.png)
180 Park Ave - Building 103
Florham Park, NJ
http://www.research.att.com/~kobus
I am a networking systems researcher with a broad interest in all aspects of networking including network management, control and operation, network evolution, network security, content distribution and cloud computing.
AT&T Science & Technology Medal, 2009.
For technical innovation and leadership in furthering AT&T's competitive edge by creating and deploying intelligent network controls for AT&T's IP/MPLS networks.
Method, System, And Device For Sending Data In A Cable Data Service,
Tue Aug 02 16:05:50 EDT 2011
A method of sending data from a transmit site to a receive device includes dividing a first transmit data stream having a first bit rate into multiple data streams with each of the multiple data streams having a bit rate that is lower than the first bit rate. Each of the multiple data streams is transmitted over a cable network having multiple radio frequency channels. The multiple data streams are recombined at the receive device to provide a receive data stream having a bit rate equal to the first bit rate. A second transmit data stream is transmitted over one of the radio frequency channels to a legacy user connected to the one radio frequency channel between the transmit site and the receive device.
Automated Disambiguation Of Fixed-Serverport-Based Applications From Ephemeral Applications,
Tue Jul 05 16:05:40 EDT 2011
Provided are methods for partitioning communication data in a network and disambiguating fixed or non-ephemeral communication data from ephemeral communication data and services. In one example, kmeans data clustering is used to partition or cluster server ports based on a location of the server ports in a 2-dimensional space. The location of the server ports may be based on a number of connections per server port and the number of servers using that port.
Method For Applying Macro-Controls Onto IP Networks Using Intelligent Route Indexing,
Tue Mar 29 16:04:43 EDT 2011
Systems and methods are described that manage routing information in an IP network using extensible indexing and use the indexing to control the network. The indexing and associated controls apply to any router within the routing domain.
Intelligent Computer Network Routing Using Logically Centralized, Physically Distributed Servers Distinct Form Network Routers,
Tue Mar 08 16:04:36 EST 2011
A route control architecture allows a network operator to flexibly control routing between the traffic ingresses and egresses in a computer network, without modifying existing routers. An intelligent route service control point (IRSCP) replaces distributed BGP decision processes of conventional network routers with a route computation that is flexible and logically centralized but physically distributed. One embodiment supplements the traditional BGP decision process with a ranking decision process that allows route-control applications to explicitly rank traffic egresses on a per-destination, per-router basis. A straightforward set of correctness requirements prevents routing anomalies in implementations that are scalable and fault-tolerant.
System And Method For Avoiding And Mitigating A DDoS Attack,
Tue Sep 14 15:04:46 EDT 2010
Described is a system and method for receiving a data packet including a destination address and a source address, the data packet corresponding to a port number, assigning an address risk value for the data packet based on the source address and a port risk value for the data packet based on the port number. The data packet is categorized into a community based on the source address, wherein the community is predefined by a user corresponding to the destination address, the community includes a utility value. The address risk value and the port risk value are compared to the utility value to yield a benefit coefficient and the data packet is treated based on the benefit coefficient.
Unifying Web Hosting And Content Distribution System And Method For Assuring Predetermined Performance Levels,
Tue Feb 02 15:03:25 EST 2010
A service model, integrated system, and method for enabling a service provider to deliver an integrated web hosting and content distribution service offering, which affords assured operational performance service levels, regardless of whether the customer's web site is served by the service provider's hosting center, the service provider's content distribution network (CDN), by a third party web host, or by a third party CDN. A monitoring system of the primary service provider receives detailed capacity and health statistics from any CDN under the operational control of the primary service provider, receives aggregate capacity and health statistics from other CDNs not under the operational control of the primary service provider. A redirection system then decides to which web host, content distribution network, or combination thereof, user requests for content are directed in order that operational performance service levels are maintained.
Virtual private network,
Tue Mar 27 17:08:41 EDT 2007
The invention provides apparatus and methods for a Virtual Private Network (VPN) in a network that offers a simple user interface for efficient utilization of network resources. The VPN is defined for a specified set of endpoints each of which is associated with a single hose. A hose provides access to the VPN through an access point which may be a node of the network, for example. The hose is a single interface to the VPN for communication to all other endpoints of the VPN. The VPN achieves network resource allocation efficiency by exploiting resource sharing possibilities via multiplexing routing paths between endpoints and dynamic resource allocation techniques that permit real time resource allocation resizing. When a VPN is established with a VPN service provider, the routing paths between the endpoints of the VPN is optimized for multiplexing opportunities so that resource allocations between nodes along routing paths within the IP network is reduced to a minimum.
Cable data service method,
Tue Jan 31 17:08:41 EST 2006
A method for sending data from a transmit site to a receive site which includes dividing a transmit data stream having a first bit rate into multiple data streams with each of the multiple data streams having a bit rate which is lower than the first bit rate, transmitting each of the multiple data streams over a plurality of RF channels and recombining the multiple data streams at the receive site to provide a receive data stream having a bit rate equal to the first bit rate.
Transmit and receive system for cable data service,
Tue Jan 31 17:08:40 EST 2006
A transmit and receive system for transmitting data between a transmit site and a receive site. The system includes a tunnel source, router and modulator for dividing a transmit data stream having a first bit rate into multiple data streams with each of the multiple data streams having a bit rate which is lower than the first bit rate, transmitting each of the multiple data streams over a plurality of RF channels. The system further includes a demodulator and destination source for recombining the multiple data streams at the receive site to provide a receive data stream having a bit rate equal to the first bit rate.
Method For Content-Aware Redirection And Content Renaming,
Tue Oct 11 17:08:40 EDT 2005
The present invention is directed to mechanisms for content-aware redirection and content exchange/content discovery that permit a request for content to be redirected to a particular advantageous server that can serve the content.
Virtual Private Network,
Tue Jun 28 17:08:39 EDT 2005
The invention provides apparatus and methods for a Virtual Private Network (VPN) in a network that offers a simple user interface for efficient utilization of network resources. The VPN is defined for a specified set of endpoints each of which is associated with a single hose. A hose provides access to the VPN through an access point which may be a node of the network, for example. The hose is a single interface to the VPN for communication to all other endpoints of the VPN. The VPN achieves network resource allocation efficiency by exploiting resource sharing possibilities via multiplexing routing paths between endpoints and dynamic resource allocation techniques that permit real time resource allocation resizing. When a VPN is established with a VPN service provider, the routing paths between the endpoints of the VPN is optimized for multiplexing opportunities so that resource allocations between nodes along routing paths within the IP network is reduced to a minimum.