Zero configuration networking on a subnetted network

Information

  • Patent Grant
  • 10833948
  • Patent Number
    10,833,948
  • Date Filed
    Tuesday, October 2, 2018
    6 years ago
  • Date Issued
    Tuesday, November 10, 2020
    4 years ago
Abstract
Methods and apparatus are described for implementing service discovery protocols on subnetted zero configuration networks. A process for managing service advertisement across a plurality of subnets may comprise: collecting service advertisements on a local network level by designated network devices; sending listings of services from each of the designated devices to a master network device; sending a table of services for the plurality of subnets from the master device to all of the designated devices on the plurality of subnets; creating by each of the designated network devices for the corresponding subnet a service discovery proxy table listing the service advertisements on the subnets of the plurality of subnets beyond the subnet corresponding to the designated device; and periodically transmitting by each of the designated devices on the corresponding subnets service advertisements for the services of the corresponding service discovery proxy table.
Description
BACKGROUND
Field of the Invention

The present invention relates generally to zero configuration networking and more specifically to methods and apparatus for implementing service discovery protocols on subnetted zero configuration networks.


Description of the Related Art

A zero configuration network is an IP network that is configured without the need for any manual configuration or special configuration servers. For example, someone without networking expertise can readily connect computers, printers and other devices, which are then automatically networked. This automatic networking function may: allocate IP addresses for the devices, if required, translate between domain names and IP addresses, and locate network services. A comprehensive description of zero configuration networking is provided in Zero Configuration Networking: The Definitive Guide, Stuart Cheshire and Daniel H. Steinberg, O'Reilly Media, Inc., Sebastopol, Calif. 2006.


Service discovery protocols are used on zero configuration networks to automatically detect services available on connected network devices and to advertise the detected services. Examples of service discovery protocols used on zero configuration networks include Bonjour available from Apple, Inc. and Avahi, for example. Universal Plug and Play (UPnP) may also be used for service discovery on zero configuration networks.


These service discovery protocols provide automatic service discovery within a transmission domain. Thus, when the population of devices on a network becomes high and networks are segmented into multiple domains, users will have more limited service discovery. This may not be an issue where network switches or switching hubs connect multiple network segments to form a single L2 network allowing transmission of L3 link local multicasts across the entire network. However, as explained in more detail below, a network with a subnetted configuration does not permit L3 link local multicasts from one subnet to another without configuring DNS—a non-trivial challenge for the network administrator.



FIGS. 1-3 provide an illustration of some of the current challenges of service discovery across multiple subnets. FIG. 1 shows a multi-subnet configuration comprising two VLANs connected by an L3 switch or routing switch. Each VLAN is shown with an access point—AP1 and AP2. In this example of a school environment, VLAN 1 is dedicated to students, the students accessing the network at AP1, and VLAN 2 is dedicated to faculty, the faculty accessing the network at AP2. There is a printer on VLAN 2, for which a mDNS advertisement of a printing service appears on the local network, VLAN 2. The L3 switch blocks mDNS advertisements; consequently, the advertisement will not reach the student network, VLAN 1. However, in some circumstances it may be desirable for the students on VLAN 1 to be able to see the advertisement for the printing service on VLAN 2. This can be achieved if the L3 switch allows for forwarding or duplication of mDNS advertisements, the printing service will be advertised on both VLAN 1 and VLAN 2, as shown in FIG. 2, and the students can now see the advertisement of the printing service. However, the faculty would be able to see services advertised by student computers, such as _game._tcp perhaps, which may not be desirable. See FIG. 3. In fact, the students and faculty will be able to see all services available on both VLAN 1 and VLAN 2. Clearly, there is a need for an efficient process of selectively limiting the network-wide visibility of certain services, and also to limit the total number of services advertised in order for the transmission of advertisements to be manageable and useful to network users.


Furthermore, all the services on all subnets in a multi-subnet network may be an extremely large set of services and may be unmanageable to transmit to all network users. There is a need for processes to manage the volume of services being advertised within any one subnet.


SUMMARY OF THE INVENTION

The present invention includes methods and apparatus for implementing service discovery protocols on subnetted zero configuration networks. In general, embodiments of the invention are based on the concept of using designated network devices, such as APs, at the local, subnet level to collect and filter service advertisements (services advertised using a mDNS service advertisement protocol, for example), send the filtered service advertisements to a higher level designated network device for creation of a list of services available across a multiplicity of subnets, and then send the list to the local level designated network devices to allow for proxy service advertisements (proxy advertisements are permitted in mDNS service advertisement protocol) from across the multiplicity of subnets to be transmitted on all subnets.


According to aspects of the present invention a process for managing service advertisement across a plurality of subnets may comprise: collecting service advertisements on a local network level by designated network devices; sending listings of services from each of the designated devices to a master network device; sending a table of services for the plurality of subnets from the master device to all of the designated devices on the plurality of subnets; creating by each of the designated network devices for the corresponding subnet a service discovery proxy table listing the service advertisements on the subnets of the plurality of subnets beyond the subnet corresponding to the designated device; and periodically transmitting by each of the designated devices on the corresponding subnets service advertisements for the services of the corresponding service discovery proxy table. Furthermore, the process may comprise sending listings of services from each of the designated network devices to a designated back-up master network device and providing the filtered listings to the designated back-up master network device for creating said table of services. Furthermore, the process may comprise filtering the advertisements by the designated devices to provide filtered listings of services, the filtered listings being provided to the designated master network device for creating the table of services, wherein the filtering may use filtering rules based on regular expressions. Furthermore, the service advertisements and the proxy service advertisements may use multicast DNS (mDNS) protocol.


