IP Library Granted Patent US 9,231,889
Granted Patent B2
US 9,231,889 · App. 13/481,502 · Granted Jan 5, 2016

Packet switch and method of use

Inventors: Tom Gallatin (San Jose, CA); Denny K. Miu (San Francisco, CA); King L. Won (San Jose, CA); Patrick Pak Tak Leong (Palo Alto, CA); Ted Ho (San Jose, CA)
Assignee: Gigamon Inc.
H04L49/351H04L12/4645H04L41/046H04L43/028H04L43/0823H04L49/354H04L49/555H04L41/0213H04L41/0896H04L43/0882H04L43/12H04L43/16H04L43/18H04L49/201H04L63/0227H04L63/1408
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,231,889
App. No.
13/481,502
Granted
Jan 5, 2016
Kind
B2
Abstract

A packet switch device for providing visibility of traffic in a network includes a housing, a processing unit located in the housing, a first network port communicatively coupled to the processing unit, wherein the first network port is configured to communicate with the network, a second network port communicatively coupled to the processing unit, wherein the second network port is configured to communicate with the network, and at least one instrument port communicatively coupled to the processing unit, the at least one instrument port configured to communicate with a first network monitoring instrument, wherein the processing unit is configured to support a movement of packets from one or both of the first and second network ports to the at least one instrument port.

Claims (67)

1. A packet switch device for providing visibility of traffic in a network, comprising:

a housing;

a processing unit located in the housing;

a first network port communicatively coupled to the processing unit, wherein the first network port is configured to communicate with the network;

a second network port communicatively coupled to the processing unit, wherein the second network port is configured to communicate with the network;

at least one instrument port communicatively coupled to the processing unit, the at least one instrument port configured to communicate with a first network monitoring instrument;

wherein the processing unit is configured to support a predetermined movement of packets from one or both of the first and second network ports to the at least one instrument port; and

wherein the network is configured to transmit network traffic from a first node to a second node, the second node being an intended recipient of the network traffic transmitted from the first node, and wherein the packet switch device is not a part of the network, and wherein the packet switch device is configured to receive a copy of the network traffic from tapping the network for processing by the processing unit.

2. The packet switch device of claim 1 , wherein one of the packets has a first destination address associated with a first location, and the processing unit is configured to pass the packet to the at least one instrument port for transmission to the first network monitoring instrument at a second location that is different from the first location.

3. The packet switch device of claim 1 , wherein:

the at least one instrument port comprises a first instrument port;

the packets are from the first network port; and

the processing unit is configured to pass the packets from the first network port to the first instrument port.

4. The packet switch device of claim 1 , wherein:

the at least one instrument port comprises a first instrument port;

the packets are from the first network port and the second network port; and

the processing unit is configured to pass the packets from the first network port and the second network port to the first instrument port.

5. The packet switch device of claim 1 , wherein:

the at least one instrument port comprises a first instrument port and a second instrument port, wherein the second instrument port is configured to communicate with a second network monitoring instrument;

the packets are from the first network port; and

the processing unit is configured to pass the packets from the first network port to the first instrument port and the second instrument port.

6. The packet switch device of claim 1 , wherein:

the at least one instrument port comprises a first instrument port and a second instrument port, wherein the second instrument port is configured to communicate with a second network monitoring instrument;

the packets are from the first network port and the second network port; and

the processing unit is configured to pass the packets from the first network port and the second network port to the first instrument port and the second instrument port.

7. The packet switch device of claim 1 , wherein the at least one instrument port comprises a plurality of instrument ports.

8. The packet switch device of claim 7 , wherein the movement of packets involves moving one of the packets received at the first network port to one of the plurality of instrument ports.

9. The packet switch device of claim 7 , wherein the movement of packets involves multicasting one of the packets received at the first network port to multiple ones of the plurality of instrument ports.

10. The packet switch device of claim 7 , wherein the movement of packets involves aggregating some of the packets received at the first network port and the second network port to one of the plurality of instrument ports.

11. The packet switch device of claim 7 , wherein the movement of packets involves multicasting some of the packets aggregated from the first network port and the second network port to multiple ones of the instrument ports.

12. The packet switch device of claim 1 , wherein the first network monitoring instrument comprises an instrument selected from any of a sniffer, an intrusion detection system, a forensic recorder, and a RMON probe.

13. The packet switch device of claim 1 , wherein the at least one instrument port comprises a first instrument port, and the packet switch device further comprises an egress filter for the first instrument port.

14. The packet switch device of claim 1 , wherein the processing unit is configured to dynamically create a filter based on an input received from the first network monitoring instrument through the at least one instrument port.

15. The packet switch device of claim 1 , wherein the at least one instrument port comprises a plurality of instrument ports, and the processing unit is configured for:

moving a packet received at the first network port to one of the plurality of instrument ports (one-to-one function),

multicasting a packet received at the first network port to multiple ones of the plurality of instrument ports (one-to-many function),

aggregating packets from the first network port and the second network port to one of the plurality of instrument ports (many-to-one function),

multicasting packets aggregated from the first network port and the second network port to multiple ones of the plurality of instrument ports (many-to-many function), or

any combination thereof.

