabric. The network management center obtains from an edge node in the network fabric an Internet Protocol (IP) address request for the client device. The IP address request including a fabric domain identifier associated with the edge node. The network management center allocates an IP address for the client device based on the client information obtained from the identity server and the fabric domain identifier contained in the IP address request obtained from the edge node. The network management center provides to the edge node an Identifier Locator Addressing (ILA) address based on the IP address.Type: GrantFiled: September 13, 2021Date of Patent: February 6, 2024Assignee: CISCO TECHNOLOGY, INC.Inventors: Srinath Gundavelli, Shree N. Murthy, Sudhir Kumar Jain
-
Publication number: 20240007468Abstract: Methods are provided that support media access control (MAC) address rotation (RCM) by generating a passcode for associating a user defined network by one or more endpoint devices instead of using MAC addresses for their respective device identity. In these methods, a computing device obtains a registration request for establishing a user defined network (UDN) and generates a unique UDN identifier and a unique passcode associated with the unique UDN identifier. The unique passcode enables an authentication of one or more endpoint devices to connect to the UDN. The authentication is independent of the MAC address of a respective endpoint device. The computing device provides the UDN identifier and the unique passcode such that the UDN identifier and the unique passcode are for connecting the one or more endpoint devices to the UDN.Type: ApplicationFiled: July 1, 2022Publication date: January 4, 2024Inventors: Shree N. Murthy, Stephen Michael Orr
-
Patent number: 11855841Abstract: Certain embodiments disclose systems and methods for creating a user private network (UPN) based on 11ay technology. Methods of the present disclosure include creating a personal basic service set (PBSS) having a service device and one or more 11ay devices, the service device configured to wirelessly communicate with the one or more 11ay devices in the PBSS, creating a UPN having an access point located in communicative proximity with the service device, and associating at least one 11ay device of the one or more 11ay devices with the UPN, wherein the at least one 11ay device is configured to establish a wireless connection with the one or more 11ay devices using the service device when within a coverage area of the PBSS, and to establish a wireless connection with the one or more 11ay devices using the access point when outside the coverage area of the PBSS.Type: GrantFiled: April 18, 2022Date of Patent: December 26, 2023Assignee: CISCO TECHNOLOGY, INC.Inventors: Rajesh S. Pazhyannur, Anand Oswal, Arun G. Khanna, Kedar K. Gaonkar, Shree N. Murthy, Sudhir Jain
-
Publication number: 20230300024Abstract: In one embodiment, dynamic user private networks are virtually segmented within a shared virtual network. A network control system maintains the dynamic logical segmentation of the shared virtual network. User entities (e.g., user devices and/or services) are communicatively coupled to respective personal virtual networks via endpoints of access devices. Each of these endpoints is associated with a corresponding user private network. Responsive in real-time to automated processing of a received electronic particular user request, the network control system automatically modifies the dynamic logical segmentation of the shared virtual network to move a particular user entity on the shared virtual network to newly being on the first dynamic user private network without being disconnected from the shared virtual network. One embodiment uses different user private network identifiers (UPN-IDs) associated with endpoints and received packets to identify their respective user private network.Type: ApplicationFiled: May 23, 2023Publication date: September 21, 2023Inventors: Shyamsundar N. Maniyar, Sanjay Kumar Hooda, Shree N. Murthy, Sonal Prem Kumar Chhabria, Akshay Dorwat
-
Patent number: 11700173Abstract: In one embodiment, dynamic user private networks are virtually segmented within a shared virtual network. A network control system maintains the dynamic logical segmentation of the shared virtual network. User entities (e.g., user devices and/or services) are communicatively coupled to respective personal virtual networks via endpoints of access devices. Each of these endpoints is associated with a corresponding user private network. Responsive in real-time to automated processing of a received electronic particular user request, the network control system automatically modifies the dynamic logical segmentation of the shared virtual network to move a particular user entity on the shared virtual network to newly being on the first dynamic user private network without being disconnected from the shared virtual network. One embodiment uses different user private network identifiers (UPN-IDs) associated with endpoints and received packets to identify their respective user private network.Type: GrantFiled: September 25, 2020Date of Patent: July 11, 2023Assignee: Cisco Technology, Inc.Inventors: Shyamsundar N. Maniyar, Sanjay Kumar Hooda, Shree N. Murthy, Sonal Prem Kumar Chhabria, Akshay Dorwat