Hierarchical redundancy for a distributed control plane
    1.
    发明授权
    Hierarchical redundancy for a distributed control plane 有权
    分布式控制平面的分层冗余

    公开(公告)号:US07894334B2

    公开(公告)日:2011-02-22

    申请号:US12192674

    申请日:2008-08-15

    IPC分类号: H04L1/00

    CPC分类号: H04L41/044

    摘要: A method and apparatus for hierarchical redundancy for a distributed control plane. In one embodiment of the invention, control plane processes are distributed among a plurality of processing entities including an active primary control processing entity and multiple secondary processing entities. Each of the secondary processing entities performs a dual role; an active role and a standby role. An application redundancy manager (ARM) instantiated on the active primary control processing entity manages the redundancy services for the secondary processing entities. For each secondary processing entity, the ARM selects one of the secondary processing entities to act as a backup for another one of the secondary processing entities. Upon a failure of one of the secondary processing entities, the ARM causes the secondary processing entity backing up the failed secondary processing entity to transition its standby role to an active role regarding the services provided by the failed secondary processing entity.

    摘要翻译: 一种用于分布式控制平面的分级冗余的方法和装置。 在本发明的一个实施例中,控制平面过程分布在多个处理实体中,包括主动主控制处理实体和多个辅助处理实体。 每个二级处理实体都具有双重作用; 积极的角色和备用角色。 在活动主控制处理实体上实例化的应用冗余管理器(ARM)管理辅助处理实体的冗余服务。 对于每个二级处理实体,ARM选择一个辅助处理实体作为另一个辅助处理实体的备份。 在二级处理实体之一发生故障时,ARM使辅助处理实体备份故障的辅助处理实体将其备用角色转换为关于由故障的二级处理实体提供的服务的主动角色。

    Method and Apparatus for a Distributed Control Plane
    2.
    发明申请
    Method and Apparatus for a Distributed Control Plane 有权
    分布式控制平面的方法和装置

    公开(公告)号:US20100042712A1

    公开(公告)日:2010-02-18

    申请号:US12192566

    申请日:2008-08-15

    IPC分类号: G06F15/16

    CPC分类号: G06F15/16 G06F9/50 G06F9/546

    摘要: A method and apparatus for a distributed control plane. In one embodiment of the invention, a primary control card distributes control plane process instances among one or more secondary cards, including a secondary control card and/or one or more Advanced Service Engine (ASE) cards. The primary control card associates particular control messages with particular control plane process instances. Upon a line card receiving a control message that is associated with a particular control plane instance, the line card forwards the control message directly to that particular control plane instance.

    摘要翻译: 一种分布式控制平面的方法和装置。 在本发明的一个实施例中,主控卡在一个或多个辅助卡中分配控制平面处理实例,包括辅助控制卡和/或一个或多个高级服务引擎(ASE)卡。 主控制卡将特定控制消息与特定的控制平面过程实例相关联。 在线卡接收到与特定控制平面实例相关联的控制消息时,线卡将控制消息直接转发到该特定控制平面实例。

    Method and apparatus for a distributed control plane
    3.
    发明授权
    Method and apparatus for a distributed control plane 有权
    分布式控制平面的方法和装置

    公开(公告)号:US07849127B2

    公开(公告)日:2010-12-07

    申请号:US12192566

    申请日:2008-08-15

    IPC分类号: G06F15/16 G06F11/00

    CPC分类号: G06F15/16 G06F9/50 G06F9/546

    摘要: A method and apparatus for a distributed control plane. In one embodiment of the invention, a primary control card distributes control plane process instances among one or more secondary cards, including a secondary control card and/or one or more Advanced Service Engine (ASE) cards. The primary control card associates particular control messages with particular control plane process instances. Upon a line card receiving a control message that is associated with a particular control plane instance, the line card forwards the control message directly to that particular control plane instance.

