Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

64 results about "Tunneling protocol" patented technology

In computer networks, a tunneling protocol is a communications protocol that allows for the movement of data from one network to another. It involves allowing private network communications to be sent across a public network (such as the Internet) through a process called encapsulation.

Extended Reality Media Management

PendingUS20260122700A1Connection managementGeneral Packet Radio ServiceTunneling protocol
A first base station (BS) sends a first parameter indicating that the first BS configures protocol data unit (PDU) set importance (PSI) based discarding, for a PDU session, of a wireless device, terminated at the first BS. The first BS determines that resources of the first BS are congested, for the PDU session, and sends a general packet radio service tunneling protocol (GTP) message comprising a second parameter indicating activation of PSI based discarding for the PDU session.
Owner:OFINNO LLC

Cross-Domain Communication Method and Communication Device

PendingUS20260006432A1Connection managementBroadcast service distributionGeneral Packet Radio ServiceSession management
In a communication method, a first session management function (SMF) determines, based on a group identifier of a group to which a target user equipment belongs, a first user plane function (UPF) connected to a first user equipment, where the first user equipment is an access point user equipment in the group; the first SMF sends an Internet Protocol (IP) address of the target user equipment and / or the group identifier to the first UPF; and the first UPF establishes a General Packet Radio Service (GPRS) Tunneling Protocol User Plane (GTP-U) tunnel between the first UPF and the second UPF, and stores a correspondence between the IP address and the GTP-U tunnel to implement packet forwarding.
Owner:HUAWEI TECH CO LTD

Distributed traffic steering and enforcement for security solutions

In some embodiments, a system, process, and / or computer program product includes encapsulating an original traffic header for a monitored flow from / to an entity in a virtualized environment; rerouting the flow from the entity in the virtualized environment to a security platform of a security service, wherein the security platform includes a virtualized firewall; performing security analysis at the security platform using the original traffic header; and rerouting the flow back to the entity in the virtualized environment for routing to an original destination based on the original traffic header, wherein the flow is rerouted over a network tunneling protocol to the security platform of the security service to isolate and protect workloads, application stacks, and / or services, and wherein an enforcement point is remote from a decision point using distributed traffic steering and enforcement via a distributed set of virtualized firewalls provided by the security service to facilitate application level segmentation.
Owner:PALO ALTO NETWORKS INC

Apparatus and method for radio access network node optimisation in a wireless communication system

PendingUS20250184796A1TransmissionWireless communicationGeneral Packet Radio ServiceAccess network
The disclosure relates to a fifth generation (5G) or sixth generation (6G) communication system for supporting a higher data transmission rate. A method and a system for radio access network (RAN) node optimization in a wireless network are provided. The method includes receiving, by a producer device, a create managed object instance (MOI) request for collecting performance metrics, from a consumer device, wherein the create MOI request comprises a plurality of attributes for collecting the performance metrics, wherein the performance metrics include at least one of measurements and key performance indicators (KPIs) collected at at least one of a gNodeB (gNB) and a central unit user plane (CU-UP) end of a next generation user plane (N3 / NgU) interface of the producer device, performing, by the producer device, collection of the performance metrics at the at least one of the gNB and the CU-UP end of the N3 / NgU interface of the producer device based on plurality of attributes received in the create MOI request, wherein the measurements include at least one of a measurement of number of octets of incoming general packet radio service (GPRS) tunneling protocol (GTP) data packets on the N3 / NgU interface from a user plane Function (UPF) to the RAN, and a measurement of number of octets of outgoing GTP data packets on the N3 / NgU interface from the RAN to the UPF, wherein the KPIs collected include at least one of a downstream throughput for a network slice, and an upstream throughput for a network slice at the at least one of the gNB and the CU-UP end of the N3 / NgU interface, and sending, by the producer device, the collected performance metrics to the consumer device to optimize at least one of gNB configurations and CU-UP configurations at the producer device based on the performance metrics received from the producer device.
Owner:SAMSUNG ELECTRONICS CO LTD

Communication device and two-phase packet parser enhancement method with loopback unit

