IP Library Granted Patent US 7,596,811
Granted Patent B2
US 7,596,811 · App. 11/223,236 · Granted Sep 29, 2009

Methods and systems for network traffic security

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,596,811
App. No.
11/223,236
Granted
Sep 29, 2009
Kind
B2
Abstract

The present invention is directed to methods of and systems for adaptive networking that monitors a network resource of a network. The method monitors an application performance. The method categorizes a first subset of traffic of the network. The categories for the first subset include trusted, known to be bad, and suspect. The method determines an action for a second subset of traffic based on the category for the first subset of traffic. Some embodiments provide a system for adaptive networking that includes a first device and traffic that has a first subset and a second subset. The system also includes a first resource and a second resource for the transmission of the traffic. The first device receives the traffic and categorizes the traffic into the first and second subsets. The first device assigns the first subset to the first resource. Some embodiments provide a network device that includes an input for receiving incoming traffic, an output for sending outgoing traffic, a categorization module that categorizes incoming traffic, and a resource assignment module that assigns the categorized traffic for a particular resource. A traffic category for the device includes suspect traffic.

Claims (74)

1. A method comprising:

monitoring on a host computer system at least one of a network resource for a network and a performance of an application in a network;

categorizing network traffic into at least good, bad and suspect categories of traffic based upon the monitoring; and

treating each of the good, bad and suspect categories of traffic different from others of the good, bad, and suspect categories of traffic, wherein good traffic and suspect traffic are forwarded toward a same destination using different resources.

2. The method of claim 1 , further comprising:

determining an action for a first subset of traffic; and

categorizing a second subset of traffic.

3. The method of claim 2 , wherein the first subset of traffic is categorized based on the step of monitoring the network resource.

4. The method of claim 2 , wherein the first subset of traffic is categorized based on the step of monitoring the performance of the application.

5. The method of claim 2 , further comprising the step of determining an action for the second subset of traffic based on the categorizing.

6. The method of claim 5 , wherein the action for the second subset of traffic is based on the step of monitoring the network resource.

7. The method of claim 5 , wherein the action for the second subset of traffic is based on the step of monitoring the application performance.

8. The method of claim 5 , wherein the first subset and the second subset of traffic do not overlap.

9. The method of claim 5 , wherein the first subset and the second subset of traffic overlap.

10. The method of claim 5 , wherein the first subset and the second subset of traffic are the same.

11. The method of claim 2 , further comprising:

tracking a history of users and traffic patterns; and

using the history in categorizing the first subset of traffic.

12. The method of claim 5 , further comprising:

tracking a history of users and traffic patterns; and

using the history in determining an action for the second subset of traffic.

13. The method of claim 2 , wherein the category for the first subset of traffic is based on a set of application management tools.

14. The method of claim 5 , wherein the action for the second subset of traffic is based on a set of application management tools.

15. The method of claim 1 , further comprising using a suite of protocols for the step of categorizing.

16. The method of claim 2 , wherein the category for the second subset of traffic is based on a suite of protocols.

17. The method of claim 5 , wherein the action for the second subset of traffic is based on a suite of protocols.

18. The method of claim 1 , further comprising providing an always on architecture, such that traffic is treated as suspect before the traffic is proved trusted.

19. The method of claim 18 , wherein providing the always on architecture comprises:

assigning at least two of the good, bad, and suspect categories of traffic to a first resource;

based on the categorizing, reassigning one category of the at least two of the good, bad, and suspect categories of traffic to a second resource.

20. The method of claim 19 , wherein the at least two of the good, bad, and suspect categories comprises good and suspect categories of traffic, wherein the second resource is allocated for good traffic.

21. The method of claim 18 , wherein providing the always on architecture comprises:

assigning at least two of the good, bad, and suspect categories of traffic to a first resource;

based on the monitoring, reassigning one category of the at least two of the good, bad, and suspect categories of traffic to a second resource.

22. The method of claim 21 , wherein the monitoring further comprises detecting an unusual network activity.

23. The method of claim 1 , further comprising determining that an endpoint is trusted, wherein an endpoint is a source or a destination in the network for a transaction.

24. The method of claim 1 , further comprising assigning an endpoint a frequent flyer status.

25. The method of claim 1 , further comprising providing an optimization selected from the set comprising outbound performance optimization, outbound application performance optimization, outbound load optimization, inbound performance optimization, inbound application performance optimization, and inbound load optimization.

26. The method of claim 1 , further comprising steering traffic away from an attack related performance problem.

27. The method of claim 26 , wherein the performance problem includes one of application performance degradation, a brownout, and a blackout.