According to further aspects of the present invention, a system for managing service advertisement across a plurality of subnets may comprise: (1) a designated master network device including (a) a first memory device, a first computer program being stored in the first memory device, and (b) a first processor; and (2) a multiplicity of designated network devices, each of the multiplicity of designated network devices including (a) a second memory device, a second computer program being stored in the second memory device, and (b) a second processor, the second computer program causing the second processor to perform: (i) collecting service advertisements on a local network level; (ii) sending a listing of services to the designated master network device; (iii) receiving a table of service advertisements from the master network device, wherein the table is a combination of the listings for the plurality of subnets; (iv) creating a service discovery proxy table listing the service advertisements on the subnets of the plurality of subnets beyond the subnet corresponding to the designated network device; and (v) periodically transmitting service advertisements for the services of the service discovery proxy table on the subnet corresponding to the designated network device. Furthermore, the first computer program may cause the first processor to perform: on receiving listings of services from the multiplicity of designated network devices, combining the listings for the plurality of subnets to form the table of service advertisements; and sending the table to the multiplicity of designated network devices on the plurality of subnets. Furthermore, the plurality of subnets may be a plurality of LANs or VLANs, and preferably each VLAN is a single IP subnet. Furthermore, the designated network devices may be access points (APs), wireless APs, routers, switches or special software running on severs or virtual machines.





BRIEF DESCRIPTION OF THE FIGURES

These and other aspects and features of the present invention will become apparent to those ordinarily skilled in the art upon review of the following description of specific embodiments of the invention in conjunction with the accompanying figures, wherein:



FIGS. 1-3 illustrate service advertisement processes aver a multi-subnet network;



FIG. 4 illustrates local level collection of service advertisements by a network device, according to some embodiments of the invention;



FIG. 5 shows five LANs combined to form a service discovery realm, according to some embodiments of the invention;



FIG. 6 illustrates filtering of local level service advertisements by a network device, according to some embodiments of the invention;



FIG. 7 illustrates local level designated network devices sending the filtered local level service advertisements to a realm level designated network device and a realm level back-up device, where a consolidated table of filtered service advertisements for the entire realm is created, according to some embodiments of the invention;



FIG. 8 illustrates sending of the realm level table of service advertisements to one of the local level designated devices, the local level device then creating a proxy table of realm level service advertisements for transmitting on the local subnet, according to some embodiments of the invention;



FIG. 9 illustrates transmitting over the local subnet of the proxy table of realm level service advertisements, according to some embodiments of the invention; and



FIG. 10 illustrates application of the present invention to the network topology of FIGS. 1-3.





DETAILED DESCRIPTION

Embodiments of the present invention will now be described in detail with reference to the drawings, which are provided as illustrative examples of the invention so as to enable those skilled in the art to practice the invention. Notably, the figures and examples below are not meant to limit the scope of the present invention to a single embodiment, but other embodiments are possible by way of interchange of some or all of the described or illustrated elements. Moreover, where certain elements of the present invention can be partially or fully implemented using known components, only those portions of such known components that are necessary for an understanding of the present invention will be described, and detailed descriptions of other portions of such known components will be omitted so as not to obscure the invention. In the present specification, an embodiment showing a singular component should not be considered limiting; rather, the invention is intended to encompass other embodiments including a plurality of the same component, and vice-versa, unless explicitly stated otherwise herein. Moreover, applicants do not intend for any term in the specification or claims to be ascribed an uncommon or special meaning unless explicitly set forth as such. Further, the present invention encompasses present and future known equivalents to the known components referred to herein by way of illustration.


In general, embodiments of the invention are based on the concept of using designated network devices, such as APs, at the local, subnet level to collect and filter service advertisements (services advertised using a mDNS service advertisement protocol, for example), send the filtered service advertisements to a higher level designated network device for creation of a list of services available across a multiplicity of subnets, and then send the list to the local level designated network devices to allow for proxy service advertisements (proxy advertisements are permitted in mDNS service advertisement protocol) from across the multiplicity of subnets to be transmitted on all subnets. Detailed examples are provided of the present invention for service advertisement protocols using mDNS, such as Bonjour. However, the concepts and teaching of the present invention, as stated above, are not limited to implementation with Bonjour. For example, embodiments of the invention may be implemented with service advertisement protocols such as UPnP. Furthermore, the concepts and teaching of the present invention may be implemented with NetBIOS Name Service.


A process for managing service advertisement across a plurality of subnets according to some embodiments of the present invention may include the following steps: collecting service advertisements on the local network level by designated network devices and creating link-level tables of the available services for each subnet with a designated network device (note that not all subnets will necessarily have a designated network device, since a designated device is only needed on subnets with services for which service advertisements are desired to be transmitted across the plurality of subnets); filtering the local service advertisements in the tables by the designated network devices to provide filtered listings of services; sending the filtered listings from each designated network device to a designated master network device (and preferably to a designated back-up master network device) and combining the filtered listings at the designated master network device to form a table of filtered service advertisements; and sending the table of filtered service advertisements to all designated network devices, such that each designated network device maintains a service discovery proxy table listing the filtered services on the plurality of subnets. This process is explained in more detail with reference to FIGS. 4-8.