A communication device includes a first parser circuit, a second parser circuit, and a forwarding circuit. The first parser circuit is configured to parse first data in a packet based on a tunneling protocol to obtain first parsing information and an offset value. The second parser circuit is configured to parse second data in the packet according to the offset value to obtain second parsing information, in which the offset value is utilized to indicate a starting position of the second data in the packet. The forwarding circuit is configured to forward the packet according to the first parsing information and the second parsing information.
Owner:REALTEK SEMICON CORP

RTMP one-way proxy method, system and device based on one-way import device and medium

The invention discloses an RTMP one-way proxy method, system and device based on one-way import equipment and a medium, mainly relates to the technical field of one-way proxy, and is used for solving the problems that in the existing scheme, the one-way flow of data is strictly limited, but a VPN (Virtual Private Network) needs to establish a tunnel through two-way communication, and the handshake process of an RTMP also depends on two-way transmission, so that the efficiency is high. The defect cannot be avoided in the prior art. Comprising a streaming media service relay module connected with RTMP stream pushing end equipment A, a one-way sending program connected with the streaming media service relay module, a one-way receiving program connected with the one-way sending program, and an analog terminal publishing module connected with the one-way receiving program. The system comprises a subscribed external network RTMP streaming media server, an analog terminal subscription module connected with the subscribed external network RTMP streaming media server, a one-way sending program connected with the analog terminal subscription module, a one-way receiving program connected with the one-way sending program, and an analog terminal publishing module connected with the one-way receiving program.
Owner:中孚安全技术有限公司

Network connection unmanned aerial vehicle identification method

The invention discloses a network connection unmanned aerial vehicle identification method, and relates to the technical field of unmanned aerial vehicle prevention and control. The method comprises the following steps: acquiring a user plane data stream at a base station side in a cellular communication network; performing protocol analysis on the user plane data stream, and extracting inner-layer communication feature information packaged in a tunnel protocol; based on the inner-layer communication feature information, judging whether the user plane data flow is matched with a preset unmanned aerial vehicle service identifier feature or not; if yes, performing secondary verification by combining the flow behavior characteristics of the user plane data flow with a preset unmanned aerial vehicle communication behavior model; and when the flow behavior characteristics meet the unmanned aerial vehicle communication behavior model, determining that the user plane data flow corresponds to the network connection unmanned aerial vehicle. Through a dual verification mechanism of high-level service feature matching and bottom-level flow behavior secondary verification, accurate and real-time identification of the networked unmanned aerial vehicle is realized, an identification blind area of a traditional physical detection means in a cellular network environment is effectively made up, and the method can be widely applied to scenes of low-altitude security and protection, key infrastructure protection and the like.
Owner:CHONGQING KONGJIE TECHNOLOGY CO LTD

Supporting user equipment attachment to a mobile virtual network operator packet gateway via a sponsor mobile wireless network operator routing agent

A method, carried out by a mobile network operator (MNO) core component, is described for supporting connection signaling between a user equipment and core network components of a mobile virtual network operator (MVNO). The method includes receiving an update location answer (ULA) message that specifies a leased IMSI value of the user equipment. The MNO core component determines that the leased IMSI value of the user equipment falls within a range of the IMSI block allocated to the MVNO. The MNO core component generates a modified ULA including a changed access point name (APN). The modified ULA is forwarded to a mobility management entity (MME) component that uses the modified ULA to generate a create session request (CSR) message, and the changed APN of the modified ULA causes the MME component to send the CSR message to a GPRS tunneling protocol (GTP) proxy of the primary MNO.
Owner:T MOBILE INNOVATIONS LLC

Communication method and communication system

The invention discloses a communication method and a communication system. The method comprises the steps that a plurality of virtual private network (VPN) encryption certificates are acquired from a public network, and the number of the VPN encryption certificates is the same as the number of base station modules contained in the wireless backhaul base station; a plurality of VPN encryption certificates are adopted to establish a plurality of private network tunnels, network elements of both communication parties supported by each private network tunnel are different, and the network elements of both communication parties supported by the private network tunnels comprise: a network server supporting a tunnel protocol; and establishing communication between the terminal and the core network through the plurality of private network tunnels. According to the method and the device, the technical problem that the data security is low when a single VPN channel is adopted for wireless backhaul is solved.
Owner:CHINA TELECOM CORP LTD

