Priority resolution for access control list policies in a networking device
    1.
    发明授权
    Priority resolution for access control list policies in a networking device 有权
    网络设备中访问控制列表策略的优先级分辨率

    公开(公告)号:US09571502B2

    公开(公告)日:2017-02-14

    申请号:US13616256

    申请日:2012-09-14

    摘要: Access control lists (ACLs) permit network administrators to manage network traffic flowing through a networking element to optimize network security, performance, quality of service (QoS), and the like. If a networking element has multiple ACLs directed towards different types of network optimization, each ACL may return a separate action set that identifies one or more actions the networking element should perform based on a received frame. In some cases, these action sets may conflict. To resolve the conflicts, a networking element may include resolution logic that selects one of the conflicting actions based on a predefined precedence value assigned to each action in an action set. By comparing the different precedence values, the resolution logic generates a new action set based on the actions with the highest precedence value.

    摘要翻译: 访问控制列表(ACL)允许网络管理员管理流经网络元件的网络流量,以优化网络安全性,性能,服务质量(QoS)等。 如果网络元件具有针对不同类型的网络优化的多个ACL,则每个ACL可以返回单独的动作集合,其识别基于接收到的帧的网络元件应该执行的一个或多个动作。 在某些情况下,这些操作集可能会发生冲突。 为了解决冲突,网络元件可以包括分辨率逻辑,其基于分配给动作集中的每个动作的预定义优先级值来选择冲突动作之一。 通过比较不同的优先级值,分辨率逻辑基于具有最高优先级值的动作生成新的动作集。

    Identification of QoS classification based on packet attributes
    2.
    发明授权
    Identification of QoS classification based on packet attributes 有权
    基于分组属性的QoS分类识别

    公开(公告)号:US08942095B2

    公开(公告)日:2015-01-27

    申请号:US13302489

    申请日:2011-11-22

    CPC分类号: H04L47/2441 H04L69/22

    摘要: A method, a system, and a computer program product is disclosed for identifying a quality of service (QoS) classification of a packet in a network by a network processor. The method comprising: providing a table wherein a priority value with a maximum of N values is used as an index into the table to retrieve a QoS classification having a maximum of M values with M less than N; receiving a data packet in a stream of data packets; extracting at least two priority indicator values from the packet; converting the at least two priority indicator values into a priority value; utilizing the priority value as an index into the table; extracting the entry in the table corresponding to the priority value as the QoS classification of the packet; and utilizing the QoS classification for subsequent processing of the data packet.

    摘要翻译: 公开了一种方法,系统和计算机程序产品,用于通过网络处理器来识别网络中的分组的服务质量(QoS)分类。 该方法包括:提供一个表,其中将具有最大N个值的优先级值用作表中的索引以检索具有M小于N的最大M个值的QoS分类; 在数据包流中接收数据包; 从分组中提取至少两个优先级指示符值; 将所述至少两个优先级指示符值转换为优先级值; 利用优先级值作为表中的索引; 提取对应于优先级值的表中的条目作为分组的QoS分类; 并利用QoS分类来对数据分组进行后续处理。

    PRIORITY RESOLUTION FOR ACCESS CONTROL LIST POLICIES IN A NETWORKING DEVICE
    3.
    发明申请
    PRIORITY RESOLUTION FOR ACCESS CONTROL LIST POLICIES IN A NETWORKING DEVICE 有权
    网络设备访问控制列表策略的优先解决方案

    公开(公告)号:US20140082168A1

    公开(公告)日:2014-03-20

    申请号:US13616256

    申请日:2012-09-14

    IPC分类号: G06F15/173

    摘要: Access control lists (ACLs) permit network administrators to manage network traffic flowing through a networking element to optimize network security, performance, quality of service (QoS), and the like. If a networking element has multiple ACLs directed towards different types of network optimization, each ACL may return a separate action set that identifies one or more actions the networking element should perform based on a received frame. In some cases, these action sets may conflict. To resolve the conflicts, a networking element may include resolution logic that selects one of the conflicting actions based on a predefined precedence value assigned to each action in an action set. By comparing the different precedence values, the resolution logic generates a new action set based on the actions with the highest precedence value.

