Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

871 results about "Internet Protocol" patented technology

The Internet Protocol (IP) is the principal communications protocol in the Internet protocol suite for relaying datagrams across network boundaries. Its routing function enables internetworking, and essentially establishes the Internet.

Data channel communications associated with an internet protocol multimedia subsystem

Various aspects of the present disclosure generally relate to wireless communication. In some aspects, a first network node may obtain a data channel establishment request comprising session description protocol (SDP) information corresponding to a multimedia call session between a first user equipment (UE) and a second UE, the SDP information including a data channel application identifier corresponding to a data channel application. The first network node may provide, to a second network node, a data channel service request that indicates the data channel application identifier. The first network node may obtain, from the second network node, a service response comprising a data channel control policy associated with the data channel application identifier and may allocate, based at least in part on the data channel control policy, media resources corresponding to at least one application data channel. Numerous other aspects are described.
Owner:QUALCOMM INC

Provisioning of encrypted DNS services

The present specification provides a system and method for determining that an endpoint device has connected to an untrusted external internet protocol (IP) network; and establishing a secure DNS connection from the endpoint device to a trusted DNS server via a proxy, wherein the proxy authenticates the trusted DNS server via a client identity certificate and a server certificate.
Owner:MCAFEE LLC

Systems and methods for dynamic distributed name resolution

Systems and methods for dynamic distributed name resolution. In various embodiments, steps include receiving a request from a user to access a destination service; resolving an Internet Protocol (IP) address for the destination service based on one or more characteristics of the request; enforcing one or more controls on the request based on a configuration provided by an owner of the destination service; and providing access to the destination service to the user based on the one or more controls.
Owner:ZSCALER INC

Real-time anomaly detection and tracing method and system for cloud storage logs

PendingCN121864488AOvercome the disadvantage of being unable to sense load fluctuationsEliminate timing disruptionsSecuring communicationPathPingAlgorithm
The invention relates to the technical field of log detection, in particular to a real-time anomaly detection and tracing method and system for a cloud storage log, and the method comprises the following steps: calculating an authentication failure proportion based on a user identifier and an internet protocol address, constructing a proportion change sequence, comparing an abrupt change threshold, screening candidate sections, fitting a slope, and aggregating anomaly records; calculating a fluctuation difference sequence, extracting a causal fracture node, recombining a subsequence graph, extracting a cross-node record and correcting a timestamp, connecting a transmission edge based on the timestamp, and accounting time consumption to construct a traceability path. According to the method, the serious defect that a fixed threshold value cannot sense system load fluctuation is overcome by constructing a dynamic proportion change slope, a causal fracture node is established to drive log atlas recombination so as to break an information barrier of a cross-node distributed environment, and a median function is used for correcting time migration to eliminate disorder interference caused by clock asynchronization; and the accurate risk tracing is realized by connecting the correction timestamp with the access transmission edge.
Owner:SHANGHAI XINGZIYA NETWORK TECH CO LTD

Real-time relay transmission method, device and system for fax data

The embodiment of the invention provides a real-time relay transmission method, device and system for fax data, which are applied to a first client front-end device, the first client front-end device is in communication connection with a first fax machine, and the method comprises the following steps: after the first fax machine and a second fax machine are connected in a call, the first client front-end device transmits the fax data to the second fax machine; the first client front-end equipment receives fax data sent by a first fax machine; the first client front-end equipment converts the fax data into an image file; the first client front-end equipment decomposes the image file into a plurality of image units, and a plurality of data packets are obtained after the image units are packaged through an internet protocol; and the first client front-end equipment sends the plurality of data packets to a second fax machine in real time through an Internet session protocol link.
Owner:SHENZHEN FLYINGVOICE NETWORK COMMUNICATION TECHNOLOGY CO LTD

