Patents by Inventor Zhiyuan Hu

Zhiyuan Hu has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20210273883
    Abstract: Example embodiments of the present disclosure relate to enablement of a service function chain based on a software defined network. In some embodiments, there is provided a method implemented at a service function chain controller. The method comprises creating a service function chain for a packet, the service function chain comprising a set of ordered service functions that are to process the packet; and configuring respective forwarding rules associated with the service function chain directly or indirectly to a plurality of network nodes in a software defined network, the respective forwarding rules indicating how the plurality of network nodes forward the packet to the set of ordered service functions in the service function chain. In this way, it is possible to enable the service function chain in the software defined network.
    Type: Application
    Filed: July 11, 2018
    Publication date: September 2, 2021
    Inventors: Zhiyuan HU, Duan CHEN, Zhigang LUO
  • Publication number: 20210266735
    Abstract: Embodiments of the disclosure provide a method, device and computer readable medium for protecting MAC addresses. According to embodiments of the present disclosure, the terminal device may obtain a set of virtual MAC addressed from a network device and may connect with a further network device (for example, Wi-Fi AP or Bluetooth devices) using the virtual MAC addresses. In this way, tracking the terminal device with MAC address is prevented so that user privacy protection could be enhanced.
    Type: Application
    Filed: June 29, 2018
    Publication date: August 26, 2021
    Inventors: Zhiyuan HU, Wen WEI, Mingyu ZHAO, Yueming YIN, Zhigang LUO
  • Publication number: 20210211439
    Abstract: Embodiments of the present disclosure relate to methods, devices and computer readable storage medium for tracing an attack source in a service function chain overlay network. In example embodiments, a request for tracing an attack source of an attacking data is sent at the attack tracer to a first service function chain domain of a plurality of service function chain domains through which the attacking data flow passes subsequently. The request includes flow characteristics of the attacking data flow. Then, the attack tracer receives a first set of results of flow matching based on the flow characteristics from the first service function chain domain. The attack tracer identifies the attack source in the plurality of service function chain domains at least in part based on the first set of results. In this way, the attack source may be traced efficiently in the service function chain overlay network.
    Type: Application
    Filed: May 22, 2018
    Publication date: July 8, 2021
    Inventors: Zhiyuan Hu, Jing Ping, Stephane Mahieu, Yueming Yin, Zhigang Luo
  • Publication number: 20210044567
    Abstract: Embodiments of the present disclosure relate to a method, apparatus, and computer readable medium for providing a security service for a data center. According to the method, a packet terminating at or originating from the data center is received. At least one label is determined for the packet, each label indicating a security requirement for the packet. Based on the at least one label, a security service chain is selected for the packet, the security service chain including an ordered set of security functions deployed in the data center and to be applied to the packet. The packet is transmitted to the selected security service chain in association with the at least one label, the packet being processed by the ordered set of security functions in the security service chain.
    Type: Application
    Filed: February 6, 2018
    Publication date: February 11, 2021
    Inventors: Zhiyuan Hu, Jing Ping, Stephane Mahieu, Yueming Yin
  • Publication number: 20200403967
    Abstract: A method, a device, an apparatus and a computer-readable storage medium for MAC address conflict detection. The method includes: in response to detecting a wireless local area network, transmitting, at a first device, a dummy MAC address of the first device to a second device in the wireless local area network, the dummy MAC address being different from a real MAC address of the first device; transmitting an address conflict detection request for the dummy MAC address to the second device; and in response to an address conflict detection response from the second device indicating that there is no conflict for the dummy MAC address, establishing a connection with the wireless local area network. The method may effectively protect privacy information for a user of a terminal device, while avoiding a MAC address conflict, such that the user can communicate in a secure network environment.
