Patents by Inventor Sunil Madhaorao Gandhewar
Sunil Madhaorao Gandhewar has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 12155531Abstract: A broadband network gateway (BNG) controller is described that includes a network subscriber database (NSDB) and one or more core applications. The NSDB is configured to store vBNG instance information for one or more subscriber devices. The vBNG instance information specifies vBNG instances operable by one or more edge routers. The vBNG instances are configured to receive requests to access service provider services from the one or more subscriber devices and to selectively authenticate the one or more subscriber devices for network services based on authentication information included in the requests to access services provider services. The one or more core applications include a network instance and configuration manager (NICM). The NICM is configured to modify the vBNG instance information at the NSDB to include an additional vBNG instance and to output, to an edge router, an instruction to generate the additional vBNG instance at the edge router.Type: GrantFiled: September 25, 2023Date of Patent: November 26, 2024Assignee: Juniper Networks, Inc.Inventors: Sunil Madhaorao Gandhewar, Nirmal Antony X
-
Patent number: 11888814Abstract: In general, techniques are described for managing address spaces across network elements. A network device including a processor may be configured to perform the techniques. The processor may execute a pool manager that automatically distributes a first block of network addresses to a first network element acting, for a first network, as a first address allocation server to assign the first block of network addresses. The pool manager may further automatically distribute a second block of contiguous network addresses to a second network element acting, for a second network, as a second address allocation server. The pool manager may then dynamically manage a size of the first block of network addresses and a size of the second block of network addresses to address exhaustion of available network addresses within either or both of the first block of network addresses and the second block of network addresses.Type: GrantFiled: December 5, 2018Date of Patent: January 30, 2024Assignee: Juniper Networks, Inc.Inventors: Nirmal Antony X, Sunil Madhaorao Gandhewar, Steven P. Onishi
-
Patent number: 11818009Abstract: A broadband network gateway (BNG) controller is described that includes a network subscriber database (NSDB) and one or more core applications. The NSDB is configured to store vBNG instance information for one or more subscriber devices. The vBNG instance information specifies vBNG instances operable by one or more edge routers. The vBNG instances are configured to receive requests to access service provider services from the one or more subscriber devices and to selectively authenticate the one or more subscriber devices for network services based on authentication information included in the requests to access services provider services. The one or more core applications include a network instance and configuration manager (NICM). The NICM is configured to modify the vBNG instance information at the NSDB to include an additional vBNG instance and to output, to an edge router, an instruction to generate the additional vBNG instance at the edge router.Type: GrantFiled: October 13, 2021Date of Patent: November 14, 2023Assignee: Juniper Networks, Inc.Inventors: Sunil Madhaorao Gandhewar, Nirmal Antony X
-
Patent number: 11558382Abstract: In general, techniques are described for supporting bulk delivery of change of authorization data in authentication, authorization, and accounting (AAA) protocols, where delivery is performed as a change of authorization after a subscriber has successfully authenticated and initially authorized. In one example, the techniques are directed to a method including determining, by a RADIUS server for a service provider network, change of authorization data for services to which the subscriber of the service provider network has subscribed. The method further includes generating, by the RADIUS server, RADIUS messages that form a transaction between the RADIUS server and a network access server acting as a RADIUS client. The RADIUS messages provide all of the change of authorization data to the network access server prior to the network access server provisioning the services. The method further includes outputting, by the RADIUS server, the RADIUS messages to the network access server.Type: GrantFiled: April 29, 2021Date of Patent: January 17, 2023Assignee: Juniper Networks, Inc.Inventors: John Gibbons, Paul Raison, Sunil Madhaorao Gandhewar
-
Patent number: 11533382Abstract: In general, techniques are described for providing user nomadicity in wireline broadband networks. A network device positioned in a wireline broadband network comprising a processor and an interface may be configured to perform the techniques. The processor may be configured to execute a first virtual customer premises equipment to provide, to a first subscriber, access to the wireline broadband network from a first subscription point in accordance with a first subscription. The processor may also be configured to provide, to a second subscriber, access to the wireline broadband network from the first subscription point in accordance with a second subscription. The interface may be configured to forward, in accordance with the first subscription, traffic received from the first subscription point and associated with the first subscriber, and forward, in accordance with the second subscription, traffic received from the first subscription point and associated with the second subscriber.Type: GrantFiled: March 31, 2016Date of Patent: December 20, 2022Assignee: Juniper Networks, Inc.Inventors: Avinash S, Sunil Madhaorao Gandhewar, Vidhya Bhushan Verma
