Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

28 results about "Network service provider" patented technology

A network service provider (NSP) is a business or organization that sells bandwidth or network access by providing direct Internet backbone access to internet service providers and usually access to its network access points (NAPs). For such a reason, network service providers are sometimes referred to as backbone providers or internet providers.

Data tracker

Ethical data tracker systems and methods are disclosed. A payment network computer receives a token request from an application running on a client device. The token request includes user contact information and a merchant identifier. A token server computer generates a token associated with the merchant identifier. The payment network computer maps the token to the user contact information and the merchant identifier, stores the token, the user contact information, and the merchant identifier in a database, and determines a validation of a mapping in the database of a token and a merchant identifier received from a network service provider. The payment network computer authorizes or prohibits the network service provider to communicate with the account holder via the user contact information based on the determining of the validation of the mapping in the database of the token and the merchant identifier received from the network service provider.
Owner:VISA INTERNATIONAL SERVICE ASSOCIATION

System and Method for Facilitating Alternative Branding in Financial Systems

Embodiments of a system and method enable secure connectivity between the computer systems of a financial institution and software for Brand On Banking. Embodiments of the system include an Identity Platform, Know Your Customer (KYC) processes including ID card verification, face verification, document verification such as utility bills as proof of address, and biometric verification, and bank servicing features such as checking, savings, debit, payments, loans, and bill-pay. The secure connectivity is established in various embodiments through private or public Application Programming Interfaces (APIs) over a network service provider, thus eliminating third-party risk for the financial institution. Additionally, the system allows for displaying alternate brands and identifying customers associated with a specific product brand other than the financial institution. The mobile interface is user-friendly and consolidates all financial accounts in one location, reducing customer friction.
Owner:SHIFTCENTS INC

Access control methods and systems for network services

This application discloses an access control method and system for network services. The method is applied to a network service provider, which deploys an auxiliary server, a target server, and a firewall. The target server runs a target service. The method includes: the auxiliary server receiving a user request; the request being adapted to a predetermined message format of the auxiliary server, the content including combined information and a checksum; the combined information including an access identifier and firewall configuration commands; the auxiliary server locating the associated target server based on the access identifier and forwarding the combined information and checksum to the target server; the target server verifying the combined information and checksum; if the verification result is successful, the target server, based on the configuration commands, notifying the firewall to adjust firewall settings regarding user access to the target service. This method can improve the security and universality of network services and enhance the user's access experience. This application can be widely applied in the field of network service technology.
Owner:CHINA TELECOM ARTIFICIAL INTELLIGENCE TECHNOLOGY (BEIJING) CO LTD

Systems and methods for service response analysis via out-of-band signaling

Systems and methods for service response analysis via out-of-band signaling is provided. A system may obtain, via a first network channel, a network data packet from a network service provider. The system may determine the network data packet comprises a response code indicating a status of the request. The system may extract the response code from the network data packet. The system may generate an out-of-band response message comprising the response code. The system may send, to an external device via a second network channel, the out-of-band response message comprising the response code.
Owner:NETSCOUT SYSTEMS INC

Public network domain name shunting method and communication system

The invention discloses a public network domain name shunting method and a communication system. Comprising the steps that an uplink classifier user plane function network element receives a DNS analysis request message initiated by user equipment, the message comprises a public network domain name to be analyzed, and a target IP address of the message is a first IP address; whether the public network domain name meets a DNS redirection rule is judged, if yes, the request message is sent to an intranet DNS server corresponding to the public network domain name, and a DNS analysis response message fed back by the intranet DNS server is received; and converting the analysis result from the second IP address to a virtual IP address according to a target IP address conversion rule, and sending a DNS analysis response message of which the analysis result is the virtual IP address to the user equipment. According to the method and the device, the technical problem that the common public network service cannot be normally accessed due to the fact that the same IP address is returned to two DNS analysis requests of the public network service shunted by the internal network and the common public network service by a content distribution network service provider is solved.
Owner:CHINA TELECOM CORP LTD

System, method and architecture for secure sharing of customer intelligence

A key master service capable of operating on a service provider in a network enables is disclosed. The key master enables authorized parties to securely exchange client information without compromising client security. One feature of the key master service is the generation of a unique key for each client. All parties in an authorized universe access, exchange and modify client information by referencing the universal key, rather than using known client identifiers. Client information is further secured by advantageously applying an obfuscation function to the data. Obfuscated client information is stored together with the universal key as keyed client data at the client and / or server, where it may be directly accessed by the service provider or third parties. Because client information is stored and exchanged without the ability to discern either the client identity or the nature of the information, such information is secured against malicious third-party interception.
Owner:CAPITAL ONE SERVICES LLC