Systems and methods for mitigating DDoS attacks on internet protocol networks

A system and method to protect resource servers from DDOS attacks is disclosed. A proxy gateway hides resource server using IP subnet addressing and receives authenticated IP packets. A cryptographic hash is generated, and destination IP packets address / ports are encrypted using a secret, algorithm, client IP address, resource server IP address, and port. The cryptographic hash and destination server are mapped into existing IP packet addresses, ports, or payload bits. The IP packets are routed to a redirect node in the public IP subnet of the proxy gateway. At the redirected node, the cryptographic hash is validated, and the resource server IP address and the port are extracted from mapping. Redirect node maps the clients public IP / port to an internal IP address and port associated with resource server and tunnels the IP packets from the redirect node to the resource server using the internal IP address and port.
Owner:INCEPTION SECURITY SOLUTIONS LLC

Distributor function, locator function and methods in a communications network

A method performed by a distributor function for handling a subscription to expose Internet protocol Multimedia Subsystem (IMS) exposure data in a communications network is provided. The exposure data is related to a User Equipment (UE) connected to an IMS network comprised in the wireless communications network. The distributor function is comprised in any one out of a first network node or a first IMS node. The distributor function receives (1001) a request requesting a subscription to expose IMS exposure data related to the UE. The request is originating from a second network node operating outside of the IMS network. The distributor function obtains (1002), from a locator function, data identifying a second IMS node supporting exposure capabilities and serving the UE. The locator function is comprised in any one out of the first IMS node or a third network node. The distributor function sends (1003) to the identified second IMS node, a subscription request to expose data related to the UE. The subscription request instructs the second IMS node to notify a network exposure function of a triggering occurrence fulfilling a triggering condition, to expose exposure data, when detected by the second IMS node. The network exposure function is located in the first network node. The notification enables the network exposure function to notify the second network node of the detected triggering occurrence.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Multi-segment SD-WAN through cloud DC transit nodes

A method implemented by a first cloud gateway (GW). The method includes receiving, from a first customer premises edge device (CPE) over a software defined wide area network (SD-WAN) path, a data packet including an outer layer internet protocol (IP) header and a generic network virtualization encapsulation (GENEVE) header. The GENEVE header includes one or more sub-type length values (TLVs). The method also includes extracting a destination address from the one or more sub TLVs within the GENEVE header. And the method further comprises the steps of updating the destination IP address in the outer-layer IP header to the extracted destination address, and forwarding the data packet to a second CPE according to the updated destination IP address.
Owner:HUAWEI TECH CO LTD

GENERATIVE ARTIFICIAL INTELLIGENCE (GenAI)-DRIVEN ENHANCEMENTS TO AN INTERNET PROTOCOL (IP) MULTIMEDIA SUBSYSTEM (IMS)

PendingUS20260135892A1TransmissionData miningData store
Aspects of the subject disclosure may include, for example, collecting data relating to at least one CSCF of an IMS, resulting in collected data, extracting one or more features or metrics from the collected data, resulting in extracted data, storing the extracted data in one or more vector databases, causing a query to be submitted to the one or more vector databases for retrieving information regarding the at least one CSCF, resulting in retrieved information, analyzing the retrieved information using one or more AI models, and generating an output based on the analyzing for modifying an operation relating to the at least one CSCF. Other embodiments are disclosed.
Owner:AT&T INTELLECTUAL PROPERTY I L P

Service Function Proxy for Service Chaining in SRv6 Networks

A node in a Segment Routing Internet Protocol version 6 (SRv6) network with the node configured as a Service Function (SF) Proxy in the SRv6 network, the node includes circuitry configured to, subsequent to installation of a Segment Identifier (SID) for a Service Function Chain (SFC), receive a packet with the SID included therein, remove all Segment Routing (SR) information from the packet, send the packet on an interface associated with an SR-unaware SF, and receive the packet on the interface after processing by the SR-unaware SF, wherein the packet from the interface is associated as returning traffic from the SF.
Owner:CIENA CORP

Data classification method, system and equipment based on industrial Internet of Things, and medium