Mechanism For Achieving Ultra-Low Latency Packet Processing At CU-UP

PendingUS20260143404A1Wireless network protocolsGeneral Packet Radio ServicePDCP
In one embodiment, a method is disclosed, comprising: receiving a packet; processing the packet in a Control Unit–User Plane (CU-UP) as a user-space application with kernel-bypass networking; performing packet Input / Output (I / O) by the CU-UP user-space application, wherein the CU-UP performs Internet Protocol (IP) validation on received user-plane packets before processing Packet Data Convergence Protocol (PDCP), Service Data Adaptation Protocol (SDAP) and General Packet Radio Service Tunnelling Protocol (GTPU) protocol stack and performing direct I / O to a Network Interface Controller (NIC) for sending the packet over a network to a Distributed Unit (DU). The method may further comprise using a containerized CU-UP. The method may further comprise using a plurality of worker threads. The method may further comprise using a polling user space networking accelerator framework.
Owner:PARALLEL WIRELESS INC

Packet routing based on forwarding rules in a network visibility system

ActiveUS12363034B2Securing communicationGeneral Packet Radio ServiceEngineering
Disclosed herein are a system, method and / or computer readable storage embodiments for processing packets based on forwarding rules in a packet router of a network visibility system. In an embodiment, the packet router contains components for processing sets of packets via tags based on whitelist and forwarding rules in the packet router. The packet router may also distinguish between a general packet radio service (GPRS) tunneling protocol (GTP) packet and a non-GTP packet and may process GTP and non-GTP packets based on the whitelist and forwarding rules.
Owner:EXTREME NETWORKS INC

Penetration testing of cellular network environments

ActiveUS12581308B1Security arrangementGeneral Packet Radio ServiceIp address
Penetration testing is performed on a cellular network environment. An attacker system sends a request packet to a target user equipment that is connected to a base station of a cellular network. A source Internet Protocol (IP) address of the request packet is changed to an IP address that allows a response packet from the target user equipment to be received at a relay system. The request packet is encapsulated in a General Packet Radio Services Tunneling Protocol User (GTP-U) tunnel packet that is sent to a UPF of the cellular network. The response packet, which is responsive to the request packet, is received at the relay system by way of the UPF. A destination IP address of the response packet is changed to an IP address of the attacker system before forwarding the response packet to the attacker system.
Owner:TREND MICRO INC

Network policy automatic generation and verification method, system, product and medium

The invention discloses a network policy automatic generation and verification method and system, a product and a medium, and relates to the field of computer network communication. The method comprises the following steps: controlling an edge node to send a standard size reference detection stream without a label and a full size feature detection stream carrying a label to a terminal plug-in, if only the reference stream is connected, marking a link as a blocking type limitation, and if both the reference stream and the full size feature detection stream are connected but the feature stream label is missing, marking as a stripping type limitation; packaging according with a size threshold value is adopted for the blocking type link, and tunnel protocol hidden label packaging is adopted for the stripping type link; and sending the packaged data packet to the terminal plug-in to remove the outer layer protocol and restore the original service data packet, verifying the head integrity, and if the priority mark is abnormal, triggering an alarm and switching the protocol type. By implementing the technical scheme provided by the invention, the consistency of the network policy execution effect and the monitoring state is improved.
Owner:LINGBO TECH (BEIJING) CO LTD

Control device, network and transmission of data from a control device into a network

The invention relates to a control device (1), to a network having a plurality of such control devices (1), and to a method for transmitting data from a control device (1) into a network (33). The control device (1) comprises: a network interface (13) which is designed to carry out network communication between the control device (1) and a network (33); a monitoring unit (15) which is designed to monitor the integrity of the control device (1); and a resilience unit (17) which is designed, if a violation of the integrity of the control device (1) is identified by the monitoring unit (15), to encapsulate at least part of the data to be sent from the control device (1) into the network (33) via the network interface (13) for transmission via a resilience tunnel (43) in accordance with a tunnel protocol, before the encapsulated data are sent into the network (33) via the resilience tunnel (43).
Owner:SIEMENS AG