-
Publication number: 20220038345Abstract: A broadband network gateway (BNG) controller is described that includes a network subscriber database (NSDB) and one or more core applications. The NSDB is configured to store vBNG instance information for one or more subscriber devices. The vBNG instance information specifies vBNG instances operable by one or more edge routers. The vBNG instances are configured to receive requests to access service provider services from the one or more subscriber devices and to selectively authenticate the one or more subscriber devices for network services based on authentication information included in the requests to access services provider services. The one or more core applications include a network instance and configuration manager (NICM). The NICM is configured to modify the vBNG instance information at the NSDB to include an additional vBNG instance and to output, to an edge router, an instruction to generate the additional vBNG instance at the edge router.Type: ApplicationFiled: October 13, 2021Publication date: February 3, 2022Inventors: Sunil Madhaorao Gandhewar, Nirmal Antony X
-
Patent number: 11159378Abstract: A broadband network gateway (BNG) controller is described that includes a network subscriber database (NSDB) and one or more core applications. The NSDB is configured to store vBNG instance information for one or more subscriber devices. The vBNG instance information specifies vBNG instances operable by one or more edge routers. The vBNG instances are configured to receive requests to access service provider services from the one or more subscriber devices and to selectively authenticate the one or more subscriber devices for network services based on authentication information included in the requests to access services provider services. The one or more core applications include a network instance and configuration manager (NICM). The NICM is configured to modify the vBNG instance information at the NSDB to include an additional vBNG instance and to output, to an edge router, an instruction to generate the additional vBNG instance at the edge router.Type: GrantFiled: December 6, 2019Date of Patent: October 26, 2021Assignee: Juniper Networks, Inc.Inventors: Sunil Madhaorao Gandhewar, Nirmal Antony X
-
Publication number: 20210250352Abstract: In general, techniques are described for supporting bulk delivery of change of authorization data in authentication, authorization, and accounting (AAA) protocols, where delivery is performed as a change of authorization after a subscriber has successfully authenticated and initially authorized. In one example, the techniques are directed to a method including determining, by a RADIUS server for a service provider network, change of authorization data for services to which the subscriber of the service provider network has subscribed. The method further includes generating, by the RADIUS server, RADIUS messages that form a transaction between the RADIUS server and a network access server acting as a RADIUS client. The RADIUS messages provide all of the change of authorization data to the network access server prior to the network access server provisioning the services. The method further includes outputting, by the RADIUS server, the RADIUS messages to the network access server.Type: ApplicationFiled: April 29, 2021Publication date: August 12, 2021Inventors: John Gibbons, Paul Raison, Sunil Madhaorao Gandhewar
-
Patent number: 10999280Abstract: In general, techniques are described for supporting bulk delivery of change of authorization data in authentication, authorization, and accounting (AAA) protocols, where delivery is performed as a change of authorization after a subscriber has successfully authenticated and initially authorized. In one example, the techniques are directed to a method including determining, by a RADIUS server for a service provider network, change of authorization data for services to which the subscriber of the service provider network has subscribed. The method further includes generating, by the RADIUS server, RADIUS messages that form a transaction between the RADIUS server and a network access server acting as a RADIUS client. The RADIUS messages provide all of the change of authorization data to the network access server prior to the network access server provisioning the services. The method further includes outputting, by the RADIUS server, the RADIUS messages to the network access server.Type: GrantFiled: January 21, 2020Date of Patent: May 4, 2021Assignee: Juniper Networks, Inc.Inventors: John Gibbons, Paul Raison, Sunil Madhaorao Gandhewar
-
Patent number: 10805298Abstract: In general, techniques are described for provided result reporting via authentication, authorization and accounting (AAA) protocols. An authorization server comprising a control unit may be configured to perform the techniques. The control unit may authorize a network access server to allow an endpoint device to access one or more services in accordance with a network access protocol. The control unit may also request, in accordance with the network access protocol, a result from the network access server as to whether the one or more authorized services are presently provided for use by the endpoint device.Type: GrantFiled: December 18, 2015Date of Patent: October 13, 2020Assignee: Juniper Networks, Inc.Inventor: Sunil Madhaorao Gandhewar
-