The invention belongs to the technical field of industrial Internet of Things, and particularly discloses a data classification method, system and device based on the industrial Internet of Things and a medium, and the method comprises the steps: obtaining the use authority after the system of the industrial Internet of Things is accessed, and then connecting an industrial robot through an Internet protocol; acquiring equipment parameter data and product detection data based on a data interface of the industrial robot; according to the key features of the product detection data, obtaining a product classification result through a MinHash algorithm; and based on the equipment parameter data and the differential privacy federated learning framework, classifying the data of the industrial robot through the classification model. The invention aims to solve the problem that the data classification method of the industrial Internet of Things in the prior art cannot realize the classification of the data of the industrial robot on the premise of protecting the data privacy and security. The problems that robot management devices in the industrial Internet of Things cannot be efficiently cooperated for joint training, and precise classification of industrial robots cannot be achieved are solved.
Owner:CHENGDU QINCHUAN IOT TECH CO LTD

Internet protocol address access protection method and equipment

The invention discloses an internet protocol address access protection method and equipment, and relates to the technical field of internet. According to the scheme, the method comprises the steps that IP access records and safety related data are recorded in a tampering-free mode through a block chain distributed account book, and after a newly-added block is chained, a block chain node automatically updates a state database through an intelligent contract to maintain safety attribute information of an IP in real time. Before a terminal initiates IP access, a query request is sent to a plurality of nodes in a block chain network, after security attribute information fed back by each node is obtained, distributed verification is completed through a preset consensus algorithm, and finally an access control action is determined. A single central server is replaced by a multi-node distributed architecture, so that the risk of single-point failure is eliminated; secondly, an automatic updating mechanism driven by the smart contract greatly shortens a time window for responding to novel threats and IP redirection; and finally, all access records are publicly and transparently recorded on the block chain, so that the credibility and reliability of the system are enhanced.
Owner:GREAT WALL MOTOR CO LTD

Multiple access networks with non-integrated aggregation

Aspects relate to multiple access networks with non-integrated aggregation. In one aspect, a UE may communicate with a core network over a 3rd Generation Partnership Project (3GPP) network, transmit a request to the core network for a protocol data unit (PDU) session comprising a request for data aggregation across the 3GPP network and a non-integrated internet protocol (IP) network, and receive a response from the core network granting the requested PDU session, the response including identification of a core network aggregation entity and an offload percentage. The UE may also transmit data to the core network aggregation entity via the non-integrated IP network based on the offload percentage, and transmit data to the core network aggregation entity via the 3GPP network based on the offload percentage.
Owner:QUALCOMM INC

Video high-definition coding and low-delay transmission method for IPTV (Internet Protocol Television) large-screen short play

The invention provides a video high-definition coding and low-delay transmission method for an IPTV (Internet Protocol Television) large-screen short play, which relates to the technical field of low-delay transmission, and comprises the following steps: defining an end-to-end measurement boundary and a time reference, configuring an acquisition mechanism of a network environment real-time state index, extracting high-definition coding metadata by adopting a coding end, and transmitting the extracted high-definition coding metadata to a transmission end; and timestamp information is marked and a unified structured operation state object is configured. A short window prediction path and a middle window prediction path are configured, confidence interval correction and lower limit fusion are combined to form a conservative available bandwidth estimation value, and when a network level label is judged to be a weak network level, a protection buffer mode and a low code rate pre-pulling strategy are triggered. The mechanism effectively solves the problems of frequent playing lagging and overhigh switching delay in a weak network environment in the prior art, so that a short play can still keep stable and continuous playing experience in a complex network environment.
Owner:SHENZHEN LUTONG NETWORK TECH CO LTD

Optimizing content item compression for adaptive bitrate streaming by internet protocol television (IPTV) providers