    摘要翻译: 一种分布式控制平面的方法和装置。 在本发明的一个实施例中,主控卡在一个或多个辅助卡中分配控制平面处理实例,包括辅助控制卡和/或一个或多个高级服务引擎(ASE)卡。 主控制卡将特定控制消息与特定的控制平面过程实例相关联。 在线卡接收到与特定控制平面实例相关联的控制消息时,线卡将控制消息直接转发到该特定控制平面实例。

    Hierarchical Redundancy for a Distributed Control Plane
    4.
    发明申请
    Hierarchical Redundancy for a Distributed Control Plane 有权
    分布式控制平面的分层冗余

    公开(公告)号:US20100039932A1

    公开(公告)日:2010-02-18

    申请号:US12192674

    申请日:2008-08-15

    IPC分类号: H04L12/24

    CPC分类号: H04L41/044

    摘要: A method and apparatus for hierarchical redundancy for a distributed control plane. In one embodiment of the invention, control plane processes are distributed among a plurality of processing entities including an active primary control processing entity and multiple secondary processing entities. Each of the secondary processing entities performs a dual role; an active role and a standby role. An application redundancy manager (ARM) instantiated on the active primary control processing entity manages the redundancy services for the secondary processing entities. For each secondary processing entity, the ARM selects one of the secondary processing entities to act as a backup for another one of the secondary processing entities. Upon a failure of one of the secondary processing entities, the ARM causes the secondary processing entity backing up the failed secondary processing entity to transition its standby role to an active role regarding the services provided by the failed secondary processing entity.

    摘要翻译: 一种用于分布式控制平面的分级冗余的方法和装置。 在本发明的一个实施例中,控制平面过程分布在多个处理实体中,包括主动主控制处理实体和多个辅助处理实体。 每个二级处理实体都具有双重作用; 积极的角色和备用角色。 在活动主控制处理实体上实例化的应用冗余管理器(ARM)管理辅助处理实体的冗余服务。 对于每个二级处理实体,ARM选择一个辅助处理实体作为另一个辅助处理实体的备份。 在二级处理实体之一发生故障时,ARM使辅助处理实体备份故障的辅助处理实体将其备用角色转换为关于由故障的二级处理实体提供的服务的主动角色。

    Optimized security association database management on home/foreign agent
    5.
    发明申请
    Optimized security association database management on home/foreign agent 有权
    优化的安全关联数据库管理在家庭/外国代理

    公开(公告)号:US20090133102A1

    公开(公告)日:2009-05-21

    申请号:US11985801

    申请日:2007-11-16

    IPC分类号: G06F21/20 G06F21/00

    CPC分类号: H04W12/06 H04L63/20

    摘要: Techniques for security association management on a home agent and a foreign agent are described herein. In one embodiment, in response to a first mobile network registration request from a mobile node, a remote authentication facility is accessed to retrieve a security association for the mobile node for authenticating and providing a first network connectivity to the mobile node, wherein the security association is associated with a lifespan. The security association is inserted in a local security association database to create a security association entry, wherein the security association entry includes the lifespan. A second mobile network registration request from the mobile node after the first network connectivity has been terminated is received and the security association entry in the local security association database that corresponds to the mobile node is used to provide authentication of the mobile node without having to access the remote authentication facility again if the lifespan associated with the security association entry is valid. Other methods and apparatuses are also described.

    摘要翻译: 在本文中描述了用于归属代理和外部代理的安全关联管理的技术。 在一个实施例中,响应于来自移动节点的第一移动网络注册请求,访问远程认证设备以检索用于移动节点的安全关联,用于认证并向移动节点提供第一网络连接,其中安全关联 与寿命相关联。 将安全关联插入到本地安全关联数据库中以创建安全关联条目,其中安全关联条目包括寿命。 接收到在第一网络连接已经终止之后来自移动节点的第二移动网络注册请求,并且使用与移动节点对应的本地安全关联数据库中的安全关联条目来提供移动节点的认证而不必访问 如果与安全关联条目相关联的寿命有效,则再次进行远程认证。 还描述了其它方法和装置。

    Optimized security association database management on home/foreign agent
    6.
    发明授权
    Optimized security association database management on home/foreign agent 有权
    优化的安全关联数据库管理在家庭/外国代理