In FIG. 4, a designated network device (DD1) is shown collecting service advertisements on the local network level for both VLAN 10 and VLAN 20. These local level service advertisements are provided by a service advertisement protocol such as Bonjour using mDNS. DD1 creates link-level service tables (LLST)—LLST-10 and LLST-20, for the subnets VLAN 10 and VLAN 20, respectively. LLST-10 and LLST-20 are stored in memory on DD1. In this example, LLST-10 lists services 1-3 which are advertised on VLAN 10 and LLST-20 lists services 4-6 which are advertised on VLAN 20. FIG. 4 represents part of a larger network which includes a plurality of subnets—VLAN 10, VLAN 20 . . . VLAN 50, as illustrated in FIG. 5.


The five subnets in FIG. 5 are referred to herein as a service discovery realm. The term realm is used so as to be clear that the grouping of subnets need not in all cases correspond to a complete network—in other words there may be more than one realm within a network. The number of subnets within a realm may be within the range of 2 to tens of thousands or more. On a practical level a limitation to the number of subnets may be determined by the memory and processing requirements in the designated devices required for the service advertisements not in a designated device's subnet. The subnets may be local area networks (LANs) or virtual LANs (VLANs), and preferably each VLAN is a single IP subnet. A realm may correspond to a geographical region, such as one building on a company campus, or to an organizational division, such as an engineering group, where sharing advertised services is beneficial. A realm corresponding to a geographical region is beneficial when services such as printing are being advertised—a user is unlikely to be interested in a printing service across the other side of a large company campus and will only want to see those in close geographical proximity, and thus a realm of limited geographical extent is beneficial. A realm corresponding to a particular organizational division may be beneficial if the division is spread out geographically but wishes to share software tools, datafiles, presentations, etc.


To provide a specific example of a realm, consider Kindergarten through 12th grade school districts. The realm is likely to be either a single school building, or the entire district. Where districts are reasonably small—for a small city—the district may be a realm. Where the district is county-wide, and may have almost 10,000 APs, there may be multiple realms—these realms may be either a particular slice of the district (elementary/middle/high schools in three realms) or individual schools.


These service discovery realms may be user defined or may be determined automatically. An example of the latter is a large set of cooperative control APs which cover a continuous area which automatically organize into coverage sub-areas, where each sub-area is a realm. A further example is a network for a company with three locations worldwide and the APs self-organize into realms that form continuous coverage areas, in this case three realms—one for each location. When wireless APs are used, the wireless coverage areas of adjacent APs within a realm will often be spatially overlapping.


A designated network device, DD, is needed for each subnet in a realm. The number of designated devices may correspond to the number of subnets in a realm, or, as shown in FIG. 4, multiple subnets may share a common designated device. There may also be a second DD for each subnet which acts as a back-up. Lower level designated devices may be network devices such as access points (APs), a specific example being the cooperative control AP—the HiveAP device—available from Aerohive Networks, Inc. Furthermore, designated devices may be routers, switches and even special software running on servers or virtual machines. The realm level designated devices may also by APs, or may be controllers in networks that have centralized control. Furthermore, the realm level designated devices may be any of the network devices described above for lower level designated devices. A network device, such as an AP, may double as both a lower level and a realm level designated device. Where there are many suitable network devices on a subnet an election process may be used to designate one device and a back-up. For example, the first AP coming up on a VLAN is the DD, and the second the back-up, or the device with the lowest MAC address is the DD and the next lowest is the back-up. Similarly, for each realm a master realm device and a back-up device are designated. In one embodiment, the set of lower level designated devices elect one of the set to be realm master and a second to be back-up realm master. Two realm level devices are preferred to provide for seamless backup when the master dies. Having two realm level devices also reduces the O(N{circumflex over ( )}2) problem of synchronizing between subnets to O(N). (If you have N devices, you need to have N*(N−1) connections between all of them in a full mesh, but if you have designated devices acting as master and backup master, you only need 2N connections—the load on the network is reduced.)


To share information between designated devices, a communication protocol built on top of the Internet Protocol (IP) can be used. The communication carries a list of services to be shared along with the network address for each service. By building the communication protocol between designated devices on IP, it can span any physical distance covered by an IP network and traverse a network built out of nearly any networking component available for sale today.


In FIG. 6, the designated device DD1 is shown filtering the local service advertisements on LLST-10 and LLST-20 to provide corresponding lists of filtered services for each subnet—partial realm service tables PRST-10 and PRST-20. The filtering is executed by a processor on DD1 and the partial realm service tables are stored in memory on DD1. (The tables are preferably also stored in memory on a back-up designated device. The tables may also be stored on disk.) Filter rules may be consistent throughout a realm or may be custom for each subnet within a realm. An example of a filter rule for (1) a realm corresponding to a single building on a campus is to allow all printing services to be advertised providing the building is not too large, and (2) a realm including geographically disparate locations is to exclude all printing services, thus only printing services on a local level will be advertised. Filters may be used to restrict access to certain services by not advertising them beyond their local network. In the example in FIG. 6, the filter removes services 1 and 3 from LLST-10 and services 4 and 6 from LLST-20, thus service 2 is included in PRST-10 and service 4 is included in PRST-20. The designated device DD1 then sends the partial realm service tables to a master realm designated device (MRDD).


Filtering rules may be based on regular expressions. For example: match “_ipp._tcp” exactly will match exactly one service—the IPP (Internet Printing Protocol); match “_i*._tcp” will match any TCP service that begins with the letter I, and thus will match IPP as above, but it will also match “_ipodconfiguration._tcp”; or match “*._tcp” will match any TCP service.


