Dynamic load balancing using virtual link credit accounting
    21.
    发明授权
    Dynamic load balancing using virtual link credit accounting 有权
    使用虚拟链接信用账户进行动态负载均衡

    公开(公告)号:US08824284B2

    公开(公告)日:2014-09-02

    申请号:US12780524

    申请日:2010-05-14

    IPC分类号: H04J1/16 H04L12/56

    摘要: Methods and apparatus for dynamic load balancing using virtual link credit accounting are disclosed. An example method includes receiving, at a network device, a data packet to be communicated using an aggregation group, the aggregation group including a plurality of virtual links having a common destination. The example method further includes determining a hash value based on the packet and determining an assigned virtual link of the plurality of virtual links based on the hash value. The example method also includes reducing a number of available transmission credits for the aggregation group and reducing a number of available transmission credits for the assigned virtual link. The example method still further includes communicating the packet to another network device using the assigned virtual link.

    摘要翻译: 披露了使用虚拟链接信用账户进行动态负载均衡的方法和装置。 一种示例方法包括在网络设备处接收要使用聚合组进行传送的数据分组,所述聚合组包括具有公共目的地的多个虚拟链路。 该示例方法还包括基于分组确定散列值,并且基于该散列值确定多个虚拟链路中的分配的虚拟链路。 该示例方法还包括减少用于聚合组的可用传输信用数量,并减少所分配的虚拟链路的可用传输信用数量。 该示例方法还包括使用分配的虚拟链路将分组传送到另一网络设备。

    Systems and methods for enabling assured records using fine grained auditing of virtual private network traffic
    22.
    发明授权
    Systems and methods for enabling assured records using fine grained auditing of virtual private network traffic 有权
    允许使用对虚拟专用网络流量进行细粒度审计的保证记录的系统和方法

    公开(公告)号:US08484718B2

    公开(公告)日:2013-07-09

    申请号:US11462230

    申请日:2006-08-03

    IPC分类号: G06F9/00

    摘要: Methods for enabling assured records using fine grained auditing of virtual private network traffic include establishing, by an appliance, a transport layer virtual private network connection with a client operated by a user; receiving, by the appliance via the connection, a request from the client identifying a resource; determining, by the appliance, the request meets at least one security condition; transmitting, by the appliance to an audit log, a record of the request; receiving, by the appliance from the audit log, a confirmation that the record was logged; and granting, responsive to the received confirmation, access to the identified resource. Security conditions may identify at least one user, at least one application, a network or group of networks, and one or more resources. Corresponding systems are also described.

    摘要翻译: 使用对虚拟专用网络流量进行细粒度审计的保证记录的方法包括由设备建立与用户操作的客户端的传输层虚拟专用网络连接; 通过连接从设备接收识别资源的客户端的请求; 由所述设备确定所述请求满足至少一个安全条件; 由设备向审核日志传送请求的记录; 设备从审核日志接收记录记录的确认; 以及响应于所接收的确认,授予对所识别的资源的访问。 安全条件可以标识至少一个用户,至少一个应用,网络或网络组,以及一个或多个资源。 还描述了相应的系统。

    System and Method for Hierarchical Adaptive Dynamic Egress Port and Queue Buffer Management
    23.
    发明申请
    System and Method for Hierarchical Adaptive Dynamic Egress Port and Queue Buffer Management 有权
    用于分层自适应动态出口端口和队列缓冲区管理的系统和方法

    公开(公告)号:US20130155859A1

    公开(公告)日:2013-06-20

    申请号:US13523994

    申请日:2012-06-15

    IPC分类号: H04L12/24

    摘要: A system and method for hierarchical adaptive dynamic egress port and queue buffer management. Efficient utilization of buffering resources in a commodity shared memory buffer switch is key to minimizing packet loss. Efficient utilization of buffering resources is enabled through adaptive queue limits that are derived from an adaptive port limit.