Patent number: 10798645Abstract: A network device includes one or more processors configured to process, a request, from a subscriber device, via a wireless connection device, for network parameters for accessing one or more services provided by a service provider network, the request for network parameters comprising identifying data associated with a subscriber of the service provider network and output, to a service server, an authentication request for the subscriber device, the authentication request indicating the identifying data. In response to receiving an authentication reply indicating the authentication request for the subscriber device has been approved and a service profile for the subscriber, the one or more processors are configured to output, to the wireless connection device, configuration information corresponding to the service profile for the subscriber and output, to the subscriber device, network parameters for accessing the one or more services provided by the service provider network.Type: GrantFiled: June 15, 2018Date of Patent: October 6, 2020Assignee: Juniper Networks, Inc.Inventors: Sunil Madhaorao Gandhewar, Anand Vijayvergiya
-
Publication number: 20200186494Abstract: In general, techniques are described for managing address spaces across network elements. A network device including a processor may be configured to perform the techniques. The processor may execute a pool manager that automatically distributes a first block of network addresses to a first network element acting, for a first network, as a first address allocation server to assign the first block of network addresses. The pool manager may further automatically distribute a second block of contiguous network addresses to a second network element acting, for a second network, as a second address allocation server. The pool manager may then dynamically manage a size of the first block of network addresses and a size of the second block of network addresses to address exhaustion of available network addresses within either or both of the first block of network addresses and the second block of network addresses.Type: ApplicationFiled: December 5, 2018Publication date: June 11, 2020Inventors: Nirmal Antony X, Sunil Madhaorao Gandhewar, Steven P. Onishi
-
Publication number: 20200162460Abstract: In general, techniques are described for supporting bulk delivery of change of authorization data in authentication, authorization, and accounting (AAA) protocols, where delivery is performed as a change of authorization after a subscriber has successfully authenticated and initially authorized. In one example, the techniques are directed to a method including determining, by a RADIUS server for a service provider network, change of authorization data for services to which the subscriber of the service provider network has subscribed. The method further includes generating, by the RADIUS server, RADIUS messages that form a transaction between the RADIUS server and a network access server acting as a RADIUS client. The RADIUS messages provide all of the change of authorization data to the network access server prior to the network access server provisioning the services. The method further includes outputting, by the RADIUS server, the RADIUS messages to the network access server.Type: ApplicationFiled: January 21, 2020Publication date: May 21, 2020Inventors: John Gibbons, Paul Raison, Sunil Madhaorao Gandhewar
-
Publication number: 20200119993Abstract: A broadband network gateway (BNG) controller is described that includes a network subscriber database (NSDB) and one or more core applications. The NSDB is configured to store vBNG instance information for one or more subscriber devices. The vBNG instance information specifies vBNG instances operable by one or more edge routers. The vBNG instances are configured to receive requests to access service provider services from the one or more subscriber devices and to selectively authenticate the one or more subscriber devices for network services based on authentication information included in the requests to access services provider services. The one or more core applications include a network instance and configuration manager (NICM). The NICM is configured to modify the vBNG instance information at the NSDB to include an additional vBNG instance and to output, to an edge router, an instruction to generate the additional vBNG instance at the edge router.Type: ApplicationFiled: December 6, 2019Publication date: April 16, 2020Inventors: Sunil Madhaorao Gandhewar, Nirmal Antony X
-
Patent number: 10560331Abstract: A broadband network gateway (BNG) controller is described that includes a network subscriber database (NSDB) and one or more core applications. The NSDB is configured to store vBNG instance information for one or more subscriber devices. The vBNG instance information specifies vBNG instances operable by one or more edge routers. The vBNG instances are configured to receive requests to access service provider services from the one or more subscriber devices and to selectively authenticate the one or more subscriber devices for network services based on authentication information included in the requests to access services provider services. The one or more core applications include a network instance and configuration manager (NICM). The NICM is configured to modify the vBNG instance information at the NSDB to include an additional vBNG instance and to output, to an edge router, an instruction to generate the additional vBNG instance at the edge router.Type: GrantFiled: February 7, 2018Date of Patent: February 11, 2020Assignee: Juniper Networks, Inc.Inventors: Sunil Madhaorao Gandhewar, Nirmal Antony X
-