Communication method, device and system for task session

The invention provides a communication method, device and system for a task session. The method comprises: receiving a packet; the present invention relates to a method and a device for transmitting a general packet radio service (GPRS) packet generated on the basis of a packet and a general packet radio service (GPRS) user plane tunneling protocol (GTP) protocol, in which the GTP-U packet includes information on a task session for providing a task service to a task customer, the task service being a service for both packet data unit (PDU) connection and data processing, and a method for transmitting a GTP-U packet generated on the basis of the packet and the GTP-U protocol, in which the GTP-U packet includes information on a task session for providing a task service to the task customer.
Owner:HUAWEI TECH CO LTD

Method and apparatus for processing GPRS tunneling protocol GTP packets

This application provides a method and apparatus for processing GPRS Tunneling Protocol (GTP) packets. The method includes: determining n first GTP packets to be sent, wherein the n first GTP packets have the same destination network protocol IP address, and n is a positive integer; merging the GTP packet headers and contents of the n first GTP packets to obtain a second GTP packet; using the destination IP address as the destination IP address of the second GTP packet, and sending the second GTP packet to a second device. The GPRS Tunneling Protocol (GTP) packet processing method and apparatus provided in this application can reduce the amount of data transmitted, thereby greatly improving the network bandwidth utilization.
Owner:HUAWEI TECH CO LTD

Cross-RAT seamless switching method and system of intelligent agent with body

The invention discloses a cross-RAT seamless switching method and a cross-RAT seamless switching system for an agent with a body, relates to the technical field of cross-RAT switching, and aims to solve the problem of wireless access mode switching when the agent with the body moves indoors and outdoors. Therefore, the dependence on a static configuration start-stop mode is eliminated; the method specifically comprises the following steps: subscribing position data, map data and motion trend data of a tool body agent, and periodically acquiring network quality information of a WLAN and a cellular network interface at the same time; based on subscription data and network quality information, two contents are dynamically controlled: one is to control opening and closing of a double-transmitting selective receiving function in a direction corresponding to an agent with a body and a communication opposite end on a WLAN and cellular network interface; and 2, when the double-transmitting selective-receiving function is closed, determining an optimal main transmission link in the WLAN and the cellular network interface. According to the invention, resource waste can be reduced while cross-RAT seamless switching is carried out.
Owner:INSPUR COMM TECH CO LTD

An information processing method, session management function network element and user plane function network element

An embodiment of the present application discloses an information processing method, a session management function network element and a user plane function network element, wherein the information processing method includes: the session management function network element SMF extends the message forwarding control protocol PFCP message to be sent, and sends the extended PFCP message to all user plane function network elements UPF that have established a PFCP session association with the SMF, wherein the extended PFCP message carries at least: a first identifier for indicating whether the tunnel protocol GTPU remote address exists, and a second identifier for indicating the reference count of the GTPU remote address; the SMF receives the user plane path status reported by the first UPF, wherein the user plane path status is obtained by the first UPF based on the first identifier and the second identifier, wherein all UPFs include the first UPF.
Owner:LENOVO (BEIJING) LTD

Fine-grained identification method, device and equipment for satellite network traffic data

ActiveCN120750828ARadio transmissionGeneral Packet Radio ServiceTelecommunications
The embodiment of the invention relates to the technical field of satellite communication, and provides a fine-grained identification method, device and equipment for satellite network flow data, the method is applied to a satellite-borne router, and the method comprises the following steps: receiving a first to-be-identified flow parameter issued by a bearer network controller; generating a first data identifier according to the first to-be-identified flow parameter, and sending the first data identifier as a first IPv6 segment routing SRv6 instruction to the first device; receiving first general packet radio service tunneling protocol GTP message data fed back by the first device according to the first SRv6 instruction; packaging the first GTP message data to obtain first bearing data containing the first SRv6 instruction; and forwarding the first bearer data to a router node of a corresponding bearer tunnel, so that the router node performs corresponding operation according to the first SRv6 instruction. According to the embodiment of the invention, unique fine-grained identification can be carried out on the GTP tunnel flow data.
Owner:CHINA SATELLITE NETWORK INNOVATION CO LTD

