-
公开(公告)号:US11792718B2
公开(公告)日:2023-10-17
申请号:US17182058
申请日:2021-02-22
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Hao Lu , Xiaoding Shang , Feng Ding , Qiwei Chang
Abstract: Systems and methods are provided for authentication chaining and firewall optimization in a micro branch deployment comprising a plurality of chained access points (APs) and a gateway AP. A topology of the micro branch deployment may be determined through enhanced hierarchical beaconing. Based on the determined topology, an authentication chain is developed through which a client device associated to an AP of the plurality of chained APs may be authenticated and granted access to the AP. Upon authentication of the client device, firewall optimization is performed to implement access control rules only at the AP to which the client device is associated.
-
公开(公告)号:US20230033746A1
公开(公告)日:2023-02-02
申请号:US17389587
申请日:2021-07-30
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Jianpo Han , Hao Lu , Guojun Zhang
Abstract: Examples include scanning for cellular channels from various cellular service providers. Identifying cellular channels corresponding to cellular service providers. Recording a set of operating parameters for the cellular channels. Evaluating the cellular channels based on the set of operating parameters. Sorting the cellular service providers based on the evaluation of the cellular channels.
-
公开(公告)号:US20220353235A1
公开(公告)日:2022-11-03
申请号:US17242551
申请日:2021-04-28
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Haifeng Zhang , Hao Lu , Mohan Ram Bhadravati Ramakrishna Bhat , Xiaoding Shang
IPC: H04L29/12 , H04L12/851
Abstract: Some examples relate to controlling network traffic pertaining to a domain name based on a Domain Name System-Internet Protocol address (DNS-IP) mapping, An example includes receiving, in a cloud computing system, a local DNS-IP mapping for a domain name from respective Access Points (APs) in a virtual local area network (VLAN) along with geographical information of respective APs; generating a global DNS-IP mapping database comprising the local DNS-IP mapping for the domain name received from respective APs in the VLAN along with geographical information of respective APs, in the cloud computing system; and determining appropriate APs to distribute the global DNS-IP mapping, based on location information of respective APs.
-
公开(公告)号:US20210058368A1
公开(公告)日:2021-02-25
申请号:US16548127
申请日:2019-08-22
Applicant: Hewlett Packard Enterprise Development LP
Inventor: Hao Lu , Yan Liu , Wei Huang , Rajini Balay
Abstract: Embodiments are directed to host discovery for firewall coordination. An embodiment of a storage medium includes instructions for discovering a network topology for a network branch, the network branch including multiple access points including a first access point, the first access point having an interface to a network, the discovery of the network topology including identifying any access point that is linked to the first access point directly or via one or more intermediary access points; discovering one or more host devices that are connected by wireless or wired connections to one or more access points in the network branch; and generating a firewall coordination plan for the network branch based on the discovered network topology and the discovered one or more hosts, the firewall coordination plan including applying a firewall process for an access point to which a first host device is attached and bypassing one or more other firewall processes.
-
公开(公告)号:US12009979B2
公开(公告)日:2024-06-11
申请号:US17729487
申请日:2022-04-26
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Mohd Shahnawaz Siraj , Rahul Bahal , Kannan Konath , Hao Lu
IPC: H04L41/08 , H04L9/40 , H04L41/0806 , H04W84/12
CPC classification number: H04L41/0886 , H04L41/0806 , H04L63/0876 , H04W84/12
Abstract: Systems and methods are provided for zero-touch provisioning of devices, such as sensors, on a network. When a device is unable/cannot access a network via Ethernet, cellular, or near field communications capabilities resident on the device, the device can alternatively be provisioned via an intermediate network device, such as an access point using, e.g., Device Provisioning Protocol or Wi-Fi EasyConnect. A cloud-based network management system may receive a device's bootstrapping information during or after manufacturing of the device. Ultimately, the device, via the intermediate network device, is able to communicate with a back-end, cloud-based network insight system from which configuration parameters for the device may be obtained.
