摘要:
A packet filtering method, system and article of manufacture are provided which include: employing an instruction set associated with a pseudo-machine in filtering packets received at a network interface card coupled to a host, wherein a set of instructions of the instruction set implements at least one byte-defined filter rule; and the employing includes for a packet of the received packets, processing bytes of the packet as a bytestream and applying at least one filter rule to the bytestream to filter the packet. The applying can be performed in any one of a plurality of locations without customization of the instruction set, including the network interface card and the host processor coupled thereto.
摘要:
The failover of nodes within networks, using a multicast address or a multicast port, is disclosed. A first node of a network joins a multicast group having a multicast address, which is assigned to the first node. Communication to the first node is achieved via communication to the multicast address, and/or through a multicast port on a switch of the network mapping to a port on the first node. When the first node fails, one of two actions occurs. First, a second node of the network may join the multicast group, such that the multicast address is assigned to the second node, and the second node handles communication to the multicast address. Second, the multicast port on the switch may be remapped to a port on the second node, so that communication to the multicast address is directed to the port on the second node.
摘要:
A mechanism for managing multicast groups with send-without-receive (SWR) joiners without the use of traps on creation and deletion of groups is provided. Group information is maintained continuously while the SWR member exists. When an SWR join is attempted and the group does not already exist, the group information (MLID) is marked as used and the first switch to which the SWR packets are sent is routed to discard all packets sent to the group. When receiving members join the group, the routing is updated so that the SWR member begins sending to the receiving members. When the last receiving member leaves the group, the first switch is again routed to discard the packets.
摘要:
The alternate use of data packet fields to convey other packet information is disclosed. A data packet is sent by a first adapter, such as a host channel adapter (HCA), to a second adapter, such as a target channel adapter (TCA), over a network, such as input/output (I/O) network like an InfiniBand I/O network. The packet is sent for routing over another network, such as a communication network like an Ethernet network. The packet has a first part intended to signify a packet type, but actually conveys other packet information. The first part may be intended to have a value greater than or equal to a predetermined number to signify the type, but actually have a value less than the predetermined number to convey other packet information. The first packet part may be a raw datagram header, and may have an Ethertype field.
摘要:
A virtual container includes an application computer program and metadata representing the operating system requirements. The virtual container is stored on a computer-readable storage medium for delivery to an end user for copying to a target computing device. The virtual container is equivalent to a virtual appliance minus an operating system. The virtual container is executable on an existing logical partition (LPAR) of the target computing device that provides a virtual operating system for the application of the virtual container, where the virtual container is specifically executable within a workload partition (WPAR) of the LPAR. The virtual container is also executable on a new LPAR of the target computing device, where the end user provides a guest operating system to run within the new partition for the virtual container, such that addition of the guest operating system to the virtual container renders the virtual container as a virtual appliance.
摘要:
Converting a two-tier resource mapping to a one-tier resource mapping may include determining a first mapping from an intermediate data buffer to a data destination. A second mapping from a data source to the intermediate data buffer may also be determined. An optimized mapping from the data source to the data destination may be generated based on the first and second mappings. The optimized mapping may then be used instead of the first and second mappings to collect data from the data source to the data destination, thereby resulting in a one-tier resource mapping. In some instances, the mappings may be sets of one or more queries.
摘要:
A multiple-node system having a number of nodes has its power utilization managed. A node power cap of a node specifies a maximum power that the node is individually able to utilize. A system-wide power cap specifies a maximum power that the multiple-node system is able to utilize overall. In response to determining that a node power cap of a selected node is to be increased, where a total of the node power caps of all the nodes is equal to the system-wide power cap, the node power caps of one or more nodes are reduced so that the total of the node power caps of all the nodes is less than the system-wide power cap. The node power cap of the selected node is then increased such that the total of the node power caps of all the nodes is equal to or less than the system-wide power cap.
摘要:
Managing delivery of power to one or more hardware memory devices in a computer system. The computer system is configured with a processor and at least two hardware memory devices. A temperature monitor tool is employed to monitor the hardware memory devices. Management of an addressable subset of the hardware memory devices is employed in response to the monitored temperature reading.
摘要:
Methods are provided for dynamically defining network access control rules. A placeholder for a parameter of an interface to an endpoint such as a data processing system or virtual machine may be provided in a network access control rule, instead of a static parameter. The parameter may be dynamically determined, by a firewall or a hypervisor for example, and the placeholder may be replaced with the dynamically determined parameter.
摘要:
A virtual container includes an application computer program and metadata representing the operating system requirements. The virtual container is stored on a computer-readable storage medium for delivery to an end user for copying to a target computing device. The virtual container is equivalent to a virtual appliance minus an operating system. The virtual container is executable on an existing logical partition (LPAR) of the target computing device that provides a virtual operating system for the application of the virtual container, where the virtual container is specifically executable within a workload partition (WPAR) of the LPAR. The virtual container is also executable on a new LPAR of the target computing device, where the end user provides a guest operating system to run within the new partition for the virtual container, such that addition of the guest operating system to the virtual container renders the virtual container as a virtual appliance.