-
公开(公告)号:US20220345507A1
公开(公告)日:2022-10-27
申请号:US17862755
申请日:2022-07-12
Applicant: Cisco Technology, Inc.
IPC: H04L65/61 , H04L65/1023
Abstract: A method is provided that is performed by a smart network interface card (SmartNIC) that is in communication with a host device that serves as a forwarder in an Hybrid Information-Centric Network (hICN). The method includes storing in a memory of the SmartNIC, mapping information that maps a subset of names of content contained in a content store that is stored in a memory of the host device to corresponding addresses of the content. The method further includes receiving at the SmartNIC, from a requester, an interest that includes a name, and determining whether the name of the interest is included in the mapping information stored in the SmartNIC. The method includes processing the interest based on whether the name of the interest is contained in the mapping information stored in the memory of the SmartNIC.
-
公开(公告)号:US20210385231A1
公开(公告)日:2021-12-09
申请号:US17410286
申请日:2021-08-24
Applicant: Cisco Technology, Inc.
Inventor: Nagendra Kumar Nainar , Carlos M. Pignataro , Luca Muscariello , Alberto Compagno , Giovanna Carofiglio
Abstract: An electronic device of a content producer generates a chunk of data, associates a location-independent name with the chunk of data, generates a signature for the chunk of data, attaches the signature to the chunk of data, and transmits the chunk of data, with the signature attached, to one or more user devices in response to respective requests. The signature is generated based on the data in the chunk, using a private key of the electronic device. The electronic device also stores information, including a specification of a public key associated with the private key, in a first ledger entry of a blockchain, to provide the one or more user devices with access to the public key. A user device may obtain the public key and use it to verify the chunk of data.
-
公开(公告)号:US11165824B2
公开(公告)日:2021-11-02
申请号:US16656621
申请日:2019-10-18
Applicant: Cisco Technology, Inc.
Inventor: Alberto Compagno , Luca Muscariello
Abstract: Presented herein is a solution in which a Producer that provides Transport Layer Security (TLS) over a hybrid Information Centric Network (hICN) announces two different hICN prefixes or namespaces. One hICN prefix is for performing a TLS handshake (also called a handshake prefix or handshake namespace) and another hICN prefix (also called a secure prefix or secure namespace) is to publish content in a secure, and confidential manner with a Consumer that correctly performs a TLS handshake. While the handshake prefix is public and shared by multiple Consumers, a secure prefix is uniquely assigned to a Consumer after the TLS handshake successfully terminates. Content published under the secure prefix is encrypted with the encryption key established during the TLS handshake. Names used in the secure namespace are private, meaning only the Consumer and Producer that perform the handshake can infer any information about a content by looking on the name.
-
公开(公告)号:US20210329046A1
公开(公告)日:2021-10-21
申请号:US16852635
申请日:2020-04-20
Applicant: Cisco Technology, Inc.
IPC: H04L29/06
Abstract: A method is provided that is performed by a smart network interface card (SmartNIC) that is in communication with a host device that serves as a forwarder in an Hybrid Information-Centric Network (hICN). The method includes storing in a memory of the SmartNIC, mapping information that maps a subset of names of content contained in a content store that is stored in a memory of the host device to corresponding addresses of the content. The method further includes receiving at the SmartNIC, from a requester, an interest that includes a name, and determining whether the name of the interest is included in the mapping information stored in the SmartNIC. The method includes processing the interest based on whether the name of the interest is contained in the mapping information stored in the memory of the SmartNIC.
-
公开(公告)号:US11050724B2
公开(公告)日:2021-06-29
申请号:US15928265
申请日:2018-03-22
Applicant: Cisco Technology, Inc.
Inventor: Fabio De Gaspari , Alberto Compagno , Luca Muscariello , Giovanna Carofiglio
Abstract: A producer communicates over a network with a user application in an infrastructure-as-a-service (IaaS) and an IaaS node. The producer encrypts content with first encryption using a first key and second encryption using a second key, to produce twice encrypted content. The producer encrypts the second key with attribute-based encryption and symmetric encryption using an IaaS key, to produce a twice encrypted second key. The producer provides to the user application the twice encrypted content, the twice encrypted second key, and key information configured to remove the first encryption from the twice encrypted content. The producer provides to the IaaS node the IaaS key to enable the IaaS node to remove the symmetric encryption from the twice encrypted second key, such that the user application and the IaaS node are constrained to exchange with each other key-related information and intermediate decryption results in order to recover the content.
-
公开(公告)号:US10924540B2
公开(公告)日:2021-02-16
申请号:US15943775
申请日:2018-04-03
Applicant: Cisco Technology, Inc.
