-
公开(公告)号:US11539600B2
公开(公告)日:2022-12-27
申请号:US17516971
申请日:2021-11-02
Applicant: Cisco Technology, Inc.
Inventor: Benoit Claise , Carlos M. Pignataro , Eric Vyncke , Joseph M. Clarke , Mioljub Jovanovic , Harjinder Singh
IPC: H04L41/5009 , H04L41/046 , H04L41/5025 , H04L41/50
Abstract: A method is performed at one or more entities configured to configure and provide assurance for a service enabled on a network. The service is configured as a collection of subservices on network devices of the network. A definition of the service is decomposed into a subservice dependency graph that indicates the subservices and dependencies between the subservices that collectively implement the service. Based on the subservice dependency graph, the subservices are configured to record and report subservice metrics indicative of subservice health states of the subservices. The subservice metrics are obtained from the subservices, and the subservice health states of the subservices are determined based on the subservice metrics. A health state of the service is determined based on the subservice health states. One or more of the subservices are reconfigured based on the health state of the service.
-
公开(公告)号:US20220060394A1
公开(公告)日:2022-02-24
申请号:US17516971
申请日:2021-11-02
Applicant: Cisco Technology, Inc.
Inventor: Benoit Claise , Carlos M. Pignataro , Eric Vyncke , Joseph M. Clarke , Mioljub Jovanovic , Harjinder Singh
IPC: H04L12/24
Abstract: A method is performed at one or more entities configured to configure and provide assurance for a service enabled on a network. The service is configured as a collection of subservices on network devices of the network. A definition of the service is decomposed into a subservice dependency graph that indicates the subservices and dependencies between the subservices that collectively implement the service. Based on the subservice dependency graph, the subservices are configured to record and report subservice metrics indicative of subservice health states of the subservices. The subservice metrics are obtained from the subservices, and the subservice health states of the subservices are determined based on the subservice metrics. A health state of the service is determined based on the subservice health states. One or more of the subservices are reconfigured based on the health state of the service.
-
公开(公告)号:US11228507B2
公开(公告)日:2022-01-18
申请号:US16704163
申请日:2019-12-05
Applicant: Cisco Technology, Inc.
Inventor: Joseph M. Clarke , Benoit Claise , Eric Vyncke , Carlos M. Pignataro
Abstract: A method comprises configuring a service as a collection of subservices on network devices of a network, and decomposing a definition of the service into a subservice dependency graph that indicates the subservices and dependencies between the subservices that implement the service. The method further comprises, based on the subservice dependency graph, configuring a subservice among the subservices to record and report a subservice metric as an indicator of subservice performance. The method further comprises determining a rate at which to obtain values of the subservice metric from the subservice, determining a confidence interval for the values of the subservice metric, and obtaining the values of the subservice metric from the subservice at the rate, to produce values for monitoring the subservice. The method also includes determining whether at least one of the values for monitoring the subservice is within the confidence interval.
-
公开(公告)号:US11223559B2
公开(公告)日:2022-01-11
申请号:US16566680
申请日:2019-09-10
Applicant: Cisco Technology, Inc.
Inventor: Reshad Rahman , Carlos M. Pignataro , Nagendra Kumar Nainar , Eric Vyncke
IPC: H04L12/721 , H04L12/46 , H04L12/733 , H04L12/707 , H04L12/703 , H04L12/749
Abstract: Techniques and mechanisms to enable a Bidirectional Forwarding Detection (BFD) Echo function to be used for IP multi-hop paths using IP encapsulation. A source device may encapsulate one or more BFD Echo packets as payloads in IP packets. The resulting IP packets may then be sent from a source device to a destination device over a multi-hop path such that one or more intermediary devices forward the IP packets onto the destination device. Upon receiving the IP packets, the destination device may echo back the one or more BFD Echo packets in the forwarding plane to indicate connectivity of the forwarding path between the devices. However, if the BFD Echo packets are not echoed back to the source device, the source device may determine that the multi-hop path has experienced a fault, and that traffic is to be rerouted through other paths.
