Method and apparatus for access security services
    1.
    发明授权
    Method and apparatus for access security services 有权
    访问安全服务的方法和装置

    公开(公告)号:US08826385B2

    公开(公告)日:2014-09-02

    申请号:US12082835

    申请日:2008-04-15

    申请人: Paul T. Congdon

    发明人: Paul T. Congdon

    IPC分类号: H04L29/06

    CPC分类号: H04L63/105 H04L63/08

    摘要: One embodiment disclosed relates to a method for a switch to respond to a new client. A new client is detected at a port of the switch. The switch temporarily assigns the port to be an untagged member of a virtual local area network (VLAN) which is configured for unauthorized clients. Initialization services are provided to the new client via the unauthorized-client VLAN. The new client may be authenticated by way of an authentication session using the unauthorized-client VLAN. If the new client is authenticated, then the untagged membership of the port in the unauthorized-client VLAN is dropped, and the port is assigned to be an untagged member of a specified VLAN.

    摘要翻译: 公开的一个实施例涉及一种用于对新客户端进行响应的开关的方法。 在交换机的端口上检测到一个新的客户端。 交换机暂时将该端口分配为虚拟局域网(VLAN)的未标记成员,该虚拟局域网(VLAN)配置为未经授权的客户端。 初始化服务通过未经授权的客户端VLAN提供给新客户端。 可以通过使用未经授权的客户端VLAN的认证会话认证新客户端。 如果新的客户端被认证,那么未经授权的客户端VLAN中的端口的untagged成员将被丢弃,并且该端口被分配为指定VLAN的untagged成员。

    Method and apparatus for selecting spanning tree root
    2.
    发明授权
    Method and apparatus for selecting spanning tree root 有权
    选择生成树根的方法和装置

    公开(公告)号:US08203970B2

    公开(公告)日:2012-06-19

    申请号:US11581974

    申请日:2006-10-16

    IPC分类号: G01R31/08 H04L12/28

    摘要: One embodiment relates to a method of selecting a root node for a spanning tree. Spanning trees are simulated with different nodes as the root node. An optimality criterion is calculated for each simulated spanning tree. Another embodiment relates to a network management apparatus that includes a processor, memory for storing processor-executable instructions and data, an internal communication system, and at least one port. The memory includes a) processor-executable code configured to simulate spanning trees with different nodes as the root node, and b) processor-executable code configured to calculate an optimality criterion for each simulated spanning tree. Other embodiments are also disclosed.

    摘要翻译: 一个实施例涉及为生成树选择根节点的方法。 以不同节点为根节点模拟生成树。 为每个模拟生成树计算最优性准则。 另一实施例涉及一种包括处理器,用于存储处理器可执行指令和数据的存储器,内部通信系统以及至少一个端口的网络管理装置。 存储器包括:a)处理器可执行代码,被配置为模拟具有不同节点的生成树作为根节点,以及b)被配置为针对每个模拟生成树计算最优性准则的处理器可执行代码。 还公开了其他实施例。

    Establishing Network Quality of Service for a Virtual Machine
    3.
    发明申请
    Establishing Network Quality of Service for a Virtual Machine 有权
    建立虚拟机的网络服务质量

    公开(公告)号:US20110007746A1

    公开(公告)日:2011-01-13

    申请号:US12501067

    申请日:2009-07-10

    IPC分类号: H04L12/56 G06F9/455

    摘要: A system and method for implementing a VM to identify a data packet for transmission, the data packet including a QoS the data packet is to receive as compared to another QoS that another data packet is to receive. The system and method further includes a SNIC to pull the data packet from the VM based upon the QoS the data packet is to receive. The system and method may also include a link scheduler module to transmit the data packet based upon the QoS the data packet is to receive. The system and method may also include a receiver to receive a management instruction from a network management device, the management instruction to dictate the QoS the data packet is to receive based upon a SLA.