Patent number: 10547614Abstract: In general, techniques are described for supporting bulk delivery of change of authorization data in authentication, authorization, and accounting (AAA) protocols, where delivery is performed as a change of authorization after a subscriber has successfully authenticated and initially authorized. In one example, the techniques are directed to a method including determining, by a RADIUS server for a service provider network, change of authorization data for services to which the subscriber of the service provider network has subscribed. The method further includes generating, by the RADIUS server, RADIUS messages that form a transaction between the RADIUS server and a network access server acting as a RADIUS client. The RADIUS messages provide all of the change of authorization data to the network access server prior to the network access server provisioning the services. The method further includes outputting, by the RADIUS server, the RADIUS messages to the network access server.Type: GrantFiled: March 30, 2017Date of Patent: January 28, 2020Assignee: Juniper Networks, Inc.Inventors: John Gibbons, Paul Raison, Sunil Madhaorao Gandhewar
-
Publication number: 20190387465Abstract: A network device includes one or more processors configured to process, a request, from a subscriber device, via a wireless connection device, for network parameters for accessing one or more services provided by a service provider network, the request for network parameters comprising identifying data associated with a subscriber of the service provider network and output, to a service server, an authentication request for the subscriber device, the authentication request indicating the identifying data. In response to receiving an authentication reply indicating the authentication request for the subscriber device has been approved and a service profile for the subscriber, the one or more processors are configured to output, to the wireless connection device, configuration information corresponding to the service profile for the subscriber and output, to the subscriber device, network parameters for accessing the one or more services provided by the service provider network.Type: ApplicationFiled: June 15, 2018Publication date: December 19, 2019Inventors: Sunil Madhaorao Gandhewar, Anand Vijayvergiya
-
Publication number: 20190245748Abstract: A broadband network gateway (BNG) controller is described that includes a network subscriber database (NSDB) and one or more core applications. The NSDB is configured to store vBNG instance information for one or more subscriber devices. The vBNG instance information specifies vBNG instances operable by one or more edge routers. The vBNG instances are configured to receive requests to access service provider services from the one or more subscriber devices and to selectively authenticate the one or more subscriber devices for network services based on authentication information included in the requests to access services provider services. The one or more core applications include a network instance and configuration manager (NICM). The NICM is configured to modify the vBNG instance information at the NSDB to include an additional vBNG instance and to output, to an edge router, an instruction to generate the additional vBNG instance at the edge router.Type: ApplicationFiled: February 7, 2018Publication date: August 8, 2019Inventors: Sunil Madhaorao Gandhewar, Nirmal Antony X
-
Publication number: 20180288048Abstract: In general, techniques are described for supporting bulk delivery of change of authorization data in authentication, authorization, and accounting (AAA) protocols, where delivery is performed as a change of authorization after a subscriber has successfully authenticated and initially authorized. In one example, the techniques are directed to a method including determining, by a RADIUS server for a service provider network, change of authorization data for services to which the subscriber of the service provider network has subscribed. The method further includes generating, by the RADIUS server, RADIUS messages that form a transaction between the RADIUS server and a network access server acting as a RADIUS client. The RADIUS messages provide all of the change of authorization data to the network access server prior to the network access server provisioning the services. The method further includes outputting, by the RADIUS server, the RADIUS messages to the network access server.Type: ApplicationFiled: March 30, 2017Publication date: October 4, 2018Inventors: John Gibbons, Paul Raison, Sunil Madhaorao Gandhewar
-
Patent number: 10050937Abstract: In general, techniques are described for reducing impact of network attacks in access networks. A network device including an interface in a forwarding plane of the network device, and a policer configured in a packet forwarding engine of the forwarding plane may be configured to perform the techniques. The interface may receive a packet from a subscriber access device positioned at an edge of sub-network of an access network. The packet may include trusted information inserted by an intermediate network device positioned between the network device and the subscriber access device. The policer may determine, based on the trusted information, whether the packet is associated with the network attack. Based on the determination of whether the packet is associated with the network attack, the policer may forward the packet for subsequent protocol-specific processing.Type: GrantFiled: December 29, 2016Date of Patent: August 14, 2018Assignee: Juniper Networks, Inc.Inventors: Sunil Madhaorao Gandhewar, Arun S. G.