Vehicle data access system with a personal authenticating process

ActiveUS12688739B1Third partyInternet privacy
The present disclosure related to the configuration and management of accessibility of vehicle data communications provided to a service technician or other third party. The service technician requests access to the vehicle data with authentication information. The network service provider can facilitate an initial authentication for access to vehicle data, provide access to the vehicle data for authenticated and authorized users, and manage revocation of vehicle data access rights via a common interface provided through the vehicle without requiring customized software, applications or external computing devices.
Owner:TESLA INC

Customer identification system and method using shared trunk group

Systems and methods are provided to provision a customer-specific identifier in cloud-based communications systems so that when a communication arrives at the network services provider, it is identified as being associated with the customer, even when the customer information would otherwise not be available. In examples, when a customer orders communication services from the network services provider (or associates the communication services with a third-party Internet telephony service), the network services provider provides the customer a unique identifier that is provisioned into that customer's instance of the third-party Internet telephony service. When the customer makes a call using the third-party Internet telephony service, the identifier is inserted into the communication (e.g., in a SIP header). The identifier is extracted when the communication is received at the network services provider and used to identify the customer so that appropriate services, service levels, etc. can be applied to the call.
Owner:CENTURYLINK INTELLECTUAL PROPERTY LLC

Satellite bandwidth allocation system and related methods

A system and method for efficiently distributing available bandwidth of a satellite beam among network service providers (NSPs) and virtual network operators (VNOs) associated with the NSPs. The method involves defining bandwidth allocations for each NSP and VNO, receiving demands, dividing the available bandwidth among NSPs and sub-dividing it among VNOs based on respective demands, Minimum Information Rates (MIN), Committed Information Rates (CIR), and Maximum Information Rates (MAX). The method supports multiple traffic priorities, prevents bandwidth starvation, and rebalances bandwidth allocation using a throttle factor during heavy traffic. By sorting demands in ascending order and smoothing beam utilization, the method ensures fairness and efficiency in satellite beam usage.
Owner:HUGHES NETWORK SYST

A knowledge graph-based web content security processing method

The application discloses a kind of knowledge graph-based webpage content security processing method, it is related to webpage content security technical field, the method includes the following specific steps: data acquisition: from network service provider, enterprise or organization internal network and website server collect the internet content data related to webpage of text, image and video form, the present application realizes the comprehensive monitoring and analysis to webpage content security by constructing knowledge graph-based webpage content security processing system, by using the inference ability of knowledge graph, including representation learning, correlation analysis, event traceability, behavior prediction etc., potential security threats, abnormal patterns or associated relationships in webpage content can be deeply mined, not only improve the accuracy of security threat identification, but also provide intuitive, easy-to-understand visual interface for security personnel, so that they can quickly respond and take appropriate security measures.
Owner:CHINA DATACOM CORP LTD

System and apparatus for intelligent outage management and connectivity

Aspects of the subject disclosure may include, for example, a method that includes creating an outage plan to manage provision of network services for devices at a premises, and implementing the outage plan responsive to occurrence of an outage in the network services; if a residential gateway (RG) and a smartphone are available, network connectivity can be facilitated for at least a portion of the devices using the RG and the smartphone as a mobile hotspot; if a smartphone is not available, network connectivity can be facilitated using the RG and another device as a mobile hotspot, where the other device is provided by a provider of the network services; if an RG for the premises is not available, network connectivity can be facilitated by transferring an authentication token to a predetermined device to serve as a backup gateway for the premises. Other embodiments are disclosed.
Owner:AT&T INTELLECTUAL PROPERTY I L P

Systems and methods for transparent service response analysis

Systems and methods for transparent service response analysis is provided. A system may obtain a network data packet from a network service provider. The system may determine the network data packet includes a response code indicating a status of the request. The system may extract the response code from the network data packet. The system may modify an IP header of the network data packet based on the response code. The system may encapsulate the network data packet based on the response code. The system may send the network data packet with the modified IP header. The system may send the encapsulated network data packet.
Owner:NETSCOUT SYSTEMS INC