    Type: Application
    Filed: June 4, 2020
    Publication date: December 24, 2020
    Inventors: Zhiyuan HU, Duan Chen, Yueming Yin, Zhigang Luo
  • Publication number: 20200358696
    Abstract: Embodiments of the present disclosure relate to method and device for interworking between service function chain (i.e., service chain) domains In some embodiments, there is provided a communication method comprising: receiving, at a first logic node of a first service chain in a first domain, a first packet associated with a second service chain in a second domain; converting the first packet into a second packet comprising first interworking information between the first service chain and the second service chain, the first interworking information comprising a flag indicating that the second packet is an interworking packet, an address of the first logic node, a first flow identifier of the second packet, a first service path identifier of the second packet and metadata associated with the second service chain; transmitting the second packet to a second logic node in the second domain; and receiving from the second logic node a response to the metadata.
    Type: Application
    Filed: February 1, 2019
    Publication date: November 12, 2020
    Inventors: Zhiyuan HU, Mingyu ZHAO, Lina WANG, Zhigang LUO
  • Patent number: 10674416
    Abstract: Embodiments provide a user equipment (UE) device that includes a processor and a transceiver. The processor is configured to direct a handover request to an evolved packet core (EPC) access node via the transceiver. The access node may be, e.g. a wireless local area network (WLAN) access point or an E-UTRAN access point. The handover request may initiate a transfer of connectivity of the UE device from the WLAN access point to the E-UTRAN access point, or from the E-UTRAN access point to the WLAN access point. The processor is configured to receive a handover response from the current access node, wherein the response includes a cryptographic key identifier, and to derive a handover key from the key identifier. The processor may then operate the UE device to provide connectivity based on the handover key between the UE device and the other of the access nodes.
    Type: Grant
    Filed: November 18, 2015
    Date of Patent: June 2, 2020
    Assignee: Alcatel Lucent
    Inventors: Zhiyuan Hu, Zhigang Luo, Xueqiang Yan
  • Patent number: 10666689
    Abstract: At least one security policy is obtained from a policy creator at a controller in an SDN network. The security policy is implemented in the SDN network, via the controller, based on one or more attributes specifying a characteristic of the security policy, a role of the creator of the security policy, and a security privilege level of the role of the creator of the security policy.
    Type: Grant
    Filed: June 30, 2014
    Date of Patent: May 26, 2020
    Assignee: ALCATEL LUCENT
    Inventors: Zhiyuan Hu, Xueqiang Yan, Zhigang Luo
  • Publication number: 20200045082
    Abstract: Embodiments of the present disclosure relate to method and device for providing a security service. For example, a method comprises: in response to receiving, at a first controller, a first request to create a first service chain for an application in a network, obtaining configuration information associated with the security service from the first request; generating, based on the configuration information, a second request to create a sequence of security functions associated with the first service chain; sending the second request to a second controller so as to create the sequence of security functions in the network; and in response to receiving from the second controller an acknowledgement for the sequence of security functions, creating the first service chain based on the sequence of security functions. Embodiments of the present disclosure further provide a device capable of implementing the above method.
    Type: Application
    Filed: February 6, 2018
    Publication date: February 6, 2020
    Applicant: Alcatel Lucent
    Inventors: Zhiyuan Hu, Lina Wang, Zhigang Luo
  • Patent number: 10476397
    Abstract: Provided are methods and circuits for a resonant converter comprising at least one switch-controlled capacitor, wherein the at least one switch-controlled capacitor controls a resonant frequency of the resonant tank circuit. Provided are constant and variable switching frequency embodiments, and fill-wave and half-wave switch-controlled capacitor embodiments. Also provided are interleaved resonant converters based on constant and variable switching frequency, and full-wave and half-wave switch-controlled capacitor resonant converter embodiments. Interleaved embodiments overcome load sharing problems associated with prior interleaved resonant converters and enable phase shedding to improve light load efficiency.
    Type: Grant
    Filed: August 7, 2017
    Date of Patent: November 12, 2019
    Assignee: Ganpower International Inc.