Systems and methods are disclosed for generating an adaptive bitrate ladder for a content item based on the actual quality of the content item. A broadcaster determines a quality score of a content item and multiplexes a message indicating the quality score with data packets of the content item to a headend. The headend uses the quality score to determine an ABR ladder with a set of bitrates for the content item. The headend then transcodes the content item into the set of bitrates. The headend then transmits a plurality of network addresses, each corresponding to a stream at a particular bitrate, to a user gateway to enable the user gateway to make the streams available.
Owner:ADEIA GUIDES INC

Gateway node, user equipment and method for enhancing a call session between user equipments using a data channel

A method performed by a gateway node for enhancing a call session between a first User Equipment, UE, and a second UE in a communications network is provided. The second UE is associated to a Private Branch Exchange, PBX, node. When a call session has been established between the first UE and the second UE via the PBX node and via an Internet Protocol Multimedia Subsystem, IMS, network, the gateway node receives, from any one out of the first UE and the second UE, a request for establishing a data channel to enhance the call session. The gateway node negotiates one or more parameters to be used in the requested data channel between the first UE and the second UE. The gateway node establishes the data channel according to the negotiation, to enhance the call session between the first UE and the second UE.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Methods and apparatus for channel access in a multi-link wireless system

Methods and systems for securely sending user plane data from a base station to an Artificial Intelligence (AI) server via a mobile telecommunication network are disclosed herein. A method performed by the base station located in a Radio Access Network (RAN) includes: sending an interface setup request to the (AI) server, receiving an interface setup response from the AI server, establishing, by exchanging cryptographic keys using an Internet Key Exchange (IKE) protocol, a data transport tunnel between the base station and the AI server based on an Internet Protocol Security (IPSec) network protocol, and sending the user plane data from the base station to the AI server for training artificial intelligence based models.
Owner:ZTE CORP

Radio authentication as root of trust for transport layer security

A converged radio device (MS) is configured to perform communication in an internet protocol (IP) based network and authenticate with a switching and management infrastructure (SwMI) of a second network by using pre-existing radio authentication as a root of trust for an unauthenticated IP session established between the MS and a server associated with the SwMI. The MS receives a first challenge from the SwMI via the server, and determines a result of the first challenge using data derived from a certificate associated with the server. The MS transmits, to the SwMI via the server, a second challenge and the result of the first challenge. The MS authenticates the SwMI by verifying a result of the second challenge received from the SwMI via the server matches an expected result of the second challenge. Responsive to a mutual authentication, the MS performs communication in the radio network via the server.
Owner:MOTOROLA SOLUTIONS INC

Systems and methods for spoofed network traffic detection

Systems and methods for network traffic monitoring are provided. A system may obtain a data packet of a data packet exchange between the server and a network device, extract a time to live (TTL) value and an internet protocol (IP) address of the network device from the data packet, compare the TTL value with a TTL value range or signature determined based on TTL values observed from data packets transmitted across a communications network, determine that the TTL value violates an authentication policy based on the TTL value being outside of the TTL value range or signature, and apply a tag to the IP address of the network device in a database stored memory.
Owner:NETSCOUT SYSTEMS INC

Physical channel independent VPN (Virtual Private Network) transmission system based on double-end independent IP (Internet Protocol) stack

The invention provides a physical channel irrelevant VPN (Virtual Private Network) transmission system based on a double-end independent IP (Internet Protocol) stack, which is characterized in that a client component comprises a flow capture / injection module, an independent IP stack module, an adaptation layer and a physical channel driving module, the server component comprises a physical channel driving module, an adaptation layer, an independent IP protocol stack module and a back-end network interface module; the adaptation layer of the client component is connected with a physical link through a physical channel driver; the adaptation layer of the server component is in drive connection with the same physical link through a physical channel; and a bearer protocol data unit packaged by the adaptation layer is transmitted between the client and the server through a physical link, so that VPN tunnel transmission of an original IP data packet on a non-standard network interface physical channel is realized. According to the method and the device, the architecture of the independent IP stack and the adaptation layer is adopted, so that the equipment can still carry out secure transmission of the original IP data packet through the physical link under the condition of lacking the support of the standard network protocol stack, and the adaptability and the flexibility of the VPN are enhanced, especially in equipment with a non-traditional network interface.
Owner:CHONGQING AOXIONG INFORMATION TECH

