IP Library Granted Patent US 8,438,254
Granted Patent B2
US 8,438,254 · App. 11/927,321 · Granted May 7, 2013

Providing distributed cache services

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,438,254
App. No.
11/927,321
Granted
May 7, 2013
Kind
B2
Abstract

A network appliance is described that can provide a variety of software services, including both platform services, such as access method services, and a load balancing service. A network may include a network appliance that both provides one or more platform services and acts as a load balancer. When two or more such appliances are used together, they can replace a substantial portion of a conventional network. For example, when a network appliance receives a client communication, its load balancer service can determine whether one of its own platform services will process the communication or forward the communication to another network appliance for processing. Moreover, if the load balancing service of a network appliance fails, another network appliance can provide load balancing. Similarly, if another service of a network appliance fails, then the network appliance may continue to provide load balancing but forward communications requiring the failed service to another network appliance for processing.

Claims (33)

1. A network appliance for providing distributed cache services, the network appliance comprising:

at least one platform service stored in memory and executable by a processor to provide one or more services to a client computer;

a service monitoring process stored in memory and executable to monitor a status of the at least one platform service using interprocess communications; and

a distributed cache service executable to:

record information specific to an individual user employing the at least one platform service, the recorded information including authentication information specific to the user,

determine an amount and type of the recorded authentication information to forward to another executable platform service on another network appliance when the at least one platform service fails, as detected by execution of the service monitoring process, the another executable platform service corresponding to the at least one platform service, the determination based on the individual user, and

forward the determined amount and type of recorded authentication information to the another executable platform service, wherein the recorded authentication information is employed to provide the one or more services to the user without interruption.

2. The network appliance of claim 1 , wherein the at least one platform service is a virtual private network service, and wherein the recorded authentication information includes client authentication information for a session provided by the virtual private network service.

3. The network appliance of claim 2 , wherein the client authentication information further includes encryption information, and wherein the session provided by the virtual private network service is encrypted based on the encryption information.

4. The network appliance of claim 3 , wherein the forwarded information allows the another executable platform service to provide a virtual private network service and continue the encrypted session.

5. The network appliance of claim 3 , wherein the forwarded information allows the another executable platform service to provide a virtual private network service and begin a new encrypted session.

6. The network appliance of claim 1 , wherein the another executable platform service is on another network appliance.

7. The network appliance of claim 1 , wherein the recorded information further includes state information concerning a user of a client computer.

8. A method for providing distributed cache services, the method comprising:

monitoring a status of at least one platform service using interprocess communications, the at least one platform service stored in a memory of a network appliance and executable by a processor of the network appliance to provide one or more services to a client computer;

recording information specific to an individual user employing the at least one platform service, the recorded information including authentication information specific to the user and stored in the memory;

determining an amount and type of the recorded authentication information to forward over a communication network to another platform service on another network appliance when the monitored status of the at least one platform service indicates failure, the another platform service corresponding to the at least one platform service, the determination based on the individual user; and

forwarding the determined amount and type of recorded authentication information to the another executable platform service, wherein the recorded authentication information is employed to provide the one or more services to the user without interruption.

9. The method of claim 8 , wherein the at least one platform service is a virtual private network service.

10. The method of claim 9 , wherein the recorded authentication information includes client authentication information for a session provided by the virtual private network service.

11. The method of claim 10 , wherein the client authentication information includes encryption information, and wherein the session provided by the virtual private network service is encrypted based on the encryption information.

12. The method of claim 11 , wherein forwarding the recorded information allows the another platform service to provide a virtual private network service and continue the encrypted session.

13. The method of claim 10 , wherein forwarding the recorded information allows the another platform service to provide a virtual private network service and begin a new encrypted session.

14. The method of claim 8 , wherein the recorded information further includes state information concerning a user of a client computer.

15. A non-transitory computer-readable storage medium having embodied thereon a program, the program being executable by a processor to perform a method for providing distributed cache services, the method comprising:

monitoring a status of at least one platform service using interprocess communications, the at least one platform service stored on a network appliance and executable to provide one or more services to a client computer;

recording information used by specific to an individual user employing the at least one platform service, the recorded information including authentication information specific to the user;

determining an amount and type of the recorded authentication information to forward to another platform service on another network appliance when the monitored status of the at least one platform service indicates failure, the another platform service corresponding to the at least one platform service, the determination based on the individual user; and

forwarding the determined amount and type of the recorded authentication information to the another executable platform service, wherein the recorded authentication information is employed to provide the one or more services to the user without interruption.

