Method and system for forwarding data in layer-2 network
    21.
    发明授权
    Method and system for forwarding data in layer-2 network 有权
    在二层网络中转发数据的方法和系统

    公开(公告)号:US09100351B2

    公开(公告)日:2015-08-04

    申请号:US14319499

    申请日:2014-06-30

    Abstract: A method for forwarding data in a layer-2 network is provided. A first node receives a first data packet including a customer destination MAC address and customer data; generates a second data packet including a source virtual MAC address, a destination virtual MAC address and at least part of the first data packet. The at least part of the first data packet includes the customer destination MAC address and the customer data. The source virtual MAC address is a virtual MAC address assigned to the first node, and the destination virtual MAC address corresponds to the customer destination MAC address. The virtual MAC address assigned to the first node includes a first virtual MAC address segment with a first mask, which indicates a virtual MAC address space including virtual MAC addresses of child nodes of the first node. Then the first node forwards the second data packet.

    Abstract translation: 提供了一种在二层网络中转发数据的方法。 第一节点接收包括客户目的地MAC地址和客户数据的第一数据分组; 产生包括源虚拟MAC地址,目的地虚拟MAC地址和第一数据分组的至少一部分的第二数据分组。 第一数据分组的至少部分包括客户目的地MAC地址和客户数据。 源虚拟MAC地址是分配给第一个节点的虚拟MAC地址,目标虚拟MAC地址对应于客户目标MAC地址。 分配给第一节点的虚拟MAC地址包括具有第一掩码的第一虚拟MAC地址段,其指示包括第一节点的子节点的虚拟MAC地址的虚拟MAC地址空间。 然后第一个节点转发第二个数据包。

    Network access authentication
    22.
    发明授权
    Network access authentication 有权
    网络访问认证

    公开(公告)号:US08925067B2

    公开(公告)日:2014-12-30

    申请号:US14088888

    申请日:2013-11-25

    Inventor: Ruobin Zheng

    CPC classification number: H04L63/0892 H04L29/1232 H04L61/2092 H04L63/08

    Abstract: A network access method, an authentication method, a communications system, and relevant devices are provided to support implicit authentication based on subscriber line information in Internet Protocol version 6 (IPv6). The authentication method includes: receiving a request message sent from an Access Node (AN), wherein the request message carries subscriber line information and a Link-Local Address (LLA); sending an access request to an Authentication, Authorization and Accounting (AAA) server according to the subscriber line information; receiving an authentication result indicating the authentication is successful; determining whether an address matching the LLA carried in the request has been stored in the BNG; and storing the LLA in the BNG, if the address matching the LLA is not stored in the BNG.

    Abstract translation: 提供网络访问方法,认证方法,通信系统和相关设备,以支持基于互联网协议版本6(IPv6)中的用户线信息的隐式认证。 认证方法包括:接收从接入节点(AN)发送的请求消息,其中所述请求消息携带用户线信息和链路本地地址(LLA); 根据用户线信息向认证,授权和计费(AAA)服务器发送接入请求; 接收到表示认证成功的认证结果; 确定在请求中携带的LLA的地址是否已经存储在BNG中; 并将LLA存储在BNG中,如果与LLA匹配的地址不存储在BNG中。

    Segment routing method and apparatus

    公开(公告)号:US12301440B2

    公开(公告)日:2025-05-13

    申请号:US17686798

    申请日:2022-03-04

    Inventor: Ruobin Zheng

    Abstract: This application provides a segment routing method and apparatus. The method includes: An ingress routing device receives a packet sent by a terminal device; and obtains a functional program corresponding to the packet of the terminal device. The functional program is used to indicate one or more sequential computing processing steps/instructions, service processing steps/instructions, or network processing steps/instructions, the functional program includes one or more sequentially placed function identifiers FID, and each FID is used to represent one computing processing step/instruction, service processing step/instruction, or network processing step/instruction.

    Bandwidth scheduling method and apparatus

    公开(公告)号:US11310780B2

    公开(公告)日:2022-04-19

    申请号:US16809017

    申请日:2020-03-04

    Inventor: Ruobin Zheng

    Abstract: A bandwidth scheduling method. The method includes a bandwidth allocation apparatus receives a bandwidth request message sent by a message conversion apparatus, where the bandwidth request message includes a bandwidth requirement, and the bandwidth requirement is a bandwidth required by a user-side apparatus for completing transmission of a service. The bandwidth allocation apparatus calculates first bandwidth grant information and second bandwidth grant information based on the bandwidth requirement, where the first bandwidth grant information is information about a bandwidth that is allocated to the user-side device, and the second bandwidth grant information is information about a bandwidth that is allocated to a second access device. The bandwidth allocation apparatus sends the first bandwidth grant information to the user-side device, and the bandwidth allocation apparatus sends the second bandwidth grant information to the second access device by using a first access device.

