Centripetal Networks, LLC v. Keysight Technologies, Inc.

Court of Appeals for the Federal Circuit·Decided April 23, 2026·No. 24-1406·Unpublished

Opinion

Case: 24-1406 Document: 63 Page: 1 Filed: 04/23/2026

NOTE: This disposition is nonprecedential.

United States Court of Appeals for the Federal Circuit ______________________

CENTRIPETAL NETWORKS, LLC, Appellant

v.

KEYSIGHT TECHNOLOGIES, INC., Cross-Appellant ______________________

2024-1406, 2024-1473 ______________________

Appeals from the United States Patent and Trademark Office, Patent Trial and Appeal Board in No. IPR2022- 01097. ______________________

Decided: April 23, 2026 ______________________

JEFFREY B. WALL, Sullivan & Cromwell LLP, Washing- ton, DC, argued for appellant. Also represented by DANIEL J. RICHARDSON; ANDREI IANCU, Los Angeles, CA; LAURIE STEMPLER, New York, NY; JAMES R. HANNAH, Herbert Smith Freehills Kramer (US) LLP, Redwood Shores, CA.

GERARD M. DONOVAN, Reed Smith LLP, Washington, DC, argued for cross-appellant. Also represented by JAMES CHRISTOPHER MARTIN, Pittsburgh, PA; JONAH D. MITCHELL, San Francisco, CA. Case: 24-1406 Document: 63 Page: 2 Filed: 04/23/2026

______________________

Before PROST, WALLACH, and STARK, Circuit Judges. WALLACH, Circuit Judge. Based on a petition filed by Keysight Technologies, Inc. (“Keysight”), the United States Patent and Trademark Office’s Patent Trial and Appeal Board (“the Board”) instituted inter partes review of claims 1–20 of U.S. Patent No. 10,193,917 (“the ’917 Patent”). The Board found claims 1–3, 5–13, and 15–20 unpatentable for obviousness. J.A. 50. The Board found claims 4 and 14 not unpatentable for obviousness. J.A. 50. Centripetal Networks, LLC (“Centripetal”), appeals the Board’s obviousness determinations as to claims 1–3, 5–13, and 15–20, and Keysight cross-appeals the Board’s non-obviousness determination as to claims 4 and 14. We have jurisdiction under 28 U.S.C. § 1295(a)(4)(A). We affirm as to claims 1– 3, 5–13, and 15–20 and we reverse as to claims 4 and 14. BACKGROUND I. The ’917 Patent Titled “Rule-Based Network-Threat Detection,” the ’917 Patent discloses a “packet-filtering device” that receives network packets and determines whether they correspond to criteria specified by a “packet-filtering rule.” ’917 Patent (Abstract). The packet-filtering rule criteria may correspond to one or more “network threat indicators.” Id. The packet-filtering device applies an operator, specified by the packet-filtering rule, that allows it to either prevent or permit the packet to continue forward to its destination. Id. “The packet-filtering device may generate a log entry comprising information from the packet-filtering rule that identifies the one or more network-threat indicators and indicating whether the packet-filtering device prevented the packet from continuing toward its destination or allowed the packet to Case: 24-1406 Document: 63 Page: 3 Filed: 04/23/2026

CENTRIPETAL NETWORKS, LLC v. 3 KEYSIGHT TECHNOLOGIES, INC.

continue toward its destination.” Id. The packet-filtering device generates two types of log data—“packet log” data and “flow log” data. Id. at col. 6, ll. 29–32. Figure 3F of the ’917 Patent “depict[s] an illustrative event sequence for rule-based network-threat detection in accordance with one or more aspects of the disclosure.” Id. at col. 2, ll. 28–29.

Id. at FIG. 3F. As the ’917 Patent explains: At step 64, three packets destined for host 112 and three packets destined for host 114 are communicated by threat host 140, and packet- filtering device 144 may receive each of the six packets, apply one or more of packet-filtering rules 218 to the [six] packets, determine that each of the [six] packets corresponds to criteria specified by a packet-filtering rule of packet-filtering rules 404 (e.g., Rule: TI001), apply an operator specified by the packet-filtering rule (e.g., the BLOCK operator) to each of the six packets, prevent each of the six packets from continuing toward its respective Case: 24-1406 Document: 63 Page: 4 Filed: 04/23/2026

destination, and generate log data for each of the six packets. Id. at col. 15 ll. 19–29. At step 65, the packet-filtering device generates packet log entries (92 to 97) in packet log 502 for each of the six packets received in step 64. Id. at col. 15, ll. 33–35. This can be seen below in Figure 5F.

