摘要:
In an example embodiment, there is disclosed herein an apparatus comprising an ingress interface, an egress interface, and a storm controller coupled to the ingress interface and the egress interface. The storm controller is operable to determine whether to forward packets for a traffic flow received at the ingress interface to the egress interface based on a rate over a time period. The storm controller forwards packets for the traffic flow while the rate exceeds a first threshold and is less than a second threshold while a predefined condition exits. The storm controller limits traffic for the traffic flow to the first threshold while the rate exceeds the first threshold and the predefined condition does not exist.
摘要:
In one embodiment, a device receives a first packet stream and a second packet stream over different paths through a network, wherein each of said sent first and the second packet streams includes a same replicated stream of packets. The apparatus processes packets of the first packet stream when the first packet stream is in an active packet stream, and while buffering and subsequently dropping packets of the second packet stream when the second packet stream is in a non-active state. In response to identifying a difference in a number of packets in the same replicated stream of packets received in the second packet stream compared to in the first packet stream equaling or exceeding a predetermined threshold, the second packet stream becomes in the active state and missing packets are forwarded from the buffered second stream packets.
摘要:
A routing mechanism provides network segmentation preservation by route distribution with segment identification, policy distribution for a given VPN segment, and encapsulation/decapsulation for each segment using an Ethernet VLAN_ID, indicative of the VPN segment (subnetwork). Encapsulated segmentation information in a message packet identifies which routing and forwarding table is employed for the next hop. A common routing instance receives the message packets from the common interface, and indexes a corresponding VRF table from the VLAN ID, or segment identifier, indicative of the subnetwork (e.g. segment). In this manner, the routing instance receives the incoming message packet, decapsulates the VLAN ID in the incoming message packet, and indexes the corresponding VRF and policy ID from the VLAN ID, therefore employing a common routing instance over a common subinterface for a plurality of segments (subnetworks) coupled to a particular forwarding device (e.g. VPN router).
摘要:
In an example embodiment, there is disclosed herein an apparatus comprising an ingress interface, an egress interface, and a storm controller coupled to the ingress interface and the egress interface. The storm controller is operable to determine whether to forward packets for a traffic flow received at the ingress interface to the egress interface based on a rate over a time period. The storm controller forwards packets for the traffic flow while the rate exceeds a first threshold and is less than a second threshold while a predefined condition exits. The storm controller limits traffic for the traffic flow to the first threshold while the rate exceeds the first threshold and the predefined condition does not exist.
摘要:
In one embodiment, a device receives a first packet stream and a second packet stream over different paths through a network, wherein each of said sent first and the second packet streams includes a same replicated stream of packets. The apparatus processes packets of the first packet stream when the first packet stream is in an active packet stream, and while buffering and subsequently dropping packets of the second packet stream when the second packet stream is in a non-active state. In response to identifying a difference in a number of packets in the same replicated stream of packets received in the second packet stream compared to in the first packet stream equaling or exceeding a predetermined threshold, the second packet stream becomes in the active state and missing packets are forwarded from the buffered second stream packets.
摘要:
PortChannel groups are disclosed which include multiple PortChannel links of a PortChannel. Further, the selection of a particular PortChannel group, and possibly a PortChannel link within a selected PortChannel group, for a packet is provided by user-programmable matching of programmed values or rules to data extracted from the packet. In this manner, the forwarding of packets over PortChannel groups can be explicit. Moreover, packets of different flows of a packet session can be caused to be forwarded over a same PortChannel group, possibly leading to a service node for performing one or more applications based on the packets of the flow(s) of a packet session.