-
公开(公告)号:US20240171975A1
公开(公告)日:2024-05-23
申请号:US18058308
申请日:2022-11-23
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
IPC: H04W12/069 , H04W12/041
CPC classification number: H04W12/069 , H04W12/041
Abstract: In some examples, as part of an authentication process for an electronic device when connecting to a first access point (AP), an authentication server generates a first key of a hierarchy of keys. The authentication server receives a request from a second AP, and generates a second key based on the first key, the second key being part of the hierarchy of keys. In response to the request, the authentication server distributes the second key from the authentication server to the second AP for use in data protection for communications between the second AP and the electronic device after the electronic device has transitioned from the first AP to the second AP.
-
公开(公告)号:US11617187B2
公开(公告)日:2023-03-28
申请号:US17083261
申请日:2020-10-28
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Nitin A. Changlani , Qiang Zhou , Sachin Ganu , Hao Lu
IPC: H04W72/12 , H04W28/02 , H04W74/06 , H04W84/12 , H04W74/00 , H04W72/1263 , H04W72/121
Abstract: Systems and methods are provided for synchronizing uplink (UL) and downlink (DL) traffic. In particular, frames associated with Quality of Service (QoS}-sensitive traffic flows to be transmitted in a first direction are prioritized commensurate with frames to be transmitted in a second direction, different/opposite to that of the first direction. For example, UL traffic flows can be prioritized based on DL traffic flows, where the traffic flows belong to the same application flow, and vice versa, where DL traffic flows can be prioritized based on UL traffic flows for the same application flow. In this way, end-to-end QoS can be achieved.
-
公开(公告)号:US20230016602A1
公开(公告)日:2023-01-19
申请号:US17374368
申请日:2021-07-13
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Shravan Kumar Vuggrala , Raghunandan Prabhakar , Hao Lu
Abstract: Examples relate to maintaining consistent cluster data across a cluster in a network. A computing system may receive a first signature of a first state of the cluster data present at a leader gateway and a plurality of signatures of a plurality of states of the cluster data present at a plurality of member network devices of the cluster. The cluster may include a plurality of gateways including the leader gateway and a plurality of member gateways. The member network devices may include the plurality of member gateways and a plurality of interconnecting network devices. In response to determining that a signature of the plurality of signatures received from one of the member network devices is different from the first signature, the computing system may send a message to one of the plurality of gateways to update the cluster data at the member network device to represent the first state.
-
公开(公告)号:US11546931B2
公开(公告)日:2023-01-03
申请号:US17127774
申请日:2020-12-18
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: Qiang Zhou , Nitin A. Changlani , Sachin Ganu , Hao Lu
Abstract: Systems and methods are provided for transmitting buffer state report poll (BSRP) triggers from a WLAN device with a BSRP frequency that is based on an amount of pending data at the UL buffer of each station associated to the WLAN device. The BSRP frequency can further be based on a priority of the pending data at the UL buffer. The amount of pending data at the UL buffer can be compared to a threshold, the value of which can depend on the priority of the pending data, and the BSRP frequency can be based on the comparison.
-
公开(公告)号:US11356866B2
公开(公告)日:2022-06-07
申请号:US16970081
申请日:2018-02-28
Applicant: Hewlett Packard Enterprise Development LP
Inventor: Stephane Laroche , Jikui Pei , Chunfeng Wang , Hao Lu
IPC: H04W24/02 , H04L61/5014 , H04L41/042 , H04W88/08
Abstract: An example access point may comprise a processing resource; and a memory resource storing machine-readable instructions to cause the processing resource to: perform a management system search using a dynamic host configuration protocol (DHCP); determine, in view of the management system search, whether a management system discovered is a controller; and select one of a first role within a centralized local area network and a second role within a distributed local area network based on determining whether the management system is the controller, wherein the first role within the centralized local area network is selected when the management system is the controller.
-
-
-
-
-
-
-
-
-