Id. at FIG. 5F. At step 67, the packet-filtering device continues to process the log data generated in step 64. Id. at col. 15, ll. 53–54. Referring to Figure 5G below, the packet-filtering device modifies an entry in flow log 504 for the packets received in step 64 based on the entries generated in the packet log (e.g., step 65), id. at col. 15, ll. 55–58, specifically, the “entry corresponding to Threat ID: Threat_1 (e.g., the time range and the count of associated packets prevented by packet-filtering device 144 from continuing toward their respective destinations).” Id. at col. 15, ll. 59–62. Case: 24-1406 Document: 63 Page: 5 Filed: 04/23/2026

CENTRIPETAL NETWORKS, LLC v. 5 KEYSIGHT TECHNOLOGIES, INC.

Id. at FIG. 5G. Finally, at step 68, the packet-filtering device utilizes flow log 504 to generate data comprising an update for interface 600 and communicates the data to host 110. Id. at col. 15, ll. 63–65. Referring to Figure 6G below, the update causes interface 600 to update the entry in listing 606 associated with Threat ID: Threat_1 to reflect the six packets received in step 64 and a new score (e.g., 6). Id. at col. 15, l. 65–col. 16, l. 2.

Id. at FIG. 6G. Case: 24-1406 Document: 63 Page: 6 Filed: 04/23/2026

Claim 1 is representative of the ’917 Patent claims at issue1 and recites: 1. A method comprising: receiving, by a packet-filtering device, a plurality of packets; responsive to a determination by the packet- filtering device that a first packet of the plurality of packets corresponds to one or more packet- filtering rules: applying, by the packet-filtering device and to the first packet, an operator specified by a corresponding packet-filtering rule and configured to cause the packet-filtering device to either prevent the first packet from continuing toward a destination of the first packet or allow the first packet to continue toward the destination of the first packet; and generating, by the packet-filtering device, a packet log entry comprising at least one threat identifier corresponding to the first packet and data indicating whether the packet-filtering device prevented the first packet from continuing toward the destination of the first packet or allowed the packet to continue toward the destination of the first packet; updating, by the packet-filtering device and based on the packet log entry, a packet flow entry, corresponding to the generated packet log entry, of packet flow analysis

1 See Appellant Br. at Cover, Cross-Appellant Br. at Cover. Case: 24-1406 Document: 63 Page: 7 Filed: 04/23/2026

CENTRIPETAL NETWORKS, LLC v. 7 KEYSIGHT TECHNOLOGIES, INC.

data for a plurality of packet flow entries, and wherein each packet flow entry consolidates a plurality of packet log entries corresponding to a common threat identifier; communicating, by the packet-filtering device and to a computing device, the packet flow analysis data; and causing, based on the communicated packet flow analysis data, display of at least a portion of the packet flow analysis data, wherein the packet flow analysis data comprises at least one threat identifier corresponding to each of the plurality of logged packets, packet time data for packets corresponding to the packet flow entry, and data indicating whether the packet-filtering device prevented packets from continuing toward a respective destination or allowed packets to continue toward the respective destination. Id. at Claim 1. II.

Free access — add to your briefcase to read the full text and ask questions with AI

Centripetal Networks, LLC v. Keysight Technologies, Inc., (Fed. Cir. 2026).

Centripetal Networks, LLC v. Keysight Technologies, Inc. (Centripetal Networks, LLC v. Keysight Technologies, Inc.) — published by Counsel Stack Legal Research, free access to 12M+ legal documents.

Related

Consolo v. Federal Maritime Commission
383 U.S. 607 (Supreme Court, 1966)
Oatey Co. v. IPS CORP.
514 F.3d 1271 (Federal Circuit, 2008)
In Re Werner Kotzab
217 F.3d 1365 (Federal Circuit, 2000)
In Re: Nuvasive, Inc.
842 F.3d 1376 (Federal Circuit, 2016)
Owens Corning v. Fast Felt Corporation
873 F.3d 896 (Federal Circuit, 2017)
Personalized Media v. Apple Inc.
952 F.3d 1336 (Federal Circuit, 2020)
Roku, Inc. v. Universal Electronics, Inc.
63 F.4th 1319 (Federal Circuit, 2023)
Promptu Systems Corporation v. Comcast Corporation
92 F.4th 1372 (Federal Circuit, 2024)
Google LLC v. Ecofactor, Inc.
92 F.4th 1049 (Federal Circuit, 2024)
Alivecor, Inc. v. Apple Inc.
130 F.4th 1006 (Federal Circuit, 2025)