    摘要翻译: 一种用于实现VM以识别用于传输的数据分组的系统和方法,所述数据分组包括与另一数据分组将要接收的另一QoS相比数据分组将要接收的QoS。 该系统和方法还包括:SNIC,用于根据数据包要接收的QoS来拉取来自VM的数据包。 系统和方法还可以包括链路调度器模块,用于基于数据分组将要接收的QoS发送数据分组。 该系统和方法还可以包括接收器,用于从网络管理设备接收管理指令,所述管理指令基于SLA来指示数据分组要接收的QoS。

    PREDICTIVE PACKET FORWARDING FOR A NETWORK SWITCH
    4.
    发明申请
    PREDICTIVE PACKET FORWARDING FOR A NETWORK SWITCH 有权
    用于网络交换机的预测分组

    公开(公告)号:US20100118885A1

    公开(公告)日:2010-05-13

    申请号:US12266783

    申请日:2008-11-07

    申请人: Paul T. Congdon

    发明人: Paul T. Congdon

    IPC分类号: H04L12/56

    CPC分类号: H04L49/254 H04L49/3009

    摘要: A network switch includes a predictor using data in a packet to predict a flow for the packet. A forwarding engine forwards at least a portion of the packet on a switch fabric to an egress port in the switch determined from the predicted flow. The forwarding engine is operable to forward the packet on the switch fabric to the egress port determined from the predicted flow prior to a lookup module determining a flow from a lookup.

    摘要翻译: 网络交换机包括使用分组中的数据来预测分组的流的预测器。 转发引擎将交换结构上的分组的至少一部分转发到从预测流确定的交换机中的出口端口。 转发引擎可操作以在查找模块确定来自查找的流之前将交换结构上的分组转发到从预测流量确定的出口端口。

    METHOD OF DETECTING A NETWORK CABLING CHANGE
    5.
    发明申请
    METHOD OF DETECTING A NETWORK CABLING CHANGE 审中-公开
    检测网络布局变化的方法

    公开(公告)号:US20080265915A1

    公开(公告)日:2008-10-30

    申请号:US11739688

    申请日:2007-04-24

    IPC分类号: G01R27/06 G01R27/02

    CPC分类号: G01R27/04

    摘要: A system and method of detecting a network cabling change comprises measuring cable parameters of a cable to create a baseline signature of the cable and storing the baseline signature in a memory. The system and method is operable to detect a cable change based upon a comparison of the stored baseline signature and a subsequent cable measurement. A network device operable to perform the above method comprises a physical layer device that transmits signals into a coupled cable and receives return signals from the cable, a cable diagnostic module that measures cable parameters, a memory operable to store a baseline cable signature, and a controlling system that compares subsequently measured cable parameters to the baseline cable signatures to detect a cable change.

    摘要翻译: 检测网络布线改变的系统和方法包括测量电缆的电缆参数以创建电缆的基线签名并将基线签名存储在存储器中。 该系统和方法可操作以基于所存储的基线签名与随后的电缆测量的比较来检测电缆变化。 可操作以执行上述方法的网络设备包括物理层设备,其将信号发送到耦合的电缆并且从电缆接收返回信号,测量电缆参数的电缆诊断模块,可操作地存储基线电缆签名的存储器和 控制系统将随后测量的电缆参数与基线电缆签名进行比较,以检测电缆更改。

    Controlling communication of data for different user personas
    6.
    发明授权
    Controlling communication of data for different user personas 有权
    控制不同用户角色的数据通信

    公开(公告)号:US09532286B2

    公开(公告)日:2016-12-27

    申请号:US13524290

    申请日:2012-06-15

    CPC分类号: H04W36/14 H04W8/183 H04W76/16

    摘要: Data for a first persona of a user of an electronic device is communicated in a first access network, according to a first agreement between the user and a first service provider of the first access network. Data for a second, different persona of the user is communicated in the first access network, according to a second, different agreement.

    摘要翻译: 根据用户与第一接入网络的第一服务提供商之间的第一协议,在第一接入网络中传送电子设备的用户的第一人物的数据。 根据第二种不同的协议,在第一接入网络中传送用户的第二不同角色的数据。

    Selecting a command file
    7.
    发明授权
    Selecting a command file 有权
    选择一个命令文件

    公开(公告)号:US08983938B1

    公开(公告)日:2015-03-17

    申请号:US12367081

    申请日:2009-02-06

    IPC分类号: G06F17/30 G06F9/44 H04L29/08

    摘要: A method for selecting a command file is described. One or more command files coupled with a first device are accessed. Each command file of the one or more command files comprises one or more command file attributes. One or more device attributes associated with a second device are accessed. The one or more command file attributes and the one or more device attributes are compared to determine a correlation between the one or more command files and the second device. Based on the comparing, generating a ranked portion of the one or more command files according to the correlation.

