摘要:
The present invention proposes a method for controlling the uplink transmission of the multicast IP packet sourced from the UE in field of IP packet transmission in access network. According to the technical solution of the present invention, the access devices receives IP packet from the UE, checks the IP packet and determines whether the IP packet is multicast IP packet that is allowed to be accessed. If the access device determines that the IP packet is multicast IP packet that is allowed to be accessed, then it sends the multicast IP packet in multicast form. Via the present invention, the access device can allow the uplink valid multicast IP packet to pass, preferably, determines and intercepts the malicious attacks via multicast IP packet, so as to ensure the DSL access device's support for mobile IPv4, so as to keep the uninterrupted connection of the service to the user when the user moves between different subnets.
摘要:
With migration of network technology and more and more requirements of user equipment for accessing to Internet, the network security faces more and more severe situation. There is provided a method for distributed security control in communication network system and the device thereof in order to improve security and operatability of network operator. In the method, firstly the network controller establishes a network security control mechanism, which is used for a second network device to check the validity of the data package from the user equipment; secondly, the network controller sends the network security control mechanism to the second network devices; lastly, the second network device checks the validity of the data package from the user equipment according to the network security control mechanism, and discards the data package if the data package is invalid. With the present invention, security and operatability of the communication network may be improved greatly, particularly, the functionality of address anti-spoofing can be implemented in the network with a WLAN architecture in centralized control.
摘要:
The present invention provides a method and apparatus for registering to a designated router in a rendezvous point in an anycast group in a multicast communication network, wherein the rendezvous point implements a joint-registering based on registering status of all rendezvous points in the anycast group. The main rendezvous point sends to the designated router the Register Stop message only when all rendezvous points in the anycast group do not need the Register message from the designated router; when any one of other rendezvous points does not need the Register message, sending the Register message to it is stopped. With the method and apparatus of the present invention, the cases resulting in the interruption of subscriber terminal multicast traffic can be reduced, and the CPU resource of the main rendezvous point and bandwidth resources between it and other rendezvous points are saved.
摘要:
The invention relates to a method, in an access point of a wireless local area network, of scheduling a radio resource, wherein at least one categorization rule is set in the wireless local area network, and at least one access group is set for a plurality of non-access-point stations served by the access point according to each of the at least one categorization rule, the method comprising the steps of: sending at least one categorization message to at least one of the plurality of stations, each categorization message comprising information about one of all the access groups which are set in the wireless local area network according to the at least one categorization rule; and sending a clear-to-send frame to the plurality of stations to indicate a radio resource allocated to an access group to be protected among all the access groups. The invention can distinctly resolve the contention for radio resource between the stations, effectively limit the number of concurrently contending stations and provide flexibility in access control of an access group.
摘要:
The invention proposes method and apparatus in a plurality of rendezvous points for together processing multicast traffics from mobile multicast source. Wherein, a first rendezvous point and at least one second rendezvous point compose an anycast group which is used for sharing the processing task of the multicast data packets of the mobile multicast source point together, the first rendezvous point and the at least one second rendezvous point share a route forwarding table, the route forwarding table comprises corresponding relation among the care-of-address, the home address and the multicast address of one or more multicast sources. The first rendezvous point obtains the multicast data packets, forwards the multicast data packets to the at least one second rendezvous point, when needing to forward the multicast data packets to the at least one second rendezvous point; the first rendezvous point searches the route forwarding table, according to address information of the multicast packet; determines the corresponding shared multicast tree, when the address information matches the care-of address and/or home address and matches the multicast address of an candidate multicast source; and forwards the multicast data packet according to the shared multicast tree.
摘要:
The present invention provides an improved solution of registering with a Home Agent HA of a Mobile Node MN, comprising: grouping at lest two Foreign Agents FAs to form a Foreign Agent Group FAG to enable FA members of the FAG to share information of the MN roaming into a FAG coverage area; when any FA member of the FAG receives a registration request for registering a care-of address with the HA sent by the MN, determining whether the MN enters the FAG coverage area for the first time based on the shared MN information; and if the MN enters the FAG coverage area for the first time, the FA forwards the received registration request to the HA; otherwise, the FA directly sends a registration response to the MN. The solution of the present invention greatly reduces registration messages from the MN to the HA, thereby reducing signaling delay produced when the MN moves in the FN. Also, both the MN and the HA in the prior art can be merged into the solution, thereby achieving seamless integration with IPv4, preferably with Mobile IPv4 scheme.