Binding support function capacity expansion

Various embodiments of the present technology generally relate to systems and methods for binding support function (BSF) capacity expansion. In some examples, a method may comprise operating a binding support function (BSF) of a mobile network, including determining whether an internet protocol (IP) address of a received message corresponds to a local IP address range, and when the IP address of the received message does not correspond to the local IP address range, accessing a first network function (NF) profile at a network repository function (NRF) to determine a second BSF corresponding to the IP address, and forwarding the received message to the second BSF.
Owner:ORACLE INT CORP

Internet protocol multimedia subsystem (IMS) slicing in wireless communication networks

Various embodiments comprise wireless communication networks to support slicing in an Internet Protocol Multimedia Subsystem (IMS) core. In some examples, the wireless communication network comprises a multimedia function and a network data system. The multimedia function receives a registration request indicating a User Equipment (UE) Identifier (ID). The multimedia function queries a network data system for UE subscription information. The network data system correlates the UE ID to slice information associated with a UE and indicates the slice information to the multimedia function. The multimedia function receives the slice information from the network data system and responsively caches the slice information in association with the UE ID.
Owner:T MOBILE INNOVATIONS LLC

Internet protocol multimedia subsystem (IMS) nodes, core network node, and methods therein, in a communications network

A method performed by a first Internet protocol Multimedia System (IMS) node for handling a subscription of exposure of an IMS call related monitoring event in a communications network is provided. The first IMS node receives (601) via a second Service Based Interface (SBI), from a Core Network (CN) node, a request for a subscription to expose the IMS call related monitoring event for a User Equipment (UE) in an IMS network. The request indicates a first ID identifying a type of the call related monitoring event, a second ID identifying the network node, from which the request is originating, a third ID identifying the UE, and a fourth ID identifying the CN node. When the UE has been registered in the first IMS node for an IMS identity, the first IMS node receives (602) from a second IMS node via a fourth SBI, a fifth ID identifying the second IMS node selected to serve the UE in the IMS network. Based on the fifth ID, the first IMS node sends (603) the subscription request to the second IMS node via a third SBI, instructing the second IMS node to setup the requested subscription. The subscription when setup, enables the second IMS node to, when a call related event is detected that is related to the setup subscription, report the call related event according to any one out of: —by direct reporting via a third SBI to the CN node or —by indirect reporting to the CN node using the second SBI, via the first IMS, node, using the fourth SBI. The call related event report will be forwarded by the CN node via a first SBI to the network node.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Discovering ownership assignment of computer devices in a telecommunications network

A method for discovering ownership assignment of computer devices includes obtaining a set of unassigned internet protocol (IP) addresses. The multiple computer devices are assigned to multiple teams of an organization such that each team is assigned to a segment of the sequence of IP addresses. The method includes converting each IP address into a numerical value. The method includes obtaining a set of assigned IP addresses from an assigned IP address database and obtaining a subnet allocation for each IP address in the set of assigned IP addresses. For a particular unassigned IP address, the method includes a reference IP address from the set of assigned IP addresses and determining whether the particular IP address and the reference IP address have a same subnet allocation. The method includes determining the ownership assignment based on the subnet allocation.
Owner:T MOBILE US INC

Data access method and device in multi-tenant environment, equipment and storage medium

The invention discloses a data access method and device in a multi-tenant environment, equipment and a storage medium, and belongs to the technical field of computer networks. The method comprises the following steps: acquiring configuration information of message-oriented middleware from custom resources; the custom resource is a data source instance for defining the message middleware in the function service platform; the configuration information comprises a tenant identifier; allocating a virtual address to a real address of the message-oriented middleware according to the tenant identifier to obtain address mapping information; the address mapping information comprises tenant identifiers of different message middleware and a mapping relationship between the tenant identifiers and virtual addresses, and different tenant identifiers correspond to different virtual addresses; and in response to a data access request of a tenant, forwarding the data access request through the cross-private cloud channel according to the address mapping information, so as to realize cross-private cloud access of the tenant to the message-oriented middleware. According to the method and the device, the problems of communication failure, data isolation failure and the like caused by possible conflicts of internet protocol addresses in a multi-tenant environment can be solved.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Information processing method, and device and storage medium