28. The method of claim 1 , further comprising steering traffic away from an attack related load problem.

29. The method of claim 28 , wherein the load problem includes one of congestion, application performance degradation, a brownout, and a blackout.

30. A network device comprising:

an input for receiving incoming traffic;

an output for sending outgoing traffic; and

a hardware module comprising:

a categorization module that categorizes incoming traffic, wherein categories for the incoming traffic comprise trusted and suspect; and

a resource assignment module that assigns the categorized traffic for a particular resource, wherein the resource assignment module assigns the trusted traffic and the suspect traffic to different resources for forwarding to a same destination.

31. The network device of claim 30 , wherein the different resources comprise two or more resources selected from a set comprising a Type of Service tag, a multiprotocol label switch tag, and a physical path.

32. The network device of claim 30 , wherein the network device is a router.

33. A system for adaptive networking comprising:

traffic comprising a plurality of subsets, wherein a first subset includes suspect traffic;

a resource for the traffic, wherein the resource is allocated for suspect traffic, is separate from a resource allocated for trusted traffic, and is configured to forward the suspect traffic to a destination for the trusted traffic; and

a first device for receiving the traffic, wherein the first device is configured to categorize the received traffic into the first subset.

34. The system of claim 33 , wherein the first device is configured to assign the first subset to the resource.

35. The system of claim 33 , further comprising an Internet service provider, wherein the first device is configured to receive the traffic flowing to and from the Internet service provider.

36. The system of claim 33 , further comprising an enterprise network.

37. The system of claim 33 , wherein the first device is further configured to send and receive a notification message, wherein a notification message comprises network control data that is separate from the traffic.

38. The method of claim 1 , further comprising temporarily downgrading trusted traffic.

39. The method of claim 1 , wherein categorizing network traffic is based on characteristics and requirements of a user.

40. The method of claim 39 , further comprising determining the characteristics and requirements of the user using a directory or a call server.

41. A method comprising:

monitoring on a host computer system at least one of a network resource for a network and a performance of an application in a network;

categorizing network traffic into at least good, bad and suspect categories of traffic based upon the monitoring;

determining an action for a first subset of traffic;

categorizing a second subset of traffic;

tracking a history of users and traffic patterns;

using the history in categorizing the first subset of traffic; and

treating each of the good, bad and suspect categories of traffic different from others of the good, bad, and suspect categories of traffic, wherein good traffic and suspect traffic are forwarded toward a same destination or different destinations using different resources.

42. A method comprising:

monitoring on a host computer system at least one of a network resource for a network and a performance of an application in a network;

categorizing network traffic into at least good, bad and suspect categories of traffic based upon the monitoring;

treating each of the good, bad and suspect categories of traffic different from others of the good, bad, and suspect categories of traffic, wherein good traffic and suspect traffic are forwarded toward a same destination or different destinations using different resources; and

temporarily downgrading trusted traffic.