Satellite Communications Tunneling Protocol for a Space Mesh Network

A system can communicate, by a satellite, with a user equipment according to a defined wireless communication protocol, and receive a radio-frequency communication from the user equipment via a satellite service link. The system can perform a programmable band-pass filter on the radio-frequency communication to produce a filtered communication. The system can perform an analog-to-digital conversion on the filtered communication to produce a digital communication. The system can create a packet header for the digital communication. The system can encapsulate the digital communication with the packet header to produce an encapsulated digital communication. The system can transmit the encapsulated digital communication to a first next-hop satellite via an inter-satellite link, wherein the inter-satellite link comprises a communication mode, and wherein the first next-hop satellite is configured to transmit the encapsulated digital communication to the terrestrial base station or to a second next-hop satellite.
Owner:DELL PROD LP

Post-routing networking method, device and equipment based on 5G VPDN

The present application relates to the field of communication technology, especially relates to a 5G VPDN-based post-routing networking method, device and equipment, which performs one-time authentication by receiving a networking session request initiated by a wireless networking device, completes necessary information configuration for networking, after one-time authentication passes, controls an authentication module to feed back tunnel protocol response information and downlink device routing information to a session management module, to synchronously implement establishment of a communication channel and post-routing of downlink devices of the wireless networking device, the session management module transmits the tunnel protocol response information and the downlink device routing information to a routing forwarding module, and establishes a communication tunnel between the routing forwarding module and a tunnel network module according to the tunnel protocol response information, so as to perform secondary authentication, to improve networking effect, after the secondary authentication passes, the routing forwarding module sends a networking session response to the wireless networking device, to complete establishment of the communication tunnel, and to simplify the establishment steps of a traditional communication tunnel.
Owner:E SURFING IOT CO LTD

Downstream destination selection for tunnel packets based on fixed header packet values

A destination computing device that is associated with a first network establishes a tunnel that utilizes a tunneling protocol with a source computing device that is associated with a second network. The destination computing device generates a value that the source computing device is to insert into a field of tunnel packets generated by the source computing device in accordance with the tunneling protocol, wherein the value is for use by a network device driver (NDD) associated with a network interface device (NID) of the first network in selecting a downstream destination for the tunnel packets. The destination computing device sends the value to the source computing device and stores the value in a data structure accessible to the NDD.
Owner:RED HAT INC

Mobile core cloud connection router

Respective implementations facilitating a mobile core connection router are provided. A method can include establishing, by a system comprising a processor, a connection to a virtualized core network instance, associated with a first computing device, via a mobility tunneling protocol; in response to the establishing of the connection, initializing, by the system, a virtualized router function based on a routing table; and routing, by the system and via the virtualized router function, data traffic between the virtualized core network instance and a second computing device, communicatively coupled to the system and distinct from the first computing device.
Owner:AT&T INTELLECTUAL PROPERTY I L P

Intelligent networking method and device and terminal equipment

The invention provides an intelligent networking method, an intelligent networking device and terminal equipment, which are suitable for the technical field of communication. Generating multiple pieces of initial networking information according to the main link network state monitoring information, the multiple pieces of standby link network state monitoring information, the multiple pieces of terminal networking demand information, the multiple pieces of tunnel protocol information and the multiple pieces of preset networking priority information; and based on a preset target networking model, according to the multiple pieces of standby link network state monitoring information and the multiple pieces of tunnel protocol information, performing optimization processing on the multiple pieces of initial networking information, and generating multiple pieces of target networking information. The method is used for quickly constructing remote networking in a scene without a public network IP, so as to meet the multi-scene requirements of remote management of industrial field equipment, remote maintenance of commercial buildings, remote office networking and mutual access and the like.
Owner:BEIJING YUNSOFT ONLINE COMM TECH CO LTD