    公开(公告)号:US08166527B2

    公开(公告)日:2012-04-24

    申请号:US11985801

    申请日:2007-11-16

    IPC分类号: G06F21/00

    CPC分类号: H04W12/06 H04L63/20

    摘要: Techniques for security association management on a home and foreign agent are described. In one embodiment, in response to a first mobile network registration request from a mobile node, a remote authentication facility is accessed to retrieve a security association for the mobile node for authenticating and providing a first network connectivity to the mobile node, wherein the security association is associated with a lifespan. The security association is inserted in a local security association database (SADB) to create a security association entry, wherein the security association entry includes the lifespan. A second mobile network registration request from the mobile node after the first connectivity is terminated is received and the security association entry in the local SADB that corresponds to the mobile node is used to provide authentication of the mobile node without having to access the remote authentication facility again if the lifespan associated with the security association entry is valid.

    摘要翻译: 描述了家庭和外国代理人的安全关联管理技术。 在一个实施例中,响应于来自移动节点的第一移动网络注册请求,访问远程认证设备以检索用于移动节点的安全关联,用于认证并向移动节点提供第一网络连接,其中安全关联 与寿命相关联。 安全关联被插入到本地安全关联数据库(SADB)中以创建安全关联条目,其中安全关联条目包括寿命。 接收到在第一连接终止之后来自移动节点的第二移动网络注册请求,并且使用与移动节点对应的本地SADB中的安全关联条目来提供移动节点的认证,而不必访问远程认证设备 如果与安全关联条目相关联的寿命有效,则再次。

    Link state identifier collision handling
    7.
    发明授权
    Link state identifier collision handling 有权
    链路状态标识符冲突处理

    公开(公告)号:US08855113B2

    公开(公告)日:2014-10-07

    申请号:US13611981

    申请日:2012-09-12

    IPC分类号: H04L12/28 H04L12/751

    CPC分类号: H04L45/02

    摘要: Methods and apparatus for a network element to handle LSID collisions to prevent different LSAs associated with different routes from sharing the same LSID. According to one embodiment, responsive to determining that a tentative LSID that is generated for a first route that is being added collides with an LSID that is assigned to an LSA for a second route, and that one of the first and second routes is a host route, the host route is suppressed. If the first route is the host route, suppressing includes not originating an LSA for the first route. If the second route is the host route, suppressing includes purging the LSA for the second route and not originating an LSA for the second route. Although the host route is suppressed, network reachability of the range subsuming the host route is provided through the route that is not the host route.

    摘要翻译: 用于处理LSID冲突的网元的方法和装置,以防止与不同路由相关联的不同LSA共享相同的LSID。 根据一个实施例,响应于确定为被添加的第一路由生成的临时LSID与分配给用于第二路由的LSA的LSID相冲突,并且所述第一和第二路由中的一个是主机 路由,主机路由被抑制。 如果第一条路由是主机路由,则抑制包括不发起第一条路由的LSA。 如果第二路由是主机路由,则抑制包括清除第二路由的LSA,而不是为第二路由发起LSA。 虽然主机路由被抑制,但是通过不是主机路由的路由来提供包含主机路由的范围的网络可达性。

    METHOD AND APPARATUS FOR LIMITING TOPOLOGY AND REACHABILITY INFORMATION IN AN OSPF AREA
    8.
    发明申请
    METHOD AND APPARATUS FOR LIMITING TOPOLOGY AND REACHABILITY INFORMATION IN AN OSPF AREA 有权
    限制OSPF区域拓扑和可达性信息的方法和装置

    公开(公告)号:US20140010117A1

    公开(公告)日:2014-01-09

    申请号:US13570205

    申请日:2012-08-08

    IPC分类号: H04L12/28

    摘要: A network element that acts as a hub in a hub and spoke topology is configured to limit the amount of topology and reachability information that is advertised to a set of one or more remote network elements that act as one or more spokes in the hub and spoke topology in a same routing area. The network element generates a set of one or two link state advertisements (LSAs) to advertise over an interface that connects at least one of the set of remote network elements to the network element, wherein the set of LSAs includes information that describes a connection to the set of remote network elements and one or more aggregate routes. The network element advertises, during a database exchange process with the one of the set of remote network elements, the set of LSAs to the one of the set of remote network elements.

