Search

Yuming Ming Mao

from Saratoga, CA
Age ~57

Yuming Mao Phones & Addresses

  • 20800 Wardell Rd, Saratoga, CA 95070
  • 249 Oakhurst Way, Milpitas, CA 95035 (408) 942-7213
  • Mountain View, CA
  • Stanford, CA
  • Philadelphia, PA
  • Santa Clara, CA
  • Sunnyvale, CA

Work

Company: Palo alto networks Feb 2006 Position: Chief architect and founder

Education

Degree: Master of Science, Masters School / High School: Stanford University 1994 to 1995 Specialities: Computer Science

Skills

Network Security • Security

Industries

Computer & Network Security

Resumes

Resumes

Yuming Mao Photo 1

Chief Architect And Founder

View page
Location:
249 Oakhurst Way, Milpitas, CA 95035
Industry:
Computer & Network Security
Work:
Palo Alto Networks
Chief Architect and Founder

Juniper Networks Apr 2004 - Feb 2006
De and Chief Architect

Netscreen Technologies Nov 1997 - Apr 2004
Chief Architect
Education:
Stanford University 1994 - 1995
Master of Science, Masters, Computer Science
Skills:
Network Security
Security

Publications

Us Patents

Internet Security System

View page
US Patent:
7093280, Aug 15, 2006
Filed:
Sep 27, 2001
Appl. No.:
09/967893
Inventors:
Yan Ke - San Jose CA, US
Yuming Mao - Milpitas CA, US
Wilson Xu - Cupertino CA, US
Brian Yean-Shiang Leu - San Jose CA, US
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
H04L 9/32
G06F 17/00
US Classification:
726 3, 726 1, 726 11, 726 13, 726 15
Abstract:
Methods and apparatus, including computer program products, implementing and using techniques for processing a data packet in a packet forwarding device. A data packet is received. A virtual local area network destination is determined for the received data packet, and a set of rules associated with the virtual local area network destination is identified. The rules are applied to the data packet. If a virtual local area network destination has been determined for the received data packet, the data packet is output to the destination, using the result from the application of the rules. If no destination has been determined, the data packet is dropped. A security system for partitioning security system resources into a plurality of separate security domains that are configurable to enforce one or more policies and to allocate security system resources to the one or more security domains, is also described.

Internet Security Device And Method

View page
US Patent:
7095716, Aug 22, 2006
Filed:
Mar 28, 2002
Appl. No.:
10/112924
Inventors:
Yan Ke - San Jose CA, US
Yuming Mao - Milpitas CA, US
Jian Tong - San Jose CA, US
Guangsong Huang - Sunnyvale CA, US
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
H04J 1/16
US Classification:
370230, 370396
Abstract:
Methods and apparatus, including computer program products, implementing and using techniques for processing a data packet. An input port receives a data packet, a switching board classifies the data packet, determines whether the data packet should be accepted, and switches the data packet to a management board if the data packet is a first data packet in a session, and to a processing board if the data packet is not a first data packet in a session. A management board receives a data packet from the switching board, examines the data packet and forwards the data packet to one of the processing boards. One or more processing boards receives non-first data packets from the switching board and data packets from the management board and processes the data packets. A firewall and a secure gateway with firewall and virtual private network functionality for processing a data packet are also described.

Method, Apparatus And Computer Program Product For A Network Firewall

View page
US Patent:
7107612, Sep 12, 2006
Filed:
Jul 19, 2004
Appl. No.:
10/893283
Inventors:
Ken Xie - Atherton CA, US
Yan Ke - San Jose CA, US
Yuming Mao - Milpitas CA, US
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
G06F 7/04
G06F 9/00
US Classification:
726 13, 726 14, 726 6, 726 7
Abstract:
An improved firewall for providing network security is described. The improved firewall provides for dynamic rule generation, as well using conventional fixed rules. This improvement is provided without significant increase in the processing time required for most packets. Additionally, the improved firewall provides for translation of IP addresses between the firewall and the internal network.

