SOFTWARE DEFINED ACCESS FABRIC WITHOUT SUBNET RESTRICTION TO A VIRTUAL NETWORK

    公开(公告)号:EP4236270A3

    公开(公告)日:2023-10-11

    申请号:EP23178908.2

    申请日:2020-01-09

    摘要: Systems, methods, and computer-readable storage media are provided for provisioning a common subnet across a number of subscribers and their respective virtual networks using dynamically generated network policies that provide isolation between the subscribers. The dynamic generation of the network policies is performed when a host (e.g. client) is detected (via a switch) as the host joins the computing network via virtual networks. This ability to configure a common subnet for all the subscriber virtual networks allows these subscribers to more easily access external shared services coming from a headquarter site while keeping the separation and segmentation of multiple subscriber virtual networks within a single subnet. This allows the Enterprise fabric to be more simple and convenient to deploy without making security compromises.

    NETWORK AUTHORIZATION IN WEB-BASED OR SINGLE SIGN-ON AUTHENTICATION ENVIRONMENTS

    公开(公告)号:EP3560166A1

    公开(公告)日:2019-10-30

    申请号:EP17829819.6

    申请日:2017-12-19

    IPC分类号: H04L29/06 G06F21/41

    摘要: Systems and methods for network authorization are described herein. An example method can include receiving a user credential from a host device connected to a network, authenticating the user credential, and in response to authenticating the user credential, determining an authorization policy associated with the host device. The method can also include polling a network overlay control plane of the network to obtain a network location information associated with the host device, identifying at least one network device of the network using the network location information, and transmitting the authorization policy to the at least one network device.

    TRACE FEATURE ACROSS THE NETWORK (DEPTH & BREADTH)-WISE
    8.
    发明公开
    TRACE FEATURE ACROSS THE NETWORK (DEPTH & BREADTH)-WISE 有权
    MERKMALSPURENÜBERDAS NETZWERK在TIEFE UND BREITE

    公开(公告)号:EP3068075A1

    公开(公告)日:2016-09-14

    申请号:EP16155741.8

    申请日:2016-02-15

    IPC分类号: H04L12/24 H04L12/26

    摘要: A feature trace capability may be provided for features including, but not limited to, automatic quality of service (auto QoS), power over Ethernet (PoE), and fabric compatibility. A network command may be implemented with the capability to validate features across a network path or the network as a whole. The output of this network command may result in the display of details about supported features. Such a command may also result in a listing of what devices require upgrades to support any number of features of interest. Embodiments of the feature trace capability may be configured such that the query gets terminated once a final subnet (or endpoint) is reached. Alternatively, the feature trace capability may be configured such that the query gets terminated after a maximum hop count, or trace total (trace_ttl) is reached. Such a limit may prevent the continuous flooding of the network.

    摘要翻译: 可以为特征提供特征跟踪功能,包括但不限于自动服务质量(自动QoS),以太网供电(PoE)和结构兼容性。 可以实现网络命令,其具有通过网络路径或网络整体验证特征的能力。 此网络命令的输出可能会显示有关支持的功能的详细信息。 这样的命令还可以列出什么设备需要升级以支持任何数量的感兴趣的特征。 可以配置特征跟踪功能的实施例,使得一旦达到最终子网(或端点),则查询终止。 或者,可以配置特征跟踪能力,使得在达到最大跳数或跟踪总数(trace_ttl)之后,查询终止。 这样的限制可以防止网络的连续洪泛。