Patents by Inventor Steven Bellovin

Steven Bellovin has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20100232445
    Abstract: A method for the efficient routing of data packets across a plurality of routers when a link is unavailable which includes connecting a plurality of nodes in a network using a plurality of routers having a plurality of links between the routers, informing the routers in the network when one or more of the links in the network will be unavailable at a specified time in the future, recalculating the routing tables to determine the most efficient routing paths when the links in the network become unavailable and, when the time in the future arrives, switching the routers in the network to the new routing tables at the same time.
    Type: Application
    Filed: May 26, 2010
    Publication date: September 16, 2010
    Applicant: AT & T CORPORATION
    Inventor: Steven Bellovin
  • Patent number: 7756008
    Abstract: A method for the efficient routing of data packets across a plurality of routers when a link is unavailable which includes connecting a plurality of nodes in a network using a plurality of routers having a plurality of links between the routers, informing the routers in the network when one or more of the links in the network will be unavailable at a specified time in the future, recalculating the routing tables to determine the most efficient routing paths when the links in the network become unavailable and, when the time in the future arrives, switching the routers in the network to the new routing tables at the same time.
    Type: Grant
    Filed: December 19, 2003
    Date of Patent: July 13, 2010
    Assignee: AT&T Intellectual Property II, L.P.
    Inventor: Steven Bellovin
  • Publication number: 20100153556
    Abstract: The present invention comprises a device and method for provider initiated transfer of data from a local network of a user, at a rate and time designated by the provider in order for a provider to balance local network traffic loads or due to another need of a service provider and allow a user to more quickly copy data to be placed at a location on a wide area network. Further, the provider may be notified when data is stored at the designated location or based on provider-initiated request for changed data. The provider may evaluate data traffic on its network to determine when and at what speed a transfer of data should be initiated from the designated location to the provider's network for storage at a second location on, for example, the wide area network.
    Type: Application
    Filed: December 16, 2008
    Publication date: June 17, 2010
    Applicant: AT&T INTELLECTUAL PROPERTY I, L.P.
    Inventor: Steven Bellovin
  • Publication number: 20070258375
    Abstract: The present invention permits a network service provider to detect an operational condition—such as congestion—in a packet-switched network and to alleviate such congestion by providing customer incentives to avoid use of the network. The detection mechanism triggers an incentive such as the modification of the user's access charges and the customer can be immediately notified of either the occurrence of the congestion or of information regarding the incentive. Usage of the network during congested periods can be deterred by imposing additional access charges during such periods—similarly, customers can be given a discount to encourage usage during period of low congestion. An incentive schedule can be tailored to dynamically change the usage patterns of the customers of the network to accommodate the operational conditions in the network.
    Type: Application
    Filed: April 25, 2007
    Publication date: November 8, 2007
    Inventors: David Belanger, Steven Bellovin, Ramon Caceres, David Nagel
  • Publication number: 20060070122
    Abstract: A method and apparatus for implementing a distributed firewall is described. A packet filter processor receives a packet sent from a first device to a second device. The packet filter processor authenticates an identifier for the packet. For example, authentication could be performed using a cryptographically-verifiable identifier. The packet filter processor determines whether to send the packet to the second device, based on the authentication and a set of policy rules.
    Type: Application
    Filed: September 28, 2005
    Publication date: March 30, 2006
    Inventor: Steven Bellovin
  • Publication number: 20050166046
    Abstract: Encryption with keys that form an Abelian group are used in combination with a semi-trusted party that converts queries that are encrypted with the key of a querier to queries that are encrypted with the key of the encrypted database, without knowing the actual keys. In an illustrative embodiment, encryption is done with Bloom filters that employ Pohlig-Hellman encryption. Since the querier's key is not divulged, neither the semi-trusted party nor the publisher of the database can see the original queries. Provision can be made for fourth party “warrant servers”, as well as “censorship sets” that limit the data to be shared.
    Type: Application
    Filed: January 8, 2005
    Publication date: July 28, 2005
    Inventors: Steven Bellovin, William Cheswick
  • Publication number: 20050135231
    Abstract: A method for the efficient routing of data packets across a plurality of routers when a link is unavailable which includes connecting a plurality of nodes in a network using a plurality of routers having a plurality of links between the routers, informing the routers in the network when one or more of the links in the network will be unavailable at a specified time in the future, recalculating the routing tables to determine the most efficient routing paths when the links in the network become unavailable and, when the time in the future arrives, switching the routers in the network to the new routing tables at the same time.
    Type: Application
    Filed: December 19, 2003
    Publication date: June 23, 2005
    Inventor: Steven Bellovin
  • Publication number: 20050041797
    Abstract: A system and method for providing telephony and high-speed data access over a broadband access network, comprising a network interface unit (NIU) coupled to a backup local exchange carrier (LEC) line, the broadband access network coupled to the NIU, an intermediate point-of-presence (IPOP) coupled to the broadband access network, and at least one external access network coupled to the IPOP. The system also provides for a fail-safe mode in which the NIU supports the LEC line for lifeline services.
    Type: Application
    Filed: November 10, 2003
    Publication date: February 24, 2005
    Inventors: Steven Bellovin, Joseph Condon, Richard Cox, Alexander Fraser, Charles Kalmanek, Alan Kaplan, Thomas Killian, William Marshall, Peter Onufryk, Kadangode Ramakrishnan, Norman Schryer