16. A packet switch device for providing visibility of traffic in a network, comprising:

a housing;

a processing unit located in the housing;

a first network port communicatively coupled to the processing unit, wherein the first network port is configured to communicate with the network;

a second network port communicatively coupled to the processing unit, wherein the second network port is configured to communicate with the network;

at least one instrument port communicatively coupled to the processing unit, the at least one instrument port configured to communicate with a first network monitoring instrument;

wherein the processing unit is configured to obtain a packet with a first destination address associated with a first location, and pass the packet to the at least one instrument port in accordance with a predetermined manner for transmission to the first network monitoring instrument at a second location that is different from the first location; and

wherein the network is configured to transmit network traffic from a first node to a second node, the second node being an intended recipient of the network traffic transmitted from the first node, and wherein the packet switch device is not a part of the network, and wherein the packet switch device is configured to receive a copy of the network traffic from tapping the network for processing by the processing unit.

17. The packet switch device of claim 16 , wherein:

the at least one instrument port comprises a first instrument port; and

the processing unit is configured to pass packets from the first network port to the first instrument port, the packets including the packet with the first destination address.

18. The packet switch device of claim 16 , wherein:

the at least one instrument port comprises a first instrument port; and

the processing unit is configured to pass packets from the first network port and the second network port to the first instrument port, the packets including the packet with the first destination address.

19. The packet switch device of claim 16 , wherein:

the at least one instrument port comprises a first instrument port and a second instrument port, wherein the second instrument port is configured to communicate with a second network monitoring instrument; and

the processing unit is configured to pass packets from the first network port to the first instrument port and the second instrument port, the packets including the packet with the first destination address.

20. The packet switch device of claim 16 , wherein:

the at least one instrument port comprises a first instrument port and a second instrument port, wherein the second instrument port is configured to communicate with a second network monitoring instrument; and

the processing unit is configured to pass packets from the first network port and the second network port to the first instrument port and the second instrument port, the packets including the packet with the first destination address.

21. The packet switch device of claim 16 , wherein the at least one instrument port comprises a plurality of instrument ports, and the processing unit is configured to support a movement of packets from one or both of the first and second network ports to the plurality of instrument ports, the packets including the packet with the first destination address.

22. The packet switch device of claim 21 , wherein the movement of packets involves moving one of the packets received at the first network port to one of the plurality of instrument ports.

23. The packet switch device of claim 21 , wherein the movement of packets involves multicasting one of the packets received at the first network port to multiple ones of the plurality of instrument ports.

24. The packet switch device of claim 21 , wherein the movement of packets involves aggregating some of the packets from the first network port and the second network port to one of the plurality of instrument ports.

25. The packet switch device of claim 21 , wherein the movement of packets involves multicasting some of the packets aggregated from the first network port and the second network port to multiple ones of the instrument ports.

26. The packet switch device of claim 16 , wherein the first network monitoring instrument comprises an instrument selected from any of a sniffer, an intrusion detection system, a forensic recorder, and a RMON probe.

27. The packet switch device of claim 16 , wherein the at least one instrument port comprises a first instrument port, and the packet switch device further comprises an egress filter for the first instrument port.

28. The packet switch device of claim 16 , wherein the processing unit is configured to dynamically create a filter based on an input transmitted from the first network monitoring instrument and received at the at least one instrument port.

Assignments (6)
CHANGE OF NAME Recorded Dec 14, 2023
From: GIGAMON LLC
To: GIGAMON INC.
Reel/Frame 066014/0801 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 14, 2023
From: GIGAMON SYSTEMS LLC
To: GIGAMON LLC
Reel/Frame 065869/0629 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 5, 2023
From: GALLATIN, TOM; MIU, DENNY K.; WON, KING L.; LEONG, PATRICK PAK TAK; HO, TED
To: GIGAMON SYSTEMS LLC
Reel/Frame 065772/0404 →
RELEASE OF SECURITY INTEREST Recorded Mar 11, 2022
From: JEFFERIES FINANCE LLC
To: GIGAMON INC.
Reel/Frame 059362/0491 →
SECURITY INTEREST Recorded Mar 11, 2022
From: GIGAMON INC.; ICEBRG LLC
To: JEFFERIES FINANCE LLC
Reel/Frame 059362/0717 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Feb 11, 2020
From: GIGAMON INC.
To: JEFFERIES FINANCE LLC
Reel/Frame 051898/0559 →
Continuity (4)
Continuation 12939849 · Nov 4, 2010
Continuation 11123729 · May 5, 2005
Provisional Application 60568310 · May 5, 2004
Related Publication 20120257635A1 · Oct 11, 2012