IPv6 (Internet Protocol Version 6) network dynamic access control method and device for preventing identity counterfeiting

The invention discloses an IPv6 (Internet Protocol Version 6) network dynamic access control method and device for preventing identity counterfeiting. The method comprises the following steps of: deploying a DNS (Domain Name Server) analyzer in an authorized area of a network service provider for processing a DNS query request, and comprising the following steps of: 11) analyzing a source IP (Internet Protocol) address C-IP and a target domain name T of a client C from the DNS query request, and acquiring an IPv6 (Internet Protocol Version 6) prefix P; 12) acquiring a current timestamp S; 13) calculating a dynamic interface identifier by using the key K; 14) taking the IPv6 prefix P and the generated complete dynamic address as an AAAA record and returning the AAAA record to the client C; a service access gateway is deployed at a network service front end of a service provider and is used for receiving flow and executing verification, and the method comprises the following steps of: receiving a data packet from a client C, extracting an interface identifier in a destination address, performing hash verification according to a timestamp S ', C-IP and T pairs, and determining that the data packet is legal if the verification is successful. According to the invention, identity counterfeiting can be effectively prevented.
Owner:INSTITUTE OF INFORMATION ENGINEERING CHINESE ACADEMY OF SCIENCES

Systems and methods for providing dynamic guaranteed bandwidth connection over multiple domains

Systems and methods for guaranteeing end-to-end QoS for wireless connections over a cable network are disclosed. Provisioning of on-demand guaranteed bandwidth connection over a cable network uses mechanisms from DOCSIS domain and Wi-Fi domain. A multi-domain orchestrator is implemented to control both domains. A bandwidth request is received from a client device connecting to a network service provider access point. The bandwidth request is updated for both domains with results of speed test of the wireless link if the speed test results are lower than the bandwidth request. The orchestrator and client device negotiate the bandwidth request using a three-way handshake over PacketCable Multimedia (PCMM) protocol. If the available bandwidth on either the DOCSIS or wireless link is less than the bandwidth request, the orchestrator generates a new bandwidth offer. If the client device accepts the offer, the orchestrator configures the DOCSIS and wireless links using their respective domain protocols to provision the connection with guaranteed end-to-end bandwidth.
Owner:ADEIA GUIDES INC

Network service access control method and system

PCT designated stageWO2026108327A1Securing communicationEngineeringNetwork service
The present application discloses a network service access control method and system. The method is applied to a network service provider; a secondary server, a target server, and a firewall are deployed on the network service provider; and a target service runs on the target server. The method comprises: the secondary server receives a request of a user, wherein the request is adapted to a predetermined packet format of the secondary server, the content comprises combined information and a check code, and the combined information comprises an access identifier and a firewall setting command; the secondary server searches for an associated target server on the basis of the access identifier, and forwards the combined information and the check code to the target server; the target server verifies the combined information and the check code; and if the verification is successful, on the basis of the setting command, the target server notifies the firewall to adjust firewall settings regarding access of the user to the target service.
Owner:CHINA TELECOM ARTIFICIAL INTELLIGENCE TECHNOLOGY (BEIJING) CO LTD

Prefix allocation management for network routers

Systems and methods are provided for management of prefix allocation for a user network through distribution of prefixes to one or more virtual interfaces (VIFs) used to support communication of data between the user network and the network service provider. Management resource(s), which may be implemented by components of a network provider or routing resource(s), may be configured to receive the specified intended allocation of prefixes and verify that the intended allocation of prefixes meets at least one operational criterion based on utilization tracking data for prefix availability with respect to the user network. After verification, routing resources may advertise prefixes to a network service provider in accordance with the specified intended allocation of prefixes. The management resources may also update the utilization tracking data in the first data store to reflect allocation of the prefixes.
Owner:AMAZON TECH INC

Data transmission path determination method and device, equipment, storage medium and product

The embodiment of the invention provides a data transmission path determination method and device, equipment, a storage medium and a product. The method comprises the following steps: a detection server can receive a packaging message sent by a first internal router and obtain an interface identifier of a target transmission interface from the packaging message; the detection server sends the target public network address and the interface identifier of the target transmission interface to the management equipment; and the management equipment determines a target network service provider according to the interface identifier of the target transmission interface and the interface identifier mapping information, and determines a data transmission path from the test equipment to the target data center according to the target network service provider and the target public network address. Through adoption of the embodiment of the invention, the data transmission path between the specified public network address and the data center can be determined in a targeted manner, the transmission path determination efficiency is effectively improved, the processing cost is reduced, flow scheduling can be realized according to the data transmission path, and the use experience is improved.
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