In FIG. 7, the designated devices DD1, DD2, . . . DD5 are all shown sending partial realm service tables to the master realm DD and the back-up realm DD, where they are stored in memory. The realm level DDs separately combine the PRSTs to create a realm service discovery table (RSDT) which is stored in memory. (The tables—PRSTs and RSDT—are preferably also stored in memory on a back-up master designated device. The tables may also be stored on disk.) The master realm DD then sends the RSDT to each DD for each subnet—the RSTD is stored in memory on each designated device. (The tables are preferably also stored in memory on a back-up designated device. The tables may also be stored on disk.) Note that in FIG. 7 separate designated devices DD1 and DD2 are shown for VLAN 10 and VLAN 20, although in alternative configurations VLAN 10 and VLAN 20 may have a common designated device, as shown in FIG. 4. Furthermore, a single designated devices may be used if it can be plugged into a trunk port that is connected to all VLANs, in which case it receives all service advertisements, and can maintain the entire network state table without having to synchronize between devices.


The back-up master designated device may be triggered into action on receipt of a message that the designated master network device is not communicating with the designated network devices or by being unable to communicate with the master device over several seconds, in which case the designated back-up master network device sends the realm service discovery table to the designated network devices on the plurality of subnets in the realm.


In FIG. 8, the master realm DD is shown sending the RSDT to DD1—the same designated device that collected and filtered the local level advertisements on the subnet. DD1 then creates a service discovery proxy table which includes the services available realm-wide, excluding those available on the local subnet. The service discovery proxy table is stored in memory on DD3. For example, DD3 creates a proxy table including the services available on VLAN 10, VLAN 20, VLAN 40 and VLAN 50, excluding the services available locally on VLAN 30. As shown in FIG. 9, DD3 then transmits the service discovery proxy table to its local subnet—VLAN 30. This transmitting may be efficiently executed by periodically transmitting mDNS messages on VLAN 30 to advertise all services in the proxy table. In FIG. 9, DD3 is shown advertising on VLAN 30 services 2, 5, 11 and 14 which are available on VLAN 10, VLAN 20, VLAN 40 and VLAN 50, respectively. Note that the RSDT received by the DD which covers the DD's subnet is used for comparison to assist in determining when a new service needs to be reported to the master realm DD for adding to the RSDT or when an old service is no longer being advertised and needs to be reported to the master realm DD for removal from the RSDT. Typically it is desired that RSDTs are republished with all updates approximately every 5 seconds. For example, when a new service is added to a subnet, the service advertisement would be identified as new by comparison with the subnet's RSDT, if it passes the filter information is then sent to the realm master designated device identifying the addition of a new service. From the realm master designated device the service advertisement is sent out to all designated devices on all subnets in the realm and proxy advertised on these subnets. It is desirable to have this updating process completed within approximately 5 seconds. Note that on the subnet of the new service, the service creator continues sending a service advertisement every couple of seconds for this new service; however, it is not this repeating service advertisement that is propagated to the realm level, merely the information that the service needs to be added or removed from the RSDT. Consequently, the process of the present invention produces a lesser load on routers compared to networks in which the routers allow forwarding or duplicating of mDNS advertisements, as described above with reference to FIG. 2.



FIG. 10 is used to illustrate the application of the present invention to the network topology of FIGS. 1-3. AP1 and AP2 may be designated network devices for VLAN 1 and VLAN 2, respectively. AP2 may double as a designated master network device, and AP1 may double as a designated back-up master network device. The process of the present invention may be applied to this network as described above, to provide service advertisement across both VLAN 1 and VLAN 2 without requiring an L3 switch specially adapted for forwarding or duplication of mDNS advertisements. Furthermore, filtering of service advertisements may be readily carried out according to the present invention. For example, the service advertisement from the printer on VLAN 2 is blocked by the L3 switch, but is collected by AP2 and incorporated into a table of services. The table is sent to AP1 so that the printer service may be proxy advertised on VLAN 1 by AP1. Furthermore, the student application _game._tcp which is advertised on VLAN 1 is collected by AP1, and may be filtered so that it is not added to a table of services on VLAN 1 (and thus is not sent to AP2 for proxy advertisement on VLAN 2). As indicated by the double-headed arrow, the communication between AP1 and AP2 controls service advertisement for services beyond the local subnet.


Further refinements to the process described above may include setting advertisement criteria based on proximity to an AP. For example, a service is only proxy advertised if it is within one AP hop in the air for a wireless network or if the service is on a neighboring AP in the air of an AP on a VLAN. This may be implemented on a network with APs which receive or acquire information regarding which APs are neighboring APs.


Yet further refinements to the process described above may include using IP filtering to enable services separately to advertisement of services. To enable IP filtering involves controlling routing and switching. For example, returning to the teacher/student example of FIGS. 1-3, when you configure “allow printing advertisements from teacher VLAN to student VLAN,” you would also open up ports in the firewall to allow the printing traffic.


The process for managing service advertisement across a plurality of subnets, as described above may be implemented by software loaded into memory of the various designated devices—the designated devices on each subnet, the master realm designated device and the back-up devices. The software is executed by processors on said designated devices to perform the described process. Although the present invention has been described with the designated devices on both the local and realm level carrying out the processing and storing of data, some of the processing and storing may be in the cloud. For example, the master realm DD and back-up realm DD may be virtual devices in the cloud.


Although the present invention has been particularly described with reference to embodiments thereof, it should be readily apparent to those of ordinary skill in the art that changes and modifications in the form and details may be made without departing from the spirit and scope of the invention. It is intended that the appended claims encompass such changes and modifications.