    摘要翻译: 一种用于分层自适应动态出口端口和队列缓冲区管理的系统和方法。 在商品共享内存缓冲交换机中高效利用缓冲资源是最大限度地减少数据包丢失的关键。 通过从自适应端口限制导出的自适应队列限制,能够有效利用缓冲资源。

    Intelligent congestion feedback apparatus and method
    24.
    发明授权
    Intelligent congestion feedback apparatus and method 有权
    智能拥塞反馈装置及方法

    公开(公告)号:US08437252B2

    公开(公告)日:2013-05-07

    申请号:US12945699

    申请日:2010-11-12

    IPC分类号: H04J1/16

    摘要: Apparatus and methods for intelligent congestion feedback are disclosed. An example apparatus includes a data interface configured to receive data packets from a source endpoint via an intermediate node. The data packets include a field indicating whether data congestion for data being sent to the destination endpoint is occurring. The example apparatus also includes a timer. The example apparatus further includes a feedback loop interface configured to selectively enable a feedback loop to the source endpoint and to transmit congestion notification (CN) messages to the source endpoint over the feedback loop. Upon receiving a data packet indicating that congestion has occurred due to the data packets from the source endpoint to the destination endpoint, the destination endpoint is configured to set the timer to a preset time value; start the timer reverse counting from the preset time value to zero, enable the feedback loop and transmit the CN messages.

    摘要翻译: 公开了用于智能拥塞反馈的装置和方法。 示例性设备包括被配置为经由中间节点从源端点接收数据分组的数据接口。 数据分组包括指示发送到目的地端点的数据的数据拥塞是否发生的字段。 示例性装置还包括定时器。 该示例设备还包括反馈回路接口,其被配置为选择性地启用到源端点的反馈回路并且通过反馈回路向源端点发送拥塞通知(CN)消息。 一旦接收到指示由于从源端点到目的地端点的数据分组发生拥塞而发生拥塞的数据分组,则目的端点被配置为将定时器设置为预设时间值; 启动定时器反向计数从预设时间值到零,启用反馈回路并发送CN消息。

    Intelligent network interface controller
    25.
    发明授权
    Intelligent network interface controller 有权
    智能网络接口控制器

    公开(公告)号:US08418252B2

    公开(公告)日:2013-04-09

    申请号:US13359274

    申请日:2012-01-26

    CPC分类号: H04L63/0428 H04L63/14

    摘要: A network interface device includes a security database and a security services engine. The security database is configured to store patterns corresponding to predetermined malware. The security services engine is configured to compare data to be transmitted through a network to the patterns stored in the security database, and the security database is configured to receive updated patterns from the network.

    摘要翻译: 网络接口设备包括安全数据库和安全服务引擎。 安全数据库被配置为存储对应于预定恶意软件的模式。 安全服务引擎被配置为将要通过网络发送的数据与存储在安全数据库中的模式进行比较,并且安全数据库被配置为从网络接收更新的模式。

    Dynamic load balancing using quality/loading bands
    26.
    发明授权
    Dynamic load balancing using quality/loading bands 有权
    使用质量/加载带的动态负载平衡

    公开(公告)号:US08391139B2

    公开(公告)日:2013-03-05

    申请号:US12780555

    申请日:2010-05-14

    IPC分类号: H04L12/26

    摘要: Methods and apparatus for. An example method includes determining, by a network device, respective quality metrics for each of a plurality of members of an aggregation group of the network device, the respective quality metrics representing respective data traffic loading for each member of the aggregation group. The example method further includes grouping the plurality of aggregation members into a plurality of loading/quality bands based on their respective quality metrics. The example method also includes selecting members of the aggregation group for transmitting packets from a loading/quality band corresponding with members of the aggregation group having lower data traffic loading relative to the other members of the aggregation group.

    摘要翻译: 方法和装置。 示例性方法包括由网络设备确定网络设备的聚合组的多个成员中的每一个的相应质量度量,表示聚合组的每个成员的相应数据流量加载的相应质量度量。 该示例方法还包括基于它们各自的质量度量将多个聚合成员分组成多个加载/质量带。 该示例方法还包括选择聚合组的成员,用于从与聚合组的其他成员相对应的具有较低数据流量加载的聚合组的成员相对应的加载/质量带传输分组。

    Hash-Based Load Balancing with Per-Hop Seeding
    27.
    发明申请
    Hash-Based Load Balancing with Per-Hop Seeding 有权
    基于哈夫的负载均衡与每跳播种