    摘要翻译: 描述用于选择命令文件的方法。 访问与第一设备耦合的一个或多个命令文件。 一个或多个命令文件的每个命令文件包括一个或多个命令文件属性。 访问与第二设备相关联的一个或多个设备属性。 比较一个或多个命令文件属性和一个或多个设备属性以确定一个或多个命令文件与第二设备之间的相关性。 基于比较,根据相关性生成一个或多个命令文件的排名部分。

    NETWORK VIRTUALIZATION
    8.
    发明申请
    NETWORK VIRTUALIZATION 有权
    网络虚拟化

    公开(公告)号:US20130346583A1

    公开(公告)日:2013-12-26

    申请号:US14000966

    申请日:2011-06-02

    IPC分类号: H04L12/24

    摘要: Embodiments of the present disclosure may include methods, systems, and computer readable media with executable instructions. An example method for network virtualization can include providing, by a datacenter (100) having physical and/or virtual resources, a number of virtual tenant datacenters (tDatacenters), each tDatacenter being isolated from other tDatacenters. A tenant virtual local area network (T-VLAN) (226, 228, 682) is associated to each of the number of tDatacenters, and a value of an end-to-end invariant network virtual local area network (VLAN) identification (VID) label (T-VID) is associated to a particular T-VLAN (226, 228, 682). A network packet associated with the particular T-VLAN (226, 228, 682) is modified at an edge network boundary (561) to include the T-VID. The T-VID is configured to have more than 4096 possible values.

    摘要翻译: 本公开的实施例可以包括具有可执行指令的方法,系统和计算机可读介质。 用于网络虚拟化的示例性方法可以包括由具有物理和/或虚拟资源的数据中心(100)提供多个虚拟租户数据中心(tDatacenters),每个tD中心与其他tDatacenters隔离。 租户虚拟局域网(T-VLAN)(226,228,682)与多个tDatacenters中的每一个相关联,并且端到端不变网络虚拟局域网(VLAN)标识(VID)的值 )标签(T-VID)与特定的T-VLAN(226,228,682)相关联。 与特定T-VLAN(226,228,682)相关联的网络分组在边缘网络边界(561)被修改为包括T-VID。 T-VID配置为具有超过4096个可能的值。

    Method and apparatus for access security services

    公开(公告)号:US20080229393A1

    公开(公告)日:2008-09-18

    申请号:US12082835

    申请日:2008-04-15

    申请人: Paul T. Congdon

    发明人: Paul T. Congdon

    CPC分类号: H04L63/105 H04L63/08

    摘要: One embodiment disclosed relates to a method for a switch to respond to a new client. A new client is detected at a port of the switch. The switch temporarily assigns the port to be an untagged member of a virtual local area network (VLAN) which is configured for unauthorized clients. Initialization services are provided to the new client via the unauthorized-client VLAN. The new client may be authenticated by way of an authentication session using the unauthorized-client VLAN. If the new client is authenticated, then the untagged membership of the port in the unauthorized-client VLAN is dropped, and the port is assigned to be an untagged member of a specified VLAN.

    Method and apparatus for selecting spanning tree root
    10.
    发明申请
    Method and apparatus for selecting spanning tree root 有权
    选择生成树根的方法和装置

    公开(公告)号:US20080089246A1

    公开(公告)日:2008-04-17

    申请号:US11581974

    申请日:2006-10-16

    IPC分类号: H04L12/28

    摘要: One embodiment relates to a method of selecting a root node for a spanning tree. Spanning trees are simulated with different nodes as the root node. An optimality criterion is calculated for each simulated spanning tree. Another embodiment relates to a network management apparatus that includes a processor, memory for storing processor-executable instructions and data, an internal communication system, and at least one port. The memory includes a) processor-executable code configured to simulate spanning trees with different nodes as the root node, and b) processor-executable code configured to calculate an optimality criterion for each simulated spanning tree. Other embodiments are also disclosed.

    摘要翻译: 一个实施例涉及为生成树选择根节点的方法。 以不同节点为根节点模拟生成树。 为每个模拟生成树计算最优性准则。 另一实施例涉及一种包括处理器,用于存储处理器可执行指令和数据的存储器,内部通信系统以及至少一个端口的网络管理装置。 存储器包括:a)处理器可执行代码,被配置为模拟具有不同节点的生成树作为根节点,以及b)被配置为针对每个模拟生成树计算最优性准则的处理器可执行代码。 还公开了其他实施例。