Provided are an information processing method and device and a storage medium. The method includes: in response to receiving a traceroute packet sent by a second-type network node, performing outer tunnel encapsulation on the traceroute packet to obtain a double-layer Internet protocol (IP) packet, wherein the double-layer IP packet comprises: a traceroute packet and a first public network tunnel packet, the first public network tunnel packet carries a hop-by-hop option header (HBH) extension header or a destination option header (DOH) extension header, and the HBH extension header or the DOH extension header carries a hop limit field of the traceroute packet and source segment identifier (SID) information assigned to the second-type network node by a first-type network node.
Owner:ZTE CORP

Real-time precise ionosphere corrections for mobile devices

Described herein are solutions for real-time precise ionosphere corrections. An integrate and dump (I&D) server can receive a Networked Transport of Radio Technical Commission For Maritime Services (RTCM) via Internet Protocol (NTRIP) bit stream of a spherical harmonic model for precise point positioning (PPP). The model can be a vertical total electron content (VTEC) spherical harmonic expansion model and / or can include a set of ionosphere coefficients for correcting errors in satellite signals due to ionospheric conditions. The I&D server can generate a file of ionosphere coefficients, according to a refresh timer, and can send the file to a content delivery network (CDN) for distribution to user equipment (UEs) upon request. These and many other features and examples are described herein.
Owner:APPLE INC

Methods, systems, and computer readable media for providing stream control transmission protocol (SCTP) multihoming between a kubernetes environment and a non-kubernetes environment

A method for providing stream control transmission protocol (SCTP) multihoming between a Kubernetes environment and a non-Kubernetes environment includes receiving, at an SCTP multihoming router (SMR) deployed as a pod within the Kubernetes environment and from a client in the non-Kubernetes environment, an SCTP INIT message for establishing a multi-homed SCTP association between first and second Internet protocol (IP) addresses of the client and first and second local IP addresses of the SMR. The first and second local IP addresses of the SMR are added to an SCTP header of the SCTP INIT message. Source and destination network address translations (NATs) are performed to change a source IP address and a destination IP address in an IP header of an IP datagram carrying the SCTP INIT message to a third local IP address of the SMR and a service IP address of a service in the Kubernetes environment, respectively.
Owner:ORACLE INT CORP

Internet protocol (IP) address sharing and system recovery

This disclosure describes techniques for a system to share an IP address between computing resources (e.g., between a host server and its management controller), such that a server system may be recovered in the event of a system failure. For example, the host server may send a message to its management controller, such as a baseboard management controller, indicating that the IP address provided to the server system is in use, where the message may be sent at particular time intervals and / or within a threshold period of time. When a failure occurs with respect to the server system, the host server may be unable to send the message at the particular time interval and / or within the threshold period of time. Accordingly, the management controller may be configured to receive, or otherwise recover, the IP address such that the entire server system is accessible and recoverable.
Owner:CISCO TECHNOLOGY INC

Load distribution of internet protocol security tunnel for multicore processing

In one embodiment, a method includes receiving, by a first processor, a data packet for processing, the data packet including a header in an unencrypted portion of the data packet, the header having subspace ID information corresponding to a core from which the data packet was sent; saving, by the first processor, the subspace ID information; encoding, within the header, a selected subspace ID information identifying a core within the first processor to which subsequent data packets are to be received; and sending, by the first processor, in another data packet, the selected subspace ID information to a second processor that sent the data packet, the selected subspace ID information included in a header in an unencrypted portion of the data packet.
Owner:CISCO TECHNOLOGY INC