Internet Security Device And Method

View page
US Patent:
7602775, Oct 13, 2009
Filed:
Jun 30, 2006
Appl. No.:
11/428235
Inventors:
Yan Ke - San Jose CA, US
Yuming Mao - Milpitas CA, US
Jian Tong - San Jose CA, US
Guangsong Huang - Sunnyvale CA, US
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
H04Q 11/00
US Classification:
370386, 370389
Abstract:
A device described herein may include an input port operable to receive data packets; a switching board operable to classify the data packets, determine whether the data packets should be accepted by the device, and determine whether received data packets are first data packets in a session; a management board operable to receive the data packets from the switching board that were determined by the switching board to be the first data packets in a session; and one or more processing boards operable to receive data packets from the switching board that were determined by the switching board to not be the first data packets in a session and to process the received data packets.

Method, Apparatus And Computer Program Product For A Network Firewall

View page
US Patent:
7774836, Aug 10, 2010
Filed:
Aug 2, 2006
Appl. No.:
11/461798
Inventors:
Ken Xie - Atherton CA, US
Yan Ke - San Jose CA, US
Yuming Mao - Milpitas CA, US
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
G06F 9/00
G06F 17/00
US Classification:
726 13, 726 14
Abstract:
An improved firewall for providing network security is described. The improved firewall provides for dynamic rule generation, as well using conventional fixed rules. This improvement is provided without significant increase in the processing time required for most packets. Additionally, the improved firewall provides for translation of IP addresses between the firewall and the internal network.

Method, Apparatus And Computer Program Product For A Network Firewall

View page
US Patent:
7823195, Oct 26, 2010
Filed:
Aug 20, 2007
Appl. No.:
11/842018
Inventors:
Ken Xie - Atherton CA, US
Yan Ke - San Jose CA, US
Yuming Mao - Milpitas CA, US
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
H04L 29/06
G06F 17/00
G06F 15/16
US Classification:
726 13, 726 11, 713153
Abstract:
An improved firewall for providing network security is described. The improved firewall provides for dynamic rule generation, as well using conventional fixed rules. This improvement is provided without significant increase in the processing time required for most packets. Additionally, the improved firewall provides for translation of IP addresses between the firewall and the internal network.

Network Security Device And Method

View page
US Patent:
8068487, Nov 29, 2011
Filed:
Aug 31, 2009
Appl. No.:
12/551034
Inventors:
Yan Ke - San Jose CA, US
Yuming Mao - Milpitas CA, US
Jian Tong - San Jose CA, US
Guangsong Huang - Sunnyvale CA, US
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
H04L 12/28
US Classification:
370389, 37039552, 370412, 370419
Abstract:
A device described herein may include an input port operable to receive data packets; a switching board operable to classify the data packets, determine whether the data packets should be accepted by the device, and determine whether received data packets are first data packets in a session; a management board operable to receive the data packets from the switching board that were determined by the switching board to be the first data packets in a session; and one or more processing boards operable to receive data packets from the switching board that were determined by the switching board to not be the first data packets in a session and to process the received data packets.

L2/L3 Multi-Mode Switch Including Policy Processing

View page
US Patent:
8594085, Nov 26, 2013
Filed:
Apr 11, 2007
Appl. No.:
11/734198
Inventors:
Nir Zuk - Palo Alto CA, US
Yuming Mao - Milpitas CA, US
Haoying Xu - San Jose CA, US
Arnit Green - Redwood City CA, US
Assignee:
Palo Alto Networks, Inc. - Santa Clara CA
International Classification:
H04L 12/28
US Classification:
370389, 370230, 370235
Abstract:
Methods and apparatus for processing data packets in a computer network are described. One general method includes receiving a data packet; examining the data packet to classify the data packet including classifying the data packet as a L2 or L3 packet and including determining at least one zone associated with the packet; processing the packet in accordance with one or more policies associated with the zone; determining forwarding information associated with the data packet; and if one or more policies permit, forwarding the data packet toward an intended destination using the forwarding information.
Yuming Ming Mao from Saratoga, CA, age ~57 Get Report