Inventor: Alberto Compagno , Luca Muscariello , Giovanna Carofiglio , Marcel Paul Enguehard
IPC: H04L29/08 , G06F16/901 , G06F16/22 , H04W72/04 , H04W84/18
Abstract: In one embodiment, a device in a network receives an interest request for one or more pieces of content data available in the network. The interest request specifies the one or more pieces of content data via one or more bits sets in a content request bitmap of the interest request, each bit of the content request bitmap being associated with a different piece of content data. The device compares the content request bitmap to a content availability bitmap in a forwarding information base (FIB) of the device that is associated with a particular interface of the device and each bit of the content availability bitmap indicates whether a particular piece of content data is available via the particular interface. The device forwards the interest request via the particular interface, based on the comparison between the content request bitmap and the content availability bitmap in the FIB of the device.
-
公开(公告)号:US11843650B2
公开(公告)日:2023-12-12
申请号:US17862755
申请日:2022-07-12
Applicant: Cisco Technology, Inc.
IPC: G06F15/173 , H04L65/61 , H04L65/1023
CPC classification number: H04L65/61 , H04L65/1023
Abstract: A method is provided that is performed by a smart network interface card (SmartNIC) that is in communication with a host device that serves as a forwarder in an Hybrid Information-Centric Network (hICN). The method includes storing in a memory of the SmartNIC, mapping information that maps a subset of names of content contained in a content store that is stored in a memory of the host device to corresponding addresses of the content. The method further includes receiving at the SmartNIC, from a requester, an interest that includes a name, and determining whether the name of the interest is included in the mapping information stored in the SmartNIC. The method includes processing the interest based on whether the name of the interest is contained in the mapping information stored in the memory of the SmartNIC.
-
公开(公告)号:US11444996B2
公开(公告)日:2022-09-13
申请号:US16852635
申请日:2020-04-20
Applicant: Cisco Technology, Inc.
IPC: H04L65/61 , H04L65/1023 , H04L65/65 , H04L65/80 , H04L65/612
Abstract: A method is provided that is performed by a smart network interface card (SmartNIC) that is in communication with a host device that serves as a forwarder in an Hybrid Information-Centric Network (hICN). The method includes storing in a memory of the SmartNIC, mapping information that maps a subset of names of content contained in a content store that is stored in a memory of the host device to corresponding addresses of the content. The method further includes receiving at the SmartNIC, from a requester, an interest that includes a name, and determining whether the name of the interest is included in the mapping information stored in the SmartNIC. The method includes processing the interest based on whether the name of the interest is contained in the mapping information stored in the memory of the SmartNIC.
-
公开(公告)号:US11245677B2
公开(公告)日:2022-02-08
申请号:US16044672
申请日:2018-07-25
Applicant: Cisco Technology, Inc.
Inventor: Alberto Compagno , Michele Papalini , Luca Muscariello , Giovanna Carofiglio
Abstract: In various implementations, a network device receives a packet from a content producer. The packet includes data and further includes a signature generated by the content producer, based on the data, using a private key of the content producer. The network device modifies the packet without affecting the signature and forwards the modified packet toward a user device. The network device also sends the user device a manifest specifying how the packet was modified. The user device receives the packet and manifest, restores the packet's original data based on the manifest, and verifies the original data using the signature and a public key corresponding to the private key of the content producer. In response to verification of the original data, an application on the user device is allowed to use the data.
-
10.
公开(公告)号:US11258840B2
公开(公告)日:2022-02-22
申请号:US16405144
申请日:2019-05-07
Applicant: Cisco Technology, Inc.
Inventor: Michele Papalini , Giovanna Carofiglio , Luca Muscariello , Alberto Compagno
IPC: H04L29/06 , H04L29/08 , G06F16/23 , H04L1/00 , G06F16/958 , H04L65/65 , H04L65/403 , H04L65/80 , H04L69/166 , H04L67/60 , H04L69/16 , H04L65/60 , H04L65/612
Abstract: A network device is configured to distribute audio streams and video streams among participant devices connected to the network device over a communication network. The network device collects respective audio streams from the participant devices, and ranks the participant devices based on the respective audio streams collected from the participant devices. Based on the ranking, the network device elects top-N participant devices among the participant devices as being associated with respective users who are active speakers, where N is one or more, and retrieves respective video streams only from the top-N participant devices. The network device receives from the participant devices respective requests for video streams from the top-N participant devices, and sends to the participant devices the video streams retrieved only from the top-N participant devices.
-
-
-
-
-
-
-
-
-