Claims
  • 1. A method, comprising: collecting, by a designated network device of a plurality of designated network devices, service advertisements on a local network from a subnet of a plurality of subnets to which the designated network device belongs;selecting, by the designated network device, one or more service advertisements based on a plurality of filtering rules corresponding to the plurality of subnets to send the selected one or more service advertisements to a network device designated as a master network device for the plurality of designated network devices of the plurality of subnets;receiving, by the designated network device, a table of services that includes service advertisements received by the master network device from the plurality of designated network devices of the plurality of subnets;creating, by the designated network device, a service discovery proxy table based on the table of services to allow one or more service advertisements listed in the table of services to be available in the subnet; andtransmitting, by the designated network device, one or more service advertisements for the services listed in the service discovery proxy table.
  • 2. The method of claim 1, further comprising sending the selected one or more service advertisements from the designated network device to another network device designated as a back-up master network device for the plurality of designated network devices of the plurality of subnets.
  • 3. The method of claim 2, further comprising creating, by the back-up master network device, another table of services based on the selected one or more service advertisements received by the back-up master network device from the plurality of designated network devices of the plurality of subnets.
  • 4. The method of claim 2, further comprising creating, by the master network device, the table of services that includes the service advertisements from the plurality of designated network devices to provide filtered listings of services.
  • 5. The method of claim 1, wherein the plurality of filtering rules are based on regular expressions.
  • 6. The method of claim 4, further comprising providing the filtered listings of services to the back-up master network device for creating the table of services.
  • 7. The method of claim 1, wherein the service advertisements collected on the local network and the one or more service advertisements listed in the service discovery proxy table use a multicast DNS (mDNS) protocol.
  • 8. The method of claim 7, wherein the mDNS protocol is used according to a Bonjour protocol.
  • 9. The method of claim 1, wherein the plurality of subnets are a plurality of virtual local area networks (VLANs).
  • 10. The method of claim 1, wherein the plurality of designated network devices are a plurality of wireless access points.
  • 11. The method of claim 10, wherein wireless coverage from adjacent access points of the plurality of wireless access points is spatially overlapping.
  • 12. The method of claim 1, wherein the master network device is a wireless access point.
  • 13. The method of claim 1, further comprising: updating the service discovery proxy table; andsending the updated service discovery proxy table to the plurality of designated network devices.
  • 14. A system, comprising: one or more processors; anda memory storing instructions that, when executed by the one or more processors, cause the system to perform operations comprising: collecting, by a designated network device of a plurality of designated network devices, service advertisements on a local network from a subnet of a plurality of subnets to which the designated network device belongs;selecting, by the designated network device, one or more service advertisements based on a plurality of filtering rules corresponding to the plurality of subnets to send the selected one or more service advertisements to a network device designated as a master network device for the plurality of designated network devices of the plurality of subnets;receiving, by the designated network device, a table of services that includes service advertisements received by the master network device from the plurality of designated network devices of the plurality of subnets;creating, by the designated network device, a service discovery proxy table based on the table of services to allow one or more service advertisements listed in the table of services to be available in the subnet; andtransmitting, by the designated network device, one or more service advertisements for the services listed in the service discovery proxy table.
  • 15. The system of claim 14, wherein the operations further comprise: sending the selected one or more service advertisements from the designated network device to another network device designated as a back-up master network device for the plurality of designated network devices of the plurality of subnets.
  • 16. The system of claim 15, wherein the operations further comprise: creating, by the back-up master network device, another table of services based on the selected one or more service advertisements received by the back-up master network device from the plurality of designated network devices of the plurality of subnets.
  • 17. The system of claim 15, wherein operations further comprise: creating, by the master network device, the table of services that include the service advertisements from the plurality of designated network devices to provide filtered listings of services.
  • 18. The system of claim 14, wherein the plurality of filtering rules are based on regular expressions.
  • 19. The system of claim 17, wherein the operations further comprise: providing the filtered listings of services to the back-up master network device for creating the table of services.
  • 20. The system of claim 14, wherein the service advertisements collected on the local network and the one or more service advertisements listed in the service discovery proxy table use multicast DNS (mDNS) protocol.
  • 21. The system of claim 14, wherein the operations further comprise: updating the service discovery proxy table; andsending the updated service discovery proxy table to the plurality of designated network devices.
  • 22. A non-transitory, tangible computer-readable media having instructions stored thereon that, when executed by at least one processor, causes the at least one processor to perform operations comprising: collecting, by a designated network device of a plurality of designated network devices, service advertisements on a local network from a subnet of a plurality of subnets to which the designated network device belongs;selecting, by the designated network device, one or more service advertisements based on a plurality of filtering rules corresponding to the plurality of subnets to send the selected one or more service advertisements to a network device designated as a master network device for the plurality of designated network devices of the plurality of subnets;receiving, by the designated network device, a table of services that includes one or more service advertisements received by the master network device from the plurality of designated network devices of the plurality of subnets;creating, by the designated network device, a service discovery proxy table based on the table of services to allow one or more service advertisements listed in the table of services to be available in the subnet; andtransmitting, by the designated network device, one or more service advertisements for the services listed in the service discovery proxy table.
  • 23. The non-transitory, tangible computer-readable media of claim 22, wherein the operations further comprise, in response to a new service becoming available on the subnet of the plurality of subnets, reporting, by the designated network device, availability of the new service to the master network device.
  • 24. The non-transitory, tangible computer-readable media of claim 23, wherein the operations further comprise adding, by the master network device, the new service to the table of services.
  • 25. The non-transitory, tangible computer-readable media of claim 22, wherein the operations further comprise, in response to a service becoming unavailable on the subnet of the plurality of the subnets, reporting, by the designated network device, unavailability of the service to the master network device.
  • 26. The non-transitory, tangible computer-readable media of claim 25, wherein the operations further comprise removing, by the master network device, the unavailable service from the table of services.
CROSS-REFERENCE TO RELATED APPLICATIONS

This application is a continuation of U.S. patent application Ser. No. 13/286,121, filed Oct. 31, 2011, all of which is incorporated by reference herein.