    摘要翻译: 访问控制列表(ACL)允许网络管理员管理流经网络元件的网络流量,以优化网络安全性,性能,服务质量(QoS)等。 如果网络元件具有针对不同类型的网络优化的多个ACL,则每个ACL可以返回单独的动作集合,其识别基于接收到的帧的网络元件应该执行的一个或多个动作。 在某些情况下,这些操作集可能会发生冲突。 为了解决冲突,网络元件可以包括分辨率逻辑,其基于分配给动作集中的每个动作的预定义优先级值来选择冲突动作之一。 通过比较不同的优先级值,分辨率逻辑基于具有最高优先级值的动作生成新的动作集。

    Ethernet adapter packet management
    5.
    发明授权
    Ethernet adapter packet management 失效
    以太网适配器包管理

    公开(公告)号:US07940785B2

    公开(公告)日:2011-05-10

    申请号:US11621097

    申请日:2007-01-08

    IPC分类号: H04L12/56

    摘要: A method, computer program product, and system for managing packets received by an Ethernet adapter shared by a plurality of threads are provided. The method, computer program product, and system provide for a first function operable to add a connection to a connection table of the Ethernet adapter and associate the connection with a queue pair and a second function operable to remove the connection from the connection table of the Ethernet adapter, wherein the Ethernet adapter is operable to route any packet corresponding to the connection received by the Ethernet adapter to the queue pair associated with the connection responsive to the connection being in the connection table.

    摘要翻译: 提供了一种用于管理由多个线程共享的以太网适配器接收的分组的方法,计算机程序产品和系统。 所述方法,计算机程序产品和系统提供第一功能,其可操作以向所述以太网适配器的连接表添加连接,并将所述连接与队列对相关联,以及可操作以从所述连接表移除所述连接的第二功能 以太网适配器,其中所述以太网适配器可操作以响应于连接在所述连接表中,将对应于由所述以太网适配器接收的连接的任何分组路由到与所述连接相关联的队列对。

    Facilitating insertion of device MAC addresses into a forwarding database
    7.
    发明授权
    Facilitating insertion of device MAC addresses into a forwarding database 有权
    方便将设备MAC地址插入转发数据库

    公开(公告)号:US08792494B2

    公开(公告)日:2014-07-29

    申请号:US13617290

    申请日:2012-09-14

    IPC分类号: H04L12/56 H04L29/08

    摘要: Techniques are disclosed for hash-based routing table management in a distributed network switch having multiple switch modules. Upon determining that an attempt to insert a first routing entry into a first hash table of the routing table has failed, a second routing entry, which exists in the first hash table, is attempted to be moved to a second hash table of the routing table. If the move attempt is successful, then the first routing entry is added to the location previously occupied by the second routing entry. If the move attempt is unsuccessful, then a third routing entry, which exists in the first hash table, is attempted to be moved.

    摘要翻译: 在具有多个交换机模块的分布式网络交换机中公开了用于基于散列的路由表管理的技术。 在确定将第一路由条目插入到路由表的第一散列表中的尝试已经失败时,尝试存在于第一散列表中的第二路由条目被移动到路由表的第二哈希表 。 如果移动尝试成功,则将第一路由条目添加到先前由第二路由条目占用的位置。 如果移动尝试不成功,则尝试移动第一个散列表中存在的第三个路由条目。

    Data frame forwarding using a distributed virtual bridge
    10.
    发明授权
    Data frame forwarding using a distributed virtual bridge 有权
    使用分布式虚拟桥的数据帧转发

    公开(公告)号:US08594100B2

    公开(公告)日:2013-11-26

    申请号:US12751249

    申请日:2010-03-31

    IPC分类号: H04L12/28

    摘要: Systems and methods to forward data frames are provided. A particular method may include receiving a data frame at a distributed virtual bridge. The distributed virtual bridge includes a first bridge element coupled to a first server computer and a second bridge element coupled to the first bridge element and to a second server computer. The distributed virtual bridge further includes a controlling bridge coupled to the first bridge element and to the second bridge element. The controlling bridge includes a global forwarding table. The data frame is forwarded from the first bridge element to the second bridge element of the distributed virtual bridge using address data associated with the data frame. A logical network associated with the frame may additionally be used to forward the data frame.

    摘要翻译: 提供了转发数据帧的系统和方法。 特定方法可以包括在分布式虚拟桥处接收数据帧。 分布式虚拟桥包括耦合到第一服务器计算机的第一桥单元和耦合到第一桥单元和第二服务器计算机的第二桥单元。 分布式虚拟桥还包括耦合到第一桥接元件和第二桥接元件的控制桥。 控制桥包括全局转发表。 使用与数据帧相关联的地址数据将数据帧从第一桥接元件转发到分布式虚拟桥的第二桥接元件。 与帧相关联的逻辑网络可另外用于转发数据帧。