Inventor

Radia J. Perlman

Inventor
Acton, MA, US

Overview

142→
Patents
1989–2021
Patent span
Electricity
Primary field (CPC H)

Patents· 142 as inventor

Public. Assignee & technology derived from the patent record. Each patent links to its LexDana page.

H04Lprimary
H04LTransmission of digital information, e.g. telegraphic communication74%
G06FElectric digital data processing15%
H04QSelecting4%
G06QInformation and communication technology [ict] specially adapted for administrative, commercial, financial, managerial or supervisory purposes2%
Y02DClimate change mitigation technologies in information and communication technologies [ict], i.e. information and communication technologies aiming at the reduction of their own energy use2%
G07FCoin-freed or like apparatus1%
H04WWireless communication networks1%
Y02BClimate change mitigation technologies related to buildings, e.g. housing, house appliances or related end-user applications1%
Y10STechnical subjects covered by former uspc cross-reference art collections [xracs] and digests1%
PatentTitleYear
11,128,460Client-side encryption supporting deduplication across single or multiple tenants in a storage system202111,063,884Ethernet enhancements202111,042,629Preventing malicious lockout of user accounts202111,018,859Deduplication of client encrypted data202111,019,033Trust domain secure enclaves in cloud infrastructure202111,012,541Resilient TCP connection system202110,819,700Client-side user authentication control based on stored history of incorrect passwords202010,791,058Hierarchical enforcement of service flow quotas202010,764,068Computer system employing challenge/response protocol with detection of non-unique incorrect responses202010,756,904Efficient and secure distributed ledger maintenance202010,404,625Ethernet enhancements201910,394,646Incremental data validation201910,298,551Privacy-preserving policy enforcement for messaging201910,284,534Storage system with controller key wrapping of data encryption key in metadata of stored data item201910,205,667Credit flow control for ethernet201910,063,372Generating pre-encrypted keys201810,007,809Fine-grained self-shredding data in a secure communication ecosystem20189,923,677'Multiplexing many client streams over a single connection'20189,917,891'Distributed in-order load spreading resilient to topology changes'20189,906,361'Storage system with master key hierarchy configured for efficient shredding of stored encrypted data items'20189,779,269'Storage system comprising per-tenant encryption keys supporting deduplication across multiple tenants'20179,716,660'Hierarchical enforcement of service flow quotas'20179,674,098'Credit flow control for ethernet'20179,659,190'Storage system configured for encryption of data items using multidimensional keys having corresponding class keys'20179,607,011'Time-shifting image service'20179,577,791'Notification by network element of packet drops'20179,559,953'Path splitting with a connection-oriented network'20179,189,642'Safe processing of on-demand delete requests'20159,141,171'Network routing protocol power saving method for network elements'20159,088,511'Multi-hop error recovery'20158,989,017'Network congestion management by packet circulation'20158,908,526'Controlled interconnection of networks using virtual nodes'20148,635,284'Method and apparatus for defending against denial of service attacks'20148,538,014'Fast computation of one-way hash sequences'20138,488,782'Parameterizable cryptography'20138,315,395'Nearly-stateless key escrow service'20128,200,964'Method and apparatus for accessing an encrypted file system using non-local keys'20128,150,038'Revocation of a system administrator in an encrypted file system'20128,006,285'Dynamic defense of network attacks'20117,874,010'Method and apparatus for using secret keys to make data permanently unreadable'20117,814,318'Scalable file system configured to make files permanently unreadable'20107,770,213'Method and apparatus for securely forgetting secrets'20107,760,722'Router based defense against denial of service attacks using dynamic feedback from attacked host'20107,660,423'Method and apparatus for maintaining ephemeral keys in limited space'20107,596,696'Efficiently managing keys to make data permanently unreadable'20097,409,545'Ephemeral decryption utilizing binding functions'20087,398,322'System using routing bridges to transparently interconnect multiple network links to form a single virtual network link'20087,395,549'Method and apparatus for providing a key distribution center without storing long-term server secrets'20087,363,499'Blinded encryption and decryption'20087,339,900'Method and apparatus for preventing spanning tree loops during traffic overload conditions'20087,213,262'Method and system for proving membership in a nested group using chains of credentials'20077,178,021'Method and apparatus for using non-secure file servers for secure information storage'20077,152,113'Efficient system and method of node and link insertion for deadlock-free routing on arbitrary topologies'20067,096,251'Calculation of layered routes in a distributed manner'20067,085,925'Trust ratings in group credentials'20067,068,595'Method and apparatus for facilitating instant failover during packet routing'20067,058,798'Method ans system for pro-active credential refreshing'20067,054,905'Replacing an email attachment with an address specifying where the attachment is stored'20067,016,499'Secure ephemeral decryptability'20066,996,712'Data authentication system employing encrypted integrity blocks'20066,992,988'System and method for deadlock-free routing on arbitrary network topologies'20066,975,729'Method and apparatus for facilitating use of a pre-shared secret key with identity hiding'20056,912,205'Autoconfiguring IP routers'20056,912,656'Method and apparatus for sending encrypted electronic mail through a distribution list exploder'20056,901,076'Dynamic LAN boundaries'20056,898,187'Automatic selection of unique node identifiers in a distributed routing environment'20056,883,100'Method and system for dynamic issuance of group certificates'20056,804,779'Hierarchical watermarking of content that is distributed via a network'20046,801,998'Method and apparatus for presenting anonymous group names'20046,788,680'Defferrable processing option for fast path forwarding'20046,768,740'Coordinating loop-free forwarding table updates'20046,757,843'Method and apparatus for using ranking to select repair nodes in formation of a dynamic tree for multicast