US Referenced Citations (262)
Number Name Date Kind
5471671 Wang Nov 1995 A
5697059 Carney Dec 1997 A
5726984 Kubler Mar 1998 A
5956643 Benveniste Sep 1999 A
6061799 Eldridge May 2000 A
6112092 Benveniste Aug 2000 A
6154655 Borst Nov 2000 A
6201792 Lahat Mar 2001 B1
6233222 Wallentin May 2001 B1
6314294 Benveniste Nov 2001 B1
6473413 Chiou Oct 2002 B1
6496699 Benveniste Dec 2002 B2
6519461 Andersson Feb 2003 B1
6628623 Noy Sep 2003 B1
6628938 Rachabathuni Sep 2003 B1
6636498 Leung Oct 2003 B1
6775549 Benveniste Aug 2004 B2
6865393 Baum Mar 2005 B1
6957067 Iyer Oct 2005 B1
7002943 Bhagwat Feb 2006 B2
7057566 Theobold Jun 2006 B2
7085224 Oran Aug 2006 B1
7085241 O'Neill Aug 2006 B1
7130629 Leung Oct 2006 B1
7154874 Bhagwat Dec 2006 B2
7164667 Rayment Jan 2007 B2
7174170 Steer Feb 2007 B2
7177646 O'Neill Feb 2007 B2
7181530 Halasz Feb 2007 B1
7216365 Bhagwat May 2007 B2
7224697 Banerjea May 2007 B2
7251238 Joshi Jul 2007 B2
7336670 Calhoun Feb 2008 B1
7339914 Bhagwat Mar 2008 B2
7346338 Calhoun Mar 2008 B1
7366894 Kalimuthu Apr 2008 B1
7369489 Bhattacharya May 2008 B1
7370362 Olson May 2008 B2
7440434 Chaskar Oct 2008 B2
7512379 Nguyen Mar 2009 B2
7536723 Bhagwat May 2009 B1
7562384 Huang Jul 2009 B1
7593356 Friday Sep 2009 B1
7656822 AbdelAziz Feb 2010 B1
7706789 Qi Apr 2010 B2
7716370 Devarapalli May 2010 B1
7751393 Chaskar Jul 2010 B2
7768952 Lee Aug 2010 B2
7793104 Zheng Sep 2010 B2
7804808 Bhagwat Sep 2010 B2
7843907 Abou-Emara Nov 2010 B1
7844057 Meier Nov 2010 B2
7856209 Rawat Dec 2010 B1
7921185 Chawla Apr 2011 B2
7949342 Cuffaro May 2011 B2
7961725 Nagarajan Jun 2011 B2
7970894 Patwardhan Jun 2011 B1
8000308 Dietrich Aug 2011 B2
8069483 Matlock Nov 2011 B1
8219688 Wang Jul 2012 B2
8249606 Neophytou Aug 2012 B1
8493918 Karaoguz Jul 2013 B2
8553612 Alexandre Oct 2013 B2
8789191 Bhagwat Jul 2014 B2
8824448 Narayana Sep 2014 B1
8948046 Kang Feb 2015 B2
8953453 Xiao Feb 2015 B1
9003527 Bhagwat Apr 2015 B2
20010006508 Pankaj Jul 2001 A1
20020012320 Ogier Jan 2002 A1
20020021689 Robbins Feb 2002 A1
20020041566 Yang Apr 2002 A1
20020071422 Amicangioli Jun 2002 A1
20020091813 Lamberton Jul 2002 A1
20020114303 Crosbie Aug 2002 A1
20020116463 Hart Aug 2002 A1
20020128984 Mehta Sep 2002 A1
20030005100 Barnard Jan 2003 A1
20030039212 Lloyd Feb 2003 A1
20030084104 Salem May 2003 A1
20030087629 Juitt May 2003 A1
20030104814 Gwon Jun 2003 A1
20030129988 Lee Jul 2003 A1
20030145091 Peng Jul 2003 A1
20030179742 Ogier Sep 2003 A1
20030198207 Lee Oct 2003 A1
20040003285 Whelan Jan 2004 A1
20040013118 Borella Jan 2004 A1
20040022222 Clisham Feb 2004 A1
20040054774 Barber Mar 2004 A1
20040064467 Kola Apr 2004 A1
20040077341 Chandranmenon Apr 2004 A1
20040103282 Meier May 2004 A1
20040109466 Van Ackere Jun 2004 A1
20040162037 Shpak Aug 2004 A1
20040185876 Groenendaal Sep 2004 A1
20040192312 Li Sep 2004 A1
20040196977 Johnson Oct 2004 A1
20040236939 Watanabe Nov 2004 A1
20040255028 Chu Dec 2004 A1
20050053003 Cain Mar 2005 A1
20050074015 Chari Apr 2005 A1
20050085235 Park Apr 2005 A1
20050099983 Nakamura May 2005 A1
20050122946 Won Jun 2005 A1
20050154774 Giaffreda Jul 2005 A1
20050207417 Ogawa Sep 2005 A1
20050259682 Yosef Nov 2005 A1
20050262266 Wiberg Nov 2005 A1
20050265288 Liu Dec 2005 A1
20050266848 Kim Dec 2005 A1
20060010250 Eisl Jan 2006 A1
20060013179 Yamane Jan 2006 A1
20060026289 Lyndersay Feb 2006 A1
20060062250 Payne, III Mar 2006 A1
20060107050 Shih May 2006 A1
20060117018 Christiansen Jun 2006 A1
20060140123 Conner Jun 2006 A1
20060146748 Ng Jul 2006 A1
20060146846 Yarvis Jul 2006 A1
20060165015 Melick Jul 2006 A1
20060187949 Seshan Aug 2006 A1