16. The non-transitory computer-readable storage medium of claim 15 , wherein the at least one platform service is a virtual private network service.

17. The non-transitory computer-readable storage medium of claim 16 , wherein the recorded authentication information includes client authentication information for a session provided by the virtual private network service.

18. The non-transitory computer-readable storage medium of claim 17 , wherein the client authentication information includes encryption information, and wherein the session provided by the virtual private network service is encrypted based on the encryption information.

19. The non-transitory computer-readable storage medium of claim 17 , wherein the program is further executable to receive a request for the recorded information from another platform service and to forward the requested information to the another platform service.

Assignments (19)
RELEASE OF SECOND LIEN SECURITY INTEREST IN PATENTS RECORDED AT RF 046321/0393 Recorded Jun 16, 2025
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: SONICWALL US HOLDINGS INC.
Reel/Frame 071625/0887 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jun 7, 2018
From: SONICWALL US HOLDINGS INC.
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 046321/0414 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jun 7, 2018
From: SONICWALL US HOLDINGS INC.
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 046321/0393 →
RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENTS RECORDED AT R/F 040581/0850 Recorded May 22, 2018
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
To: QUEST SOFTWARE INC. (F/K/A DELL SOFTWARE INC.); AVENTAIL LLC
Reel/Frame 046211/0735 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE PREVIOUSLY RECORDED AT REEL: 040587 FRAME: 0624. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Nov 28, 2017
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: QUEST SOFTWARE INC. (F/K/A DELL SOFTWARE INC.); AVENTAIL LLC
Reel/Frame 044811/0598 →
CORRECTIVE ASSIGNMENT TO CORRECT THE NATURE OF CONVEYANCE PREVIOUSLY RECORDED AT REEL: 041072 FRAME: 235. ASSIGNOR(S) HEREBY CONFIRMS THE INTELLECTUAL PROPERTY ASSIGNMENT AGREEMENT. Recorded Apr 5, 2017
From: AVENTAIL LLC
To: SONICWALL US HOLDINGS INC.
Reel/Frame 042245/0523 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Jan 23, 2017
From: AVENTAIL LLC
To: SONICWALL US HOLDINGS, INC.
Reel/Frame 041072/0235 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Nov 10, 2016
From: DELL SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040587/0624 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Nov 9, 2016
From: DELL SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040581/0850 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040039/0642) Recorded Oct 31, 2016
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
To: AVENTAIL LLC; DELL PRODUCTS L.P.; DELL SOFTWARE INC.
Reel/Frame 040521/0016 →
RELEASE OF SECURITY INTEREST Recorded Oct 31, 2016
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: AVENTAIL LLC; DELL PRODUCTS, L.P.; DELL SOFTWARE INC.
Reel/Frame 040521/0467 →
SECURITY AGREEMENT Recorded Sep 14, 2016
From: AVENTAIL LLC; DELL PRODUCTS L.P.; DELL SOFTWARE INC.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040039/0642 →
SECURITY AGREEMENT Recorded Sep 14, 2016
From: AVENTAIL LLC; DELL PRODUCTS, L.P.; DELL SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040030/0187 →
RELEASE OF SECURITY INTEREST IN PATENTS RECORDED ON REEL/FRAME 024776/0337 Recorded May 8, 2012
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: AVENTAIL LLC; SONICWALL, INC.
Reel/Frame 028177/0115 →
RELEASE OF SECURITY INTEREST IN PATENTS RECORDED ON REEL/FRAME 024823/0280 Recorded May 8, 2012
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: AVENTAIL LLC; SONICWALL, INC.
Reel/Frame 028177/0126 →
SECURITY AGREEMENT Recorded Aug 3, 2010
From: AVENTAIL LLC; SONICWALL, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 024776/0337 →
PATENT SECURITY AGREEMENT (SECOND LIEN) Recorded Aug 3, 2010
From: AVENTAIL LLC; SONICWALL, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 024823/0280 →
MERGER Recorded Feb 4, 2009
From: AVENTAIL CORPORATION
To: AVENTAIL LLC
Reel/Frame 022200/0475 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 24, 2009
From: HOPEN, CHRIS A.; TOMLINSON, GARY B.; BROOKE, JOHN; BROWN, DEREK W.; BURDGE, JONATHAN; ERICKSON, RODGER D.
To: AVENTAIL CORPORATION
Reel/Frame 022152/0201 →