    Inventors: Yan-Fei Liu, Zhiyuan Hu
  • Patent number: 10404176
    Abstract: A switched capacitor voltage converter comprises: an input port; an output port; a first control field-effect transistor (FET) comprising a first terminal coupled to the input port; a second control FET comprising a first terminal coupled to a second terminal of the first control FET; a first tank circuit coupled to the second terminal of the first control FET and to the first terminal of the second control FET; a first high-side sync FET comprising a first terminal coupled to the output port, a second terminal coupled to the first tank circuit; a first low-side sync FET comprising a first terminal coupled to the second terminal of the first high-side sync FET and to the first tank circuit; and a first current sense circuit coupled to the first tank circuit.
    Type: Grant
    Filed: April 3, 2018
    Date of Patent: September 3, 2019
    Assignee: Texas Instruments Incorporated
    Inventors: Zhiyuan Hu, Jian Liu
  • Publication number: 20190268384
    Abstract: A first security service function chain is generated that identifies at least a first service function path comprising an identified set of security service functions, with at least one of the identified set of security service functions comprising a virtualized network function in a software defined networking (SDN) network architecture. The first security service function chain is utilized to create classification policies associating packets of a given packet type with the first security service function chain, and the first service function path is utilized to create forwarding policies specifying handling of packets of the given packet type by respective ones of the identified set of security service functions. The classification policies are provided to one or more nodes in a communication network comprising the SDN network architecture, and the forwarding policies are provided to one or more of the identified set of security service functions in the communication network.
    Type: Application
    Filed: August 5, 2016
    Publication date: August 29, 2019
    Applicant: Alcatel Lucent
    Inventors: Zhiyuan HU, Xueqiang YAN, Zhigang LUO
  • Publication number: 20190261179
    Abstract: A security service function chain is created including a set of security service functions. The security service function chain is created in response to instantiation of a given network partition (e.g., network slice) in a communication network (5G or similar network). The communication network supports instantiation of a plurality of network partitions for providing a respective plurality of network services. The security service function chain is utilized to perform at least one security service (e.g., authentication) for an entity (e.g., a subscriber or a device) accessing or seeking access to a network service (e.g., one of eMBB, massive IoT, and mission-critical IoT) corresponding to the given network partition.
    Type: Application
    Filed: September 18, 2016
    Publication date: August 22, 2019
    Applicant: Alcatel Lucent
    Inventors: Zhiyuan HU, Zhigang LUO, Xueqiang YAN
  • Publication number: 20190115834
    Abstract: A switched capacitor voltage converter comprises: an input port; an output port; a first control field-effect transistor (FET) comprising a first terminal coupled to the input port; a second control FET comprising a first terminal coupled to a second terminal of the first control FET; a first tank circuit coupled to the second terminal of the first control FET and to the first terminal of the second control FET; a first high-side sync FET comprising a first terminal coupled to the output port, a second terminal coupled to the first tank circuit; a first low-side sync FET comprising a first terminal coupled to the second terminal of the first high-side sync FET and to the first tank circuit; and a first current sense circuit coupled to the first tank circuit.
    Type: Application
    Filed: April 3, 2018
    Publication date: April 18, 2019
    Inventors: Zhiyuan HU, Jian LIU
  • Publication number: 20180352490
    Abstract: Embodiments provide a user equipment (UE) device that includes a processor and a transceiver. The processor is configured to direct a handover request to an evolved packet core (EPC) access node via the transceiver. The access node may be, e.g. a wireless local area network (WLAN) access point or an E-UTRAN access point. The handover request may initiate a transfer of connectivity of the UE device from the WLAN access point to the E-UTRAN access point, or from the E-UTRAN access point to the WLAN access point. The processor is configured to receive a handover response from the current access node, wherein the response includes a cryptographic key identifier, and to derive a handover key from the key identifier. The processor may then operate the UE device to provide connectivity based on the handover key between the UE device and the other of the access nodes.