repair'20046,658,565'Distributed filtering and monitoring system for a computer internetwork'20036,658,004'Use of beacon message in a network for classifying and discarding messages'20036,636,838'Content screening with end-to-end encryption'20036,590,895'Adaptive retransmission for error control in computer networks'20036,580,722'Bypassing topological restrictions with tunnels'20036,567,410'Assigning multiple parallel bridge numbers to bridges having three or more ports'20036,560,705'Content screening with end-to-end encryption prior to reaching a destination'20036,546,486'Content screening with end-to-end encryption within a firewall'20036,526,055'Method and apparatus for longest prefix address lookup'20036,526,022'Detecting congestion by comparing successive loss of packets in windows to provide congestion control in reliable multicast protocol'20036,510,523'Method and system for providing limited access privileges with an untrusted terminal'20036,507,562'DYNAMIC OPTIMIZATION FOR RECEIVERS USING DISTANCE BETWEEN A REPAIR HEAD AND A MEMBER STATION IN A REPAIR GROUP FOR RECEIVERS HAVING A CLOSELY KNIT TOPOLOGICAL ARRANGEMENT TO LOCATE REPAIR HEADS NEAR THE MEMBER STATIONS WHICH THEY SERVE IN TREE BASED REPAIR IN RELIABLE MULTICAST PROTOCOL'20036,505,253'Multiple ACK windows providing congestion control in reliable multicast protocol'20036,473,431'System and method facilitating determination by router nodes in a network of ranges of addresses for which each router node is responsible'20026,445,710'Method and apparatus for transparently bridging traffic across wide area networks'20026,389,532'Method and apparatus for using digital signatures to filter packets in a network'20026,363,480'Ephemeral decryptability'20026,275,859'Tree-based reliable multicast system where sessions are established by repair nodes that authenticate receiver nodes presenting participation certificates granted by a central authority'20016,263,434'Signed group criteria'20016,230,266'Authentication system and process'20016,185,698'Method and apparatus using ranking to select repair nodes in formation of a dynamic tree for multicast repair'20016,173,400'Methods and systems for establishing a shared secret using an authentication token'20016,134,599'System and method for organizing devices in a network into a tree using suitability values'20006,131,123'Efficient message distribution to subsets of large computer networks using multicast for near nodes and unicast for far nodes'20006,104,695'Repair TTL computation and correction mechanism to perform localized repairs in a multicast data distribution setup/framework'20006,094,525'Network addressing arrangement for backward compatible routing of an expanded address space'20006,055,316'System and method for deriving an appropriate initialization vector for secure communications'20005,983,223'Method and apparatus for determining a longest matching prefix from a dictionary of prefixes'19995,956,335'Many to few group address translation through a network bridge'19995,901,227'Method and apparatus for implementing partial and complete optional key escrow'19995,892,828'User presence verification with single password across applications'19995,870,386'Method and apparatus for transparently bridging traffic across wide area networks'19995,856,974'Internetwork address mapping gateway'19995,844,902'Assigning multiple parallel bridge numbers to bridges'19985,805,818'System for acknowledging availability of neighbor node using data packet containing data that is ordinarily fowarded to neighbor node'19985,796,740'Router using multiple hop redirect messages to enable bridge like data forwarding'19985,781,534'Method and apparatus for determining characteristics of a path'19985,742,820'Mechanism for efficiently synchronizing information over a network'19985,687,235'Certificate revocation performance optimization'19975,596,574'Method and apparatus for synchronizing data transmission with on-demand links of a network'19975,574,860'Method of neighbor discovery over a multiaccess nonbroadcast medium'19965,557,745'Method for supporting foreign protocols across backbone network by combining and transmitting list of destinations that support second protocol in first and second areas to the third area'19965,511,168'Virtual circuit manager for multicast messaging'19965,500,860'Router using multiple hop redirect messages to enable bridge like data forwarding'19965,483,598'Message encryption using a hash function'19965,475,763'Method of deriving a per-message signature for a DSS or El Gamal encryption system'19955,455,865'Robust packet routing over a distributed network containing malicious failures'19955,450,407'Encapsulation of an address within a forwarded frame in a computer communications system'19955,434,864'Encapsulation of an address within a forwarded frame in a computer communications system'19955,434,855'Method and apparatus for selective interleaving in a cell-switched network'19955,428,615'Many to few group address translation through a network bridge'19955,420,862'Router using remote address resolution to enable bridge like data forwarding'19955,418,781'Architecture for maintaining the sequence of packet cells transmitted over a multicast, cell-switched network'19955,400,333'Detecting LAN number misconfiguration'19955,398,242'Automatically configuring LAN numbers'19955,351,295'Secure method of neighbor discovery over a multiaccess medium'19945,327,424'Automatically configuring parallel bridge numbers'19945,323,394'Selecting optimal routes in source routing bridging without exponential flooding of explorer packets'19945,321,693'Multicast address in a local area network where the local area network has inadequate multicast addressing capability'19945,313,465'Method of merging networks across a common backbone network'19945,309,437'Bridge-like internet protocol router'19945,261,002'Method of issuance and revocation of certificates of authenticity used in public key networks and other systems'19935,251,205'Multiple protocol routing'19935,243,592'Method and apparatus for distance vector routing on datagram point-to-point links'19935,175,765'Robust data broadcast over a distributed network with malicious failures'19925,150,360'Utilization of redundant links in bridged networks'19925,128,926'Updating link state information in networks'19925,086,428'Reliable broadcast of information in a wide area network'19925,079,767'Method of multicast message distribution'19924,864,559'Method of multicast message distribution'1989