Wireless communication system and method for highperformance multi-operator sharing of wireless backhaul mesh network

A wireless communication system includes a plurality of master Wireless Access Point (WAP) devices, where each master WAP device is associated with an isolated network slice of one of a plurality of different network service providers. A plurality of hybrid analog-digital repeater devices are interconnected in a mesh topology via point-to-point wireless backhaul links in the wireless backhaul mesh network, where a first analog-digital repeater device receives first data stream in a first intermediate frequency from the first master WAP device and the second data stream in a second intermediate frequency from the second master WAP device. The first analog-digital repeater device then relays the first data stream and the second data stream over the plurality of hybrid analog-digital repeater devices via the point-to-point wireless backhaul links to reach to one or more service WAP devices that serves a plurality of UEs over WLAN signals.
Owner:PELTBEAM INC

Devices, methods, apparatuses, and computer-readable media for autonomous network

Disclosed are devices, methods, apparatuses, and computer-readable media for autonomous networks. An example apparatus for an autonomous network service provider may include at least one processor and at least one memory. The at least one memory may store instructions that, when executed by the at least one processor, may cause the apparatus at least to: receive a first request for a first application; retrieve by metadata retrieval function, first metadata for the first application; and retrieve by module retrieval function, one or more first modules of input, one or more first modules of function and at least one first module of task according to the retrieved first metadata.
Owner:NOKIA SOLUTIONS & NETWORKS OY

A process method of a user privacy preserving continuous authentication protocol

This invention discloses a continuous authentication protocol for maintaining user privacy. The protocol process includes four stages: system initialization, credential registration, legitimacy check, and consistency check. First, the system generates public parameters, and the credential issuer generates a public-private key pair and an update key. The user and the credential issuer generate credentials using blind signatures. Then, the user generates and submits a randomized credential to the network service provider (ISP). The ISP verifies the legitimacy of the user's credential based on the credential issuer's public key and its specific service access conditions. Finally, during continuous authentication, consistency proof generation and verification enable the ISP to perform identity consistency checks based on user autonomy. This invention places greater emphasis on protecting user data privacy at the ISP's location.
Owner:SOUTHEAST UNIV

System and method for facilitating alternative branding in financial systems

Embodiments of a system and method enable secure connectivity between the computer systems of a financial institution and software for Brand On Banking. Embodiments of the system include an Identity Platform, Know Your Customer (KYC) processes including ID card verification, face verification, document verification such as utility bills as proof of address, and biometric verification, and bank servicing features such as checking, savings, debit, payments, loans, and bill-pay. The secure connectivity is established in various embodiments through private or public Application Programming Interfaces (APIs) over a network service provider, thus eliminating third-party risk for the financial institution. Additionally, the system allows for displaying alternate brands and identifying customers associated with a specific product brand other than the financial institution. The mobile interface is user-friendly and consolidates all financial accounts in one location, reducing customer friction.
Owner:SHIFTCENTS INC

Encrypted traffic confusion framework and method based on multi-factor traffic characteristics

The invention discloses an encrypted communication confusion framework and method based on multi-factor traffic characteristics, and the method comprises the steps: firstly, capturing and analyzing the TLS handshake traffic of a target client, precisely extracting the JA3 fingerprint characteristics of the TLS handshake traffic, and then generating a Client Hello message with the same JA3 fingerprint through a TLS customization library of the client, thereby achieving the precise camouflage of the fingerprint of an application layer of the client. Secondly, a parallel handshake proxy method is adopted, the handshake process of the proxy and the client and the handshake process of the proxy and the back-end server are processed in parallel, and the handshake time feature is compressed to 1-RTT; and finally, in order to match server-side features of mainstream content distribution network service providers, a user-defined multi-level TLS certificate chain is constructed, so that a confusion effect is achieved on traffic size features. According to the method, the disguising technology of three dimensions of the client fingerprint, the connection time sequence and the server certificate size is combined, the concealment of the encrypted traffic in a network monitoring environment can be effectively improved, and the practical value is relatively high.
Owner:SOUTHEAST UNIV