A method, device and equipment for fine-grained identification of satellite network traffic data

ActiveCN120750828BRadio transmissionGeneral Packet Radio ServiceComputer network
The embodiment of the specification relates to the technical field of satellite communication, and provides a method, device and equipment for fine-grained identification of satellite network traffic data, the method is applied to an on-board router, and the method comprises the following steps: receiving first to-be-identified traffic parameters issued by a bearer network controller; generating a first data identifier according to the first to-be-identified traffic parameters, and sending the first data identifier as a first IPv6 segment routing SRv6 instruction to a first device; receiving first general packet radio service tunneling protocol GTP message data fed back by the first device according to the first SRv6 instruction; encapsulating the first GTP message data to obtain first bearer data containing the first SRv6 instruction; and forwarding the first bearer data to a router node of a corresponding bearer tunnel, so that the router node performs corresponding operations according to the first SRv6 instruction. Through the embodiment of the specification, the GTP tunnel traffic data can be uniquely and finely identified.
Owner:CHINA SATELLITE NETWORK INNOVATION CO LTD

Tunneled monitoring service and method

Some embodiments provide systems and methods to monitor network communications, comprising: a computing device comprising a control circuit and memory with instructions executed by the control circuit to implement: a tunneled monitoring service (TMS) operated local on the mobile computing device; and a tunnel protocol within the mobile computing device that is configured to establish a tunnel interface between software applications and the TMS, wherein the tunnel interface is configured, to collect output data transactions, communicated by the software applications, and direct the output data transactions to the TMS; wherein the TMS is configured to initiate a monitoring of each output data transaction relative to predefined criteria to identify relevant parameter information, obtained from one or more of the output data transactions, that have a predefined relationship with one or more of the criteria, and cause results of the monitoring relative to the criteria to be recorded.
Owner:COVENANT EYES INC

Data forwarding method, virtual private network server, client and electronic equipment

The invention provides a data forwarding method, a virtual private network server, a virtual private network client and electronic equipment, and relates to the technical field of communication, in particular to the technical fields of communication security, data security, virtual private networks and the like. The specific implementation scheme is as follows: receiving a tunnel protocol data packet sent by a virtual private network client through a pre-configured tunnel; the tunnel protocol data packet is generated by the virtual private network client according to access request data; the tunnel protocol data comprises a first internet protocol address; under the condition that a first domain name system stores a service party domain name corresponding to the first internet protocol address, obtaining the service party domain name according to the first internet protocol address; and at least matching the service party domain name with a preset security access strategy, and forwarding the tunnel protocol data packet to a service party server based on the service party domain name under the condition of successful matching.
Owner:BEIJING BAIDU NETCOM SCI & TECH CO LTD

Business processing method, device, electronic device and storage medium

This application discloses a service processing method, apparatus, electronic device, and storage medium. The method is applied to an intermediate user plane function (UPF) network element in a first network, the intermediate UPF network element being communicatively connected to a base station in a second network. The first network reuses the base station, and the first and second networks are different physical networks. The method comprises: receiving a service request forwarded by the base station, the service request being initiated by a user device; if the destination network address of the service request is determined to be a network address of the first core network, encapsulating the service request according to a specified tunneling protocol to obtain an encapsulated service request; sending the encapsulated service request to the first UPF network element, parsing the encapsulated service request by the first UPF network element to obtain a service request, and forwarding the service request to the first core network, which processes the service request. This solution can reduce the deployment cost of the first network and ensure data isolation between the first and second networks.
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

Method and apparatus for service processing

Embodiments of the present disclosure provide methods and apparatuses for service handling. A method performed by a first application function entity can include obtaining second protocol description information for transmission of packetized data traffic containing PDU set information using a tunneling protocol. The second protocol description information includes uplink protocol description information and / or downlink protocol description information. The method can include sending the second protocol description information to at least one of a third application function entity, a network exposure node, a policy control node, an access network protocol layer entity of a terminal device.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)