Assignments (24)
(SECURITY INTEREST) GRANTOR'S NAME CHANGE Recorded Sep 21, 2023
From: AVAYA INC.
To: AVAYA LLC
Reel/Frame 065019/0231 →
RELEASE OF SECURITY INTEREST IN PATENTS (REEL/FRAME 61087/0386) Recorded May 18, 2023
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: AVAYA MANAGEMENT L.P.; AVAYA INC.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
Reel/Frame 063690/0359 →
RELEASE OF SECURITY INTEREST IN PATENTS (REEL/FRAME 53955/0436) Recorded May 18, 2023
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: AVAYA MANAGEMENT L.P.; AVAYA INC.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
Reel/Frame 063705/0023 →
RELEASE OF SECURITY INTEREST IN PATENTS (REEL/FRAME 045034/0001) Recorded May 18, 2023
From: GOLDMAN SACHS BANK USA., AS COLLATERAL AGENT
To: ZANG, INC. (FORMER NAME OF AVAYA CLOUD INC.); AVAYA INC.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.; HYPERQUALITY, INC.; HYPERQUALITY II, LLC; CAAS TECHNOLOGIES, LLC; AVAYA MANAGEMENT L.P.
Reel/Frame 063779/0622 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded May 4, 2023
From: AVAYA INC.; AVAYA MANAGEMENT L.P.; INTELLISIST, INC.
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 063542/0662 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded May 3, 2023
From: AVAYA MANAGEMENT L.P.; AVAYA INC.; INTELLISIST, INC.; KNOAHSOFT INC.
To: WILMINGTON SAVINGS FUND SOCIETY, FSB [COLLATERAL AGENT]
Reel/Frame 063742/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS AT REEL 45124/FRAME 0026 Recorded Apr 26, 2023
From: CITIBANK, N.A., AS COLLATERAL AGENT
To: AVAYA HOLDINGS CORP.; AVAYA INC.; AVAYA MANAGEMENT L.P.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
Reel/Frame 063457/0001 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Aug 5, 2022
From: AVAYA INC.; INTELLISIST, INC.; AVAYA MANAGEMENT L.P.; AVAYA CABINET SOLUTIONS LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 061087/0386 →
BANKRUPTCY COURT ORDER RELEASING THE SECURITY INTEREST RECORDED AT REEL/FRAME 020156/0149 Recorded Jul 25, 2022
From: CITIBANK, N.A., AS ADMINISTRATIVE AGENT
To: AVAYA, INC.; AVAYA TECHNOLOGY LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES
Reel/Frame 060953/0412 →
SECURITY INTEREST Recorded Sep 25, 2020
From: AVAYA INC.; AVAYA MANAGEMENT L.P.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 053955/0436 →
SECURITY INTEREST Recorded Jan 23, 2018
From: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.; ZANG, INC.
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 045124/0026 →
SECURITY INTEREST Recorded Jan 10, 2018
From: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.; ZANG, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 045034/0001 →
RELEASE OF SECURITY INTEREST Recorded Jan 9, 2018
From: CITICORP USA, INC.
To: AVAYA, INC.; SIERRA HOLDINGS CORP.; AVAYA TECHNOLOGY, LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.
Reel/Frame 045032/0213 →
BANKRUPTCY COURT ORDER RELEASING ALL LIENS INCLUDING THE SECURITY INTEREST RECORDED AT REEL/FRAME 030083/0639 Recorded Dec 15, 2017
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
To: AVAYA INC.
Reel/Frame 045012/0666 →
BANKRUPTCY COURT ORDER RELEASING ALL LIENS INCLUDING THE SECURITY INTEREST RECORDED AT REEL/FRAME 025863/0535 Recorded Dec 15, 2017
From: THE BANK OF NEW YORK MELLON TRUST, NA
To: AVAYA INC.
Reel/Frame 044892/0001 →
BANKRUPTCY COURT ORDER RELEASING ALL LIENS INCLUDING THE SECURITY INTEREST RECORDED AT REEL/FRAME 041576/0001 Recorded Dec 15, 2017
From: CITIBANK, N.A.
To: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS INC.; OCTEL COMMUNICATIONS LLC (FORMERLY KNOWN AS OCTEL COMMUNICATIONS CORPORATION); VPNET TECHNOLOGIES, INC.
Reel/Frame 044893/0531 →
SECURITY INTEREST Recorded Jan 27, 2017
From: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS INC.; OCTEL COMMUNICATIONS CORPORATION; VPNET TECHNOLOGIES, INC.
To: CITIBANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 041576/0001 →
SECURITY AGREEMENT Recorded Mar 13, 2013
From: AVAYA, INC.
To: BANK OF NEW YORK MELLON TRUST COMPANY, N.A., THE
Reel/Frame 030083/0639 →
SECURITY AGREEMENT Recorded Feb 22, 2011
From: AVAYA INC., A DELAWARE CORPORATION
To: BANK OF NEW YORK MELLON TRUST, NA, AS NOTES COLLATERAL AGENT, THE
Reel/Frame 025863/0535 →
CONVERSION FROM CORP TO LLC Recorded May 12, 2009
From: AVAYA TECHNOLOGY CORP.
To: AVAYA TECHNOLOGY LLC
Reel/Frame 022677/0550 →
REASSIGNMENT Recorded Jun 26, 2008
From: AVAYA TECHNOLOGY LLC; AVAYA LICENSING LLC
To: AVAYA INC
Reel/Frame 021156/0287 →
SECURITY AGREEMENT Recorded Nov 28, 2007
From: AVAYA, INC.; AVAYA TECHNOLOGY LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.
To: CITICORP USA, INC., AS ADMINISTRATIVE AGENT
Reel/Frame 020166/0705 →
SECURITY AGREEMENT Recorded Nov 27, 2007
From: AVAYA, INC.; AVAYA TECHNOLOGY LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.
To: CITIBANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 020156/0149 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 22, 2005
From: LLOYD, MICHAEL A.; KARAM, MANSOUR J.; FRAVAL, PIERRE; FINN, SEAN P.; MCGUIRE, JAMES G.; BALDONADO, OMAR C.
To: AVAYA TECHNOLOGY CORP.
Reel/Frame 017354/0068 →