20060221920 Gopalakrishnan Oct 2006 A1
20060233128 Sood Oct 2006 A1
20060234701 Wang Oct 2006 A1
20060245442 Srikrishna Nov 2006 A1
20060251256 Asokan Nov 2006 A1
20060268802 Faccin Nov 2006 A1
20060294246 Stieglitz Dec 2006 A1
20070004394 Chu Jan 2007 A1
20070010231 Du Jan 2007 A1
20070025274 Rahman Feb 2007 A1
20070025298 Jung Feb 2007 A1
20070030826 Zhang Feb 2007 A1
20070049323 Wang Mar 2007 A1
20070077937 Ramakrishnan Apr 2007 A1
20070078663 Grace Apr 2007 A1
20070082656 Stieglitz Apr 2007 A1
20070087756 Hoffberg Apr 2007 A1
20070091859 Sethi Apr 2007 A1
20070115847 Strutt May 2007 A1
20070116011 Lim May 2007 A1
20070121947 Sood May 2007 A1
20070133407 Choi Jun 2007 A1
20070140191 Kojima Jun 2007 A1
20070150720 Oh Jun 2007 A1
20070153697 Kwan Jul 2007 A1
20070153741 Blanchette Jul 2007 A1
20070156804 Mo Jul 2007 A1
20070160017 Meier Jul 2007 A1
20070171885 Bhagwat Jul 2007 A1
20070192862 Vermeulen Aug 2007 A1
20070195761 Tatar Aug 2007 A1
20070206552 Yaqub Sep 2007 A1
20070247303 Payton Oct 2007 A1
20070248014 Xie Oct 2007 A1
20070249324 Jou Oct 2007 A1
20070263532 Mirtorabi Nov 2007 A1
20070280481 Eastlake Dec 2007 A1
20070288997 Meier Dec 2007 A1
20080002642 Borkar Jan 2008 A1
20080022392 Karpati Jan 2008 A1
20080037552 Dos Remedios Feb 2008 A1
20080080369 Sumioka Apr 2008 A1
20080080377 Sasaki Apr 2008 A1
20080090575 Barak Apr 2008 A1
20080095094 Innami Apr 2008 A1
20080095163 Chen Apr 2008 A1
20080107027 Allan May 2008 A1
20080109879 Bhagwat May 2008 A1
20080130495 Dos Remedios Jun 2008 A1
20080146240 Trudeau Jun 2008 A1
20080151751 Ponnuswamy Jun 2008 A1
20080159128 Shaffer Jul 2008 A1
20080159135 Caram Jul 2008 A1
20080170527 Lundsgaard Jul 2008 A1
20080186932 Do Aug 2008 A1
20080194271 Bedekar Aug 2008 A1
20080207215 Chu Aug 2008 A1
20080209186 Boden Aug 2008 A1
20080212562 Bedekar Sep 2008 A1
20080219286 Ji Sep 2008 A1
20080225857 Lange Sep 2008 A1
20080229095 Kalimuthu Sep 2008 A1
20080240128 Elrod Oct 2008 A1
20080253370 Cremin Oct 2008 A1
20080273520 Kim Nov 2008 A1
20080279161 Stirbu Nov 2008 A1
20090019521 Vasudevan Jan 2009 A1
20090028052 Strater Jan 2009 A1
20090040989 da Costa Feb 2009 A1
20090043901 Mizikovsky Feb 2009 A1
20090082025 Song Mar 2009 A1
20090088152 Orlassino Apr 2009 A1
20090097436 Vasudevan Apr 2009 A1
20090111468 Burgess Apr 2009 A1
20090113018 Thomson Apr 2009 A1
20090141692 Kasslin Jun 2009 A1
20090144740 Gao Jun 2009 A1
20090168645 Tester Jul 2009 A1
20090172151 Davis Jul 2009 A1
20090197597 Kotecha Aug 2009 A1
20090207806 Makela Aug 2009 A1
20090239531 Andreasen Sep 2009 A1
20090240789 Dandabany Sep 2009 A1
20090247170 Balasubramanian Oct 2009 A1
20090257380 Meier Oct 2009 A1
20090303883 Kucharczyk Dec 2009 A1
20090310557 Shinozaki Dec 2009 A1
20100020753 Fulknier Jan 2010 A1
20100046368 Kaempfer Feb 2010 A1
20100057930 DeHaan Mar 2010 A1
20100061234 Pai Mar 2010 A1
20100067379 Zhao Mar 2010 A1
20100094925 St Jacques, Jr. Apr 2010 A1
20100112540 Gross May 2010 A1
20100115278 Shen May 2010 A1
20100115576 Hale May 2010 A1
20100132040 Bhagwat May 2010 A1
20100195585 Horn Aug 2010 A1
20100208614 Harmatos Aug 2010 A1
20100228843 Ok Sep 2010 A1
20100238871 Tosic Sep 2010 A1
20100240313 Kawai Sep 2010 A1
20100254316 Sendrowicz Oct 2010 A1
20100260091 Seok Oct 2010 A1
20100290397 Narayana Nov 2010 A1
20100304738 Lim Dec 2010 A1
20100311420 Reza Dec 2010 A1
20100322217 Jin Dec 2010 A1
20100325720 Etchegoyen Dec 2010 A1
20110004913 Nagarajan Jan 2011 A1
20110040867 Kalbag Feb 2011 A1
20110051677 Jetcheva Mar 2011 A1
20110055326 Michaelis Mar 2011 A1
20110055928 Brindza Mar 2011 A1