-
公开(公告)号:US11218454B2
公开(公告)日:2022-01-04
申请号:US16268087
申请日:2019-02-05
Applicant: Cisco Technology, Inc.
Inventor: Eric Vyncke , Guillaume Ruty , Pierre Pfister , Andre Jean-Marie Surcouf
IPC: H04L29/06 , H04L29/12 , H04L12/749 , H04L29/08 , G06F21/62 , H04L12/747
Abstract: A message is received which indicates a request for a client-specific service address for service or content provided by a service provider. In response to the request, a client-specific service address may be generated and sent to the client. The address may be used as a destination address in one or more subsequent client requests for service or content. A first portion of the address comprises an IPv6 service prefix assigned to a service network of the service provider. A second portion of the address comprises semantic information having a first portion of encrypted private information and a second portion of unencrypted service information. The encrypted private information may be generated by encrypting private information based on a cryptographic key, where the cryptographic key is derived based on a secret key associated with the service provider and an IP client prefix assigned to the client.
-
26.
公开(公告)号:US20210176142A1
公开(公告)日:2021-06-10
申请号:US16704163
申请日:2019-12-05
Applicant: Cisco Technology, Inc.
Inventor: Joseph M. Clarke , Benoit Claise , Eric Vyncke , Carlos M. Pignataro
Abstract: A method comprises configuring a service as a collection of subservices on network devices of a network, and decomposing a definition of the service into a subservice dependency graph that indicates the subservices and dependencies between the subservices that implement the service. The method further comprises, based on the subservice dependency graph, configuring a subservice among the subservices to record and report a subservice metric as an indicator of subservice performance. The method further comprises determining a rate at which to obtain values of the subservice metric from the subservice, determining a confidence interval for the values of the subservice metric, and obtaining the values of the subservice metric from the subservice at the rate, to produce values for monitoring the subservice. The method also includes determining whether at least one of the values for monitoring the subservice is within the confidence interval.
-
27.
公开(公告)号:US20200252377A1
公开(公告)日:2020-08-06
申请号:US16268087
申请日:2019-02-05
Applicant: Cisco Technology, Inc.
Inventor: Eric Vyncke , Guillaume Ruty , Pierre Pfister , Andre Jean-Marie Surcouf
IPC: H04L29/06 , H04L29/12 , H04L12/749 , H04L12/747 , H04L29/08 , G06F21/62
Abstract: A message is received which indicates a request for a client-specific service address for service or content provided by a service provider. In response to the request, a client-specific service address may be generated and sent to the client. The address may be used as a destination address in one or more subsequent client requests for service or content. A first portion of the address comprises an IPv6 service prefix assigned to a service network of the service provider. A second portion of the address comprises semantic information having a first portion of encrypted private information and a second portion of unencrypted service information. The encrypted private information may be generated by encrypting private information based on a cryptographic key, where the cryptographic key is derived based on a secret key associated with the service provider and an IP client prefix assigned to the client.
-
公开(公告)号:US10211987B2
公开(公告)日:2019-02-19
申请号:US14992114
申请日:2016-01-11
Applicant: Cisco Technology, Inc.
Inventor: Venkata Krishna Sashank Dara , Shwetha Subray Bhandari , Andrew Yourtchenko , Eric Vyncke , Frank Brockners
Abstract: A system and methods are provided herein for verifying proof of transit of traffic through a plurality of network nodes in a network. In one embodiment, a method is provided in which information is obtained about a packet at a network node in a network. The information includes in-band metadata. Verification information is read from the in-band metadata. The verification information for use in verifying a path of the packet in the network. Updated verification information is generated from the verification information read from the packet. The updated verification information is written to the in-band metadata of the packet, and the packet is forwarded from the network node in the network.
-
-
-
-
-
-
-