    Method for indicating multicast forwarding entry and device

    公开(公告)号:US11196576B2

    公开(公告)日:2021-12-07

    申请号:US15332867

    申请日:2016-10-24

    Inventor: Ruobin Zheng

    Abstract: Embodiments of the present disclosure provide a method for indicating a multicast forwarding entry and a device. The method includes: receiving a packet from a first node, wherein the packet comprises a multicast control message and an access loop identifier; obtaining, according to a multicast Internet Protocol (IP) address in the multicast control message, a multicast Media Access Control (MAC) address; obtaining an identifier of a first port according to the access loop identifier, wherein the first port is an egress port, on the multicast path, of the first port; sending a first forwarding entry to the first node, wherein a destination address of the first forwarding entry is the multicast MAC address and egress port information of the first forwarding entry is the identifier of the first port.

    Message transmission method, access node, access controller, and access system

    公开(公告)号:US11178073B2

    公开(公告)日:2021-11-16

    申请号:US15873507

    申请日:2018-01-17

    Inventor: Ruobin Zheng

    Abstract: A message transmission method, an access node, an access controller, and an access system, where in the method, a message is processed by an access controller instead of an access node such that the access node does not need to support a relay function, reducing operation and maintenance difficulties and costs. In the method, the access controller receives a first message from the access node, and the first message includes a first identifier. The access controller obtains a line identifier according to the first identifier. The access controller obtains a second message according to the line identifier, and the second message includes the line identifier. The access controller sends the second message to a relay server.

    Message transmission method, relay device, and message processor

    公开(公告)号:US10827239B2

    公开(公告)日:2020-11-03

    申请号:US16132296

    申请日:2018-09-14

    Inventor: Ruobin Zheng

    Abstract: Embodiments of the present disclosure provide a message transmission method, a relay device, and a message processor, so as to reduce maintenance costs. The method includes: receiving, by a relay device, a downlink message sent by a message processor, where the downlink message includes message content and an address of an ONU; obtaining, by the relay device according to the downlink message, an identifier of the ONU, corresponding to the address of the ONU; and sending, by the relay device, the message content to the ONU according to the identifier of the ONU.

    AUTHENTICATION METHOD FOR ACCESSING NETWORK, AUTHENTICATION DEVICE, AND USER DEVICE

    公开(公告)号:US20200045045A1

    公开(公告)日:2020-02-06

    申请号:US16598472

    申请日:2019-10-10

    Inventor: Ruobin Zheng

    Abstract: This application discloses an authentication method for accessing a network, an authentication device, and a user device. The method includes: an authentication device receives an authentication response message sent by user device, where the authentication response message includes first data, and the first data is data obtained by the user device based on biometric feature data of a target user. The authentication device obtains second data from a server, where the second data is data obtained by the server based on biometric feature data of a user, and generates indication information when the first data is the same as the second data, where the indication information is used to indicate that the user device is authenticated. The authentication device sends the indication information to the user device.

    Message processing method, access controller, and network node

    公开(公告)号:US10530744B2

    公开(公告)日:2020-01-07

    申请号:US15260740

    申请日:2016-09-09

    Inventor: Ruobin Zheng

    Abstract: This application provides a message processing method, an access controller, and a network node. In some aspects, an access controller receives a first message used to obtain Internet Protocol (IP) address information for a user-side device and a first access loop identifier of a first network node, where the first message and the first access loop identifier are sent by the first network node, the first access loop identifier is not carried in the first message. The access controller obtains an authentication, authorization and accounting (AAA) message according to the first access loop identifier, wherein the AAA message comprises the first access loop identifier. The access controller sends the AAA message to an AAA server.

    Packet Processing Method and Apparatus
    30.
    发明申请

    公开(公告)号:US20170104680A1

    公开(公告)日:2017-04-13

    申请号:US15386085

    申请日:2016-12-21

    Abstract: This application provides a packet processing method, which helps resolve a problem that a network node between a user terminal and a DHCP server is relatively complex. In the method, a network node of an access network receives a first packet sent by a user terminal, where the first packet is used to request an Internet Protocol IP address from a Dynamic Host Configuration Protocol DHCP server and the network node obtains a second packet, where the second packet includes the first packet, information about a port, and a Media Access Control MAC address of the user terminal, the port is a port through which the network node receives the first packet, and the second packet is a packet except a DHCP packet. Additionally the network node sends the second packet to a controller.

Patent Agency Ranking