    摘要翻译: 充当集线器和分支拓扑中的集线器的网络元件被配置为将发布的拓扑和可达性信息的数量限制在一组或多个远程网络元素中,这些远程网络元素充当集线器和辐条中的一个或多个辐条 拓扑在相同的路由区域。 所述网络单元生成一组一个或两个链路状态通告(LSA),以通过将所述一组远程网络元件中的至少一个连接到所述网络元件的接口进行通告,其中,所述一组LSA包括描述连接到 一组远程网络元素和一个或多个聚合路由。 在与所述一组远程网络元件的数据库交换过程期间,所述网络元件将所述一组LSA通告给所述一组远程网络元件中的一个。

    Link state identifier collision handling
    9.
    发明授权
    Link state identifier collision handling 有权
    链路状态标识符冲突处理

    公开(公告)号:US08289961B2

    公开(公告)日:2012-10-16

    申请号:US12544789

    申请日:2009-08-20

    IPC分类号: H04L12/28

    CPC分类号: H04L45/02

    摘要: Methods and apparatus for a network element to handle LSID collisions to prevent different LSAs associated with different routes from sharing the same LSID. According to one embodiment, responsive to determining that a tentative LSID that is generated for a first route that is being added collides with an LSID that is assigned to an LSA for a second route, and that one of the first and second routes is a host route, the host route is suppressed. If the first route is the host route, suppressing includes not originating an LSA for the first route. If the second route is the host route, suppressing includes purging the LSA for the second route and not originating an LSA for the second route. Although the host route is suppressed, network reachability of the range subsuming the host route is provided through the route that is not the host route.

    摘要翻译: 用于处理LSID冲突的网元的方法和装置,以防止与不同路由相关联的不同LSA共享相同的LSID。 根据一个实施例,响应于确定为被添加的第一路由生成的临时LSID与分配给用于第二路由的LSA的LSID相冲突,并且所述第一和第二路由中的一个是主机 路由,主机路由被抑制。 如果第一条路由是主机路由,则抑制包括不发起第一条路由的LSA。 如果第二路由是主机路由,则抑制包括清除第二路由的LSA,而不是为第二路由发起LSA。 虽然主机路由被抑制,但是通过不是主机路由的路由来提供包含主机路由的范围的网络可达性。

    Open shortest path first (OSPF) nonstop routing (NSR) with link derivation
    10.
    发明授权
    Open shortest path first (OSPF) nonstop routing (NSR) with link derivation 有权
    使用链路推导开放最短路径优先(OSPF)不间断路由(NSR)

    公开(公告)号:US08913485B2

    公开(公告)日:2014-12-16

    申请号:US13350234

    申请日:2012-01-13

    摘要: OSPF NSR with link derivation synchronization is described. When a network element having an active OSPF instance and a standby OSPF instance attempts to create a FULL adjacency with a neighbor network element using a neighbor data structure of the active OSPF instance, and if and when a switch causes the second OSPF instance to act as the active OSPF instance, neighbor information is retrieved from the LSAs of the standby OSPF instance and a link is derived between the network element and the neighbor network element based on the retrieved neighbor information. In one embodiment, the standby OSPF instance retrieves virtual neighbor information from its LSAs and derives a virtual link between the network element and the neighbor network element based on the retrieved virtual neighbor information without having to synchronize the neighbor information between the active and standby OSPF instance.

    摘要翻译: 描述了具有链路导出同步的OSPF NSR。 当具有活动OSPF实例和备用OSPF实例的网元尝试使用活动OSPF实例的邻居数据结构与邻居网元建立FULL邻接关系时,以及交换机如果和何时使第二个OSPF实例充当 主动OSPF实例,从备用OSPF实例的LSA检索邻居信息,并根据检索到的邻居信息在网元和邻居网元之间导出链路。 在一个实施例中,备用OSPF实例从其LSA检索虚拟邻居信息,并且基于检索到的虚拟邻居信息导出网元和邻居网元之间的虚拟链路,而不必同步主备OSPF实例之间的邻居信息 。