20110058524 Hart Mar 2011 A1
20110064065 Nakajima Mar 2011 A1
20110085464 Nordmark Apr 2011 A1
20110182225 Song Jul 2011 A1
20110185231 Balestrieri Jul 2011 A1
20110222484 Pedersen Sep 2011 A1
20110258641 Armstrong Oct 2011 A1
20110292897 Wu Dec 2011 A1
20120014386 Xiong Jan 2012 A1
20120290650 Montuno Nov 2012 A1
20120322435 Erceg Dec 2012 A1
20130003729 Raman Jan 2013 A1
20130003739 Raman Jan 2013 A1
20130003747 Raman Jan 2013 A1
20130028158 Lee Jan 2013 A1
20130059570 Hara Mar 2013 A1
20130086403 Jenne Apr 2013 A1
20130103833 Ringland Apr 2013 A1
20130188539 Han Jul 2013 A1
20130227306 Santos Aug 2013 A1
20130227645 Lim Aug 2013 A1
20130230020 Backes Sep 2013 A1
20130250811 Vasseur Sep 2013 A1
20140269327 Fulknier Sep 2014 A1
20140298467 Bhagwat Oct 2014 A1
20150120864 Unnimadhavan Apr 2015 A1
Foreign Referenced Citations (10)
Number Date Country
1642143 Jul 2005 CN
0940999 Sep 1999 EP
1732276 Dec 2006 EP
1771026 Apr 2007 EP
1490773 Jan 2013 EP
0059251 Oct 2000 WO
0179992 Oct 2001 WO
2004042971 May 2004 WO
2006129287 Dec 2006 WO
2009141016 Nov 2009 WO
Non-Patent Literature Citations (16)
Entry
Z2Z: Discovering ZeroConf Services Beyond Local Link by Jae Woo Lee et al. Departement of Computer Science, Columiba Univerisity New York City—Published in Globecom Workshops , 2007 IEEE Date of Conference Nov. 26-30, 2007 (Year: 2007).
Chirumamilla, Mohan K. et al., “Agent Based Intrustion Detection and Response System for Wireless LANs,” CSE Conference and Workshop Papers, Paper 64, Jan. 1, 2003.
Clausen, T., et al., “Optimized Link State Routing Protocol (OLSR),” Network Working Group, pp. 1-71, Oct. 2003.
Craiger, J. Philip, “802.11, 802.1x, and Wireless Security,” SANS Institute InfoSec Reading Room, Jun. 23, 2002.
Finlayson, Ross et al., “A Reverse Address Resolution Protocol,” Nework Working Group, Request for Comments: 903 (RFC 903), Jun. 1984.
He, Changhua et al., “Analysis of the 802.11i 4-Way Handshake,” Proceedings of the 3rd ACM Workshop on Wireless Security, pp. 43-50, Oct. 2004.
IEEE Computer Society, “IEEE Std 802.11i—Part 11: Wireless LAN Medium Access Control (MAC) and Physical Layer (PHY) Specifications—Amendment 6: Medium Access Control (MAC) Security Enhancements,” Section H.4.1, pp. 165-166, Jul. 23, 2014.
Lee, Jae Woo et al, “z2z: Discovering Zeroconf Services Beyond Local Link,” 2007 IEEE Globecom Workshops, pp. 1-7, Nov. 26, 2007.
Perkins, C., et al., “Ad hoc On-Demand Distance Vector (AODV) Routing,” Network Working Group, pp. 1-35, Oct. 2003.
Wu, Haitao et al., “Layer 2.5 SoftMAC: End-System Based Media Streaming Support on Home Networks,” IEEE Global Telecommunications Conference (GLOBECOM '05), vol. 1, pp. 235-239, Nov. 2005.
European Patent Application No. 11823931.8, Search Report dated Aug. 29, 2016.
European Patent Application No. 12879114.2, Search Report dated Jan. 21, 2016.
International Application No. PCT/US2008/061674, International Search Report and Written Opinion dated Oct. 14, 2008.
International Application No. PCT/US2011/047591, International Search Report and Written Opinion dated Dec. 19, 2011.
International Application No. PCT/US2012/059093, International Search Report and Written Opinion dated Jan. 4, 2013.
Cisco Systems, Inc., “Wi-Fi Protected Access 2 (WPA 2) Configuration Example,” Document ID 67134, Jan. 21, 2008 [retrieved online at https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/67134-wpa2-config.html on Dec. 4, 2018].
Related Publications (1)
Number Date Country
20190044822 A1 Feb 2019 US
Continuations (1)
Number Date Country
Parent 13286121 Oct 2011 US
Child 16150221 US