    Type: Application
    Filed: November 18, 2015
    Publication date: December 6, 2018
    Applicant: Alcatel Lucent
    Inventors: Zhiyuan Hu, Zhigang Luo, Xueqiang Yan
  • Patent number: 10056830
    Abstract: Methods and apparatus for determining a value of a pulse-width modulation (PWM) signal with which to drive a power stage of a DC-to-DC voltage converter having an output inductor coupled between the power stage and an output node that is couplable to a load. A plurality of control schemes for determining a value of a PWM signal with which to drive the power stage are maintained. A value of the PWM signal currently driving the power stage is monitored. A value of an inductor current flowing through the output inductor is monitored. A value of a load current being provided to the load is monitored. One of the plurality of control schemes is selected based on the value of the PWM signal currently driving the power stage, the value of the inductor current, and the value of the load current. The selected control scheme is used to determine a value of a PWM signal with which to drive the power stage.
    Type: Grant
    Filed: December 20, 2016
    Date of Patent: August 21, 2018
    Assignee: TEXAS INSTRUMENTS INCORPORATED
    Inventors: Zhiyuan Hu, Jian Liu
  • Publication number: 20180175725
    Abstract: Methods and apparatus for determining a value of a pulse-width modulation (PWM) signal with which to drive a power stage of a DC-to-DC voltage converter having an output inductor coupled between the power stage and an output node that is couplable to a load. A plurality of control schemes for determining a value of a PWM signal with which to drive the power stage are maintained. A value of the PWM signal currently driving the power stage is monitored. A value of an inductor current flowing through the output inductor is monitored. A value of a load current being provided to the load is monitored. One of the plurality of control schemes is selected based on the value of the PWM signal currently driving the power stage, the value of the inductor current, and the value of the load current. The selected control scheme is used to determine a value of a PWM signal with which to drive the power stage.
    Type: Application
    Filed: December 20, 2016
    Publication date: June 21, 2018
    Inventors: Zhiyuan Hu, Jian Liu
  • Publication number: 20180062528
    Abstract: Provided are methods and circuits for a resonant converter comprising at least one switch-controlled capacitor, wherein the at least one switch-controlled capacitor controls a resonant frequency of the resonant tank circuit. Provided are constant and variable switching frequency embodiments, and fill-wave and half-wave switch-controlled capacitor embodiments. Also provided are interleaved resonant converters based on constant and variable switching frequency, and full-wave and half-wave switch-controlled capacitor resonant converter embodiments. Interleaved embodiments overcome load sharing problems associated with prior interleaved resonant converters and enable phase shedding to improve light load efficiency.
    Type: Application
    Filed: August 7, 2017
    Publication date: March 1, 2018
    Inventors: Yan-Fei Liu, Zhiyuan Hu
  • Publication number: 20170324781
    Abstract: At least one security policy is obtained from a policy creator at a controller in an SDN network. The security policy is implemented in the SDN network, via the controller,based on one or more attributes specifying a characteristic of the security policy, a role of the creator of the security policy, and a security privilege level of the role of the creator of the security policy.
    Type: Application
    Filed: June 30, 2014
    Publication date: November 9, 2017
    Applicant: Alcatel Lucent
    Inventors: Zhiyuan HU, Xueqiang YAN, Zhigang LUO
  • Patent number: 9794831
    Abstract: The present invention provides a method for shortening signaling delay of ISC session transfer procedure, a network element for controlling ISC session transfer, a network element for anchoring a media path in ISC session transfer and a communication system including at least two terminals and the above two network elements. In the present invention, the SCC AS decides if a media path needs to be anchored in a media anchor point MRF, and if yes, then instructs a MRF to assign respective media endpoints for a local UE and a remote UE and connect the two media endpoints together, so as to divide the session between the local UE and the remote UE into two independent sub-sessions: a session between the local UE and the MRF, and a session between the remote UE and the MRF. For these two sub-sessions, the SIP signaling is terminated and sent out in the SCC AS. Thus, when a local UE or a remote UE triggers handover, only one sub-session needs to be updated/influenced.
    Type: Grant
    Filed: October 30, 2009
    Date of Patent: October 17, 2017
    Assignee: Alcatel Lucent
    Inventors: Zhengxiong Lei, Xueqiang Yan, Zhiyuan Hu, Yonggen Wan