Career & activity timeline

Assembled from patent assignee/location history and declaration credentials.

1989–1999Patents assigned to DIGITAL EQUIPMENT CORP (28)· patent assignee history
1989–2008Based in Acton, MA, US· patent location history
2000–2010Patents assigned to SUN MICROSYSTEMS INC (53)· patent assignee history
2005–2015Based in Sammamish, WA, US· patent location history
2006Based in Carlisle, MA, US· patent location history
2010–2015Patents assigned to ORACLE AMERICA INC (11)· patent assignee history
2013–2021Based in Redmond, WA, US· patent location history
2014–2021Patents assigned to INTEL CORP (15)· patent assignee history
2017–2021Patents assigned to EMC IP HOLDING CO LLC (15)· patent assignee history
2018Based in Hopkinton, MA, US· patent location history

Inventor activity

Assignee and location history derived from the patent record.

Assignees
AssigneePatentsSpan
SUN MICROSYSTEMS INC532000–2010
DIGITAL EQUIPMENT CORP281989–1999
EMC IP HOLDING CO LLC152017–2021
INTEL CORP152014–2021
ORACLE AMERICA INC112010–2015
Locations
LocationPatentsSpan
Acton, Massachusetts, US871989–2008
Redmond, Washington, US312013–2021
Sammamish, Washington, US182005–2015
Carlisle, Massachusetts, US32006
Hopkinton, Massachusetts, US12018