    公开(公告)号:US20120230225A1

    公开(公告)日:2012-09-13

    申请号:US13418283

    申请日:2012-03-12

    IPC分类号: H04L12/28 H04L12/56

    CPC分类号: H04L45/7453 H04L47/125

    摘要: Methods and apparatus for improving hash-based load balancing with per-hop seeding are disclosed. The methods and apparatus described herein provide a set of techniques that enable nodes to perform differing mathematical transformations when selecting a destination link. The techniques include manipulation of seeds, hash configuration mode randomization at a per node basis, per node/microflow basis or per microflow basis, seed index generation, and member selection. A node can utilize any, or all, of the techniques presented in this disclosure simultaneously to improve traffic distribution and avoid path starvation with a degree of determinism.

    摘要翻译: 公开了利用每跳播种改善基于散列的负载平衡的方法和装置。 本文描述的方法和装置提供了一组使得节点在选择目的地链路时能够执行不同数学变换的技术。 这些技术包括操作种子,以每个节点为基础的每个节点/微流基础或每个微流基础的散列配置模式随机化,种子索引生成和成员选择。 节点可以同时使用本公开中呈现的任何或全部技术来改善业务分布并且以一定程度的确定性来避免路径饥饿。

    Method and system for transmission control protocol (TCP) traffic smoothing
    28.
    发明授权
    Method and system for transmission control protocol (TCP) traffic smoothing 有权
    传输控制协议(TCP)流量平滑的方法和系统

    公开(公告)号:US08072886B2

    公开(公告)日:2011-12-06

    申请号:US12652402

    申请日:2010-01-05

    IPC分类号: H04J1/16

    摘要: Various aspects of a method and system for transmission control protocol (TCP) traffic smoothing are presented. Traffic smoothing may comprise a method for controlling data transmission in a communications system that further comprises scheduling the timing of transmission of information from a TCP offload engine (TOE) based on a traffic profile. Traffic smoothing may comprise transmitting information from a TOE at a rate that is either greater than, approximately equal to, or less than, the rate at which the information was generated. Some conventional network interface cards (NIC) that utilize TOEs may not provide a mechanism that enables traffic shaping. By not providing a mechanism for traffic shaping, there may be a greater probability of lost packets in the network.

    摘要翻译: 提出了传输控制协议(TCP)流量平滑的方法和系统的各个方面。 业务平滑可以包括用于控制通信系统中的数据传输的方法,该方法还包括基于业务简档调度来自TCP卸载引擎(TOE)的信息的传输定时。 业务平滑可以包括以大于等于或小于生成信息速率的速率从TOE发送信息。 使用TOE的一些常规网络接口卡(NIC)可能不提供启用流量整形的机制。 通过不提供用于流量整形的机制,网络中可能存在丢失分组的可能性更大。

    DYNAMIC LOAD BALANCING USING QUALITY/LOADING BANDS
    30.
    发明申请
    DYNAMIC LOAD BALANCING USING QUALITY/LOADING BANDS 有权
    使用质量/负载量的动态负载平衡

    公开(公告)号:US20110051603A1

    公开(公告)日:2011-03-03

    申请号:US12780555

    申请日:2010-05-14

    IPC分类号: H04L12/26 H04L1/00 H04L29/04

    摘要: Methods and apparatus for. An example method includes determining, by a network device, respective quality metrics for each of a plurality of members of an aggregation group of the network device, the respective quality metrics representing respective data traffic loading for each member of the aggregation group. The example method further includes grouping the plurality of aggregation members into a plurality of loading/quality bands based on their respective quality metrics. The example method also includes selecting members of the aggregation group for transmitting packets from a loading/quality band corresponding with members of the aggregation group having lower data traffic loading relative to the other members of the aggregation group.

    摘要翻译: 方法和装置。 示例性方法包括由网络设备确定网络设备的聚合组的多个成员中的每一个的相应质量度量,表示聚合组的每个成员的相应数据流量加载的相应质量度量。 该示例方法还包括基于它们各自的质量度量将多个聚合成员分组成多个加载/质量带。 该示例方法还包括选择聚合组的成员,用于从与聚合组的其他成员相对应的具有较低数据流量加载的聚合组的成员相对应的加载/质量带传输分组。