Prevention of brute force attacks on voicemail accounts

A voicemail server device receives a voice call from an originating device attempting to access a voicemail account associated with a subscriber of a network service provider. Accessing the voicemail account can require providing by the originating device a personal identification number (PIN) predefined for the voicemail account. The voicemail server device can determine whether the originating device is associated with the subscriber. Responsive to determining that the originating device is not associated with the subscriber, the voicemail server device can activate an attempt limit for the voicemail account. The attempt limit can correspond to a predefined number of failed attempts to access the voicemail account by providing an incorrect PIN. The voicemail server device can receive attempts to access the voicemail account by incorrect PINs. Responsive to determining that a number of the attempts has reached the attempt limit, the voicemail server device can redefine the PIN.
Owner:T MOBILE US INC

Configuring network services to support applications

Embodiments of systems and methods for configuring a network service to support an application may include launching an application that communicates with a network element to perform an application operation; sending a service request to a uniform resource locator (URL) associated with a data processing service that supports the application operation in response to launching the application, the service request configured to cause activation of the data processing service; and performing the application operation using a communication received from the network element and supported by the data processing service. In some embodiments, the service request may be automatically sent to the URL associated with the data processing service in response to launching the application. Activation of the data processing service may occur at the UE, in the communication network, or both. The application may be a portal application. The network element may include a network service provider.
Owner:QUALCOMM INC

Satellite Bandwidth Allocation System and Related Methods

A system and method for efficiently distributing available bandwidth of a satellite beam among network service providers (NSPs) and virtual network operators (VNOs) associated with the NSPs. The method involves defining bandwidth allocations for each NSP and VNO, receiving demands, dividing the available bandwidth among NSPs and sub-dividing it among VNOs based on respective demands, Minimum Information Rates (MIN), Committed Information Rates (CIR), and Maximum Information Rates (MAX). The method supports multiple traffic priorities, prevents bandwidth starvation, and rebalances bandwidth allocation using a throttle factor during heavy traffic. By sorting demands in ascending order and smoothing beam utilization, the method ensures fairness and efficiency in satellite beam usage.
Owner:HUGHES NETWORK SYST

Aviation internet traffic and bandwidth prediction method and system based on deep learning

The invention discloses an aviation Internet traffic and bandwidth prediction method and system based on deep learning, and belongs to the technical field of aviation, and the method comprises the steps: obtaining multi-dimensional flight information, a historical network opening IP number sequence, and a historical traffic and bandwidth sequence; the input information is processed through a progressive dual-stage aviation internet flow and bandwidth time sequence prediction model, and flow and bandwidth data of future time nodes are obtained through prediction; the progressive dual-stage aviation internet traffic and bandwidth time sequence prediction model comprises a first-stage network opening IP number prediction model and a second-stage traffic and bandwidth prediction model. According to the method, the flow and the bandwidth of future time nodes can be predicted in the flight process, so that a basis is provided for airlines and aviation network service providers to perform more reasonable planning and network resource allocation, network congestion or resource idleness is avoided, and the aviation internet service quality and the overall network operation efficiency are improved.
Owner:AIRLAND INTERNET TECH CO LTD

Data transmission method, system and electronic device

The application provides a data transmission method, system and electronic equipment, and relates to the technical field of network transmission. The data transmission method of a network service provider comprises the following steps: determining the service quality level of target data from a sending end; determining a target routing path matching the service quality level from a plurality of to-be-selected routing paths with different service qualities; wherein the to-be-selected routing paths comprise routers of a plurality of regional networks; and transmitting the target data to a receiving end by using the target routing path. According to the technical scheme of the application, hierarchical scheduling can be performed on a backbone network according to the service quality level of transmission data (such as a message or other IP data packets), so that the backbone network has the capability of supporting QoS according to the type of transmission data.
Owner:ALIBABA (CHINA) CO LTD

Architecture and method for aggregating and interacting with multiple third-party applications

Systems, apparatuses, and methods are described for generating tokens for user devices to request content items from one or more content delivery networks via networks provided by a network service provider. The tokens may be generated based on rules provided by the network service provider and may indicate whether the content delivery networks have permission to send targeted content items to the user device. Tokens provided to a user device may prevent repeated delivery of the same content item to the user device.
Owner:COMCAST CABLE COMM LLC