Extending sso for DHCP snooping to two box redundancy
    6.
    发明授权
    Extending sso for DHCP snooping to two box redundancy 有权
    将DHCP Snooping的sso扩展为两个盒子冗余

    公开(公告)号:US07903647B2

    公开(公告)日:2011-03-08

    申请号:US11289799

    申请日:2005-11-29

    摘要: Disclosed are mechanisms for facilitating the use of DHCP (dynamic host configuration protocol) binding data. In general, certain applications include mechanisms for intercepting data being sent from a node and then determining whether the data corresponds to a valid IP address and MAC address binding. Embodiments of the present invention provide mechanisms for sharing such DHCP binding data between routers (or other type of network devices) in a redundancy group so that any of the routers may take over the data inspection to validate DHCP bindings. In particular aspects of the invention, the DHCP binding data is validated in procedures related to DHCP snooping, dynamic ARP (address resolution protocol) inspection, and the like.

    摘要翻译: 公开了促进使用DHCP(动态主机配置协议)绑定数据的机制。 通常,某些应用包括拦截从节点发送的数据,然后确定数据是否对应于有效的IP地址和MAC地址绑定的机制。 本发明的实施例提供了用于在冗余组中的路由器(或其他类型的网络设备)之间共享这样的DHCP绑定数据的机制,使得任何路由器可以接管数据检查以验证DHCP绑定。 在本发明的特定方面,DHCP绑定数据在与DHCP Snooping,动态ARP(地址解析协议)检查等相关的过程中得到验证。

    Performing lookup operations on associative memory entries
    7.
    发明授权
    Performing lookup operations on associative memory entries 有权
    对关联内存条目执行查找操作

    公开(公告)号:US07237059B2

    公开(公告)日:2007-06-26

    申请号:US11321918

    申请日:2005-12-28

    IPC分类号: G06F12/00

    CPC分类号: G06F17/30982

    摘要: Methods and apparatus are disclosed for performing lookup operations using associative memories, including, but not limited to modifying search keys within an associative memory based on modification mappings, forcing a no-hit condition in response to a highest-priority matching entry including a force no-hit indication, selecting among various sets or banks of associative memory entries in determining a lookup result, and detecting and propagating error conditions. In one implementation, each block retrieves a modification mapping from a local memory and modifies a received search key based on the mapping and received modification data. In one implementation, each of the associative memory entries includes a field for indicating that a successful match on the entry should or should not force a no-hit result. In one implementation, an indication of which associative memory blocks or sets of entries to use in a particular lookup operation is retrieved from a memory.

    摘要翻译: 公开了用于使用关联存储器执行查找操作的方法和装置,包括但不限于基于修改映射修改关联存储器内的搜索关键字,响应于最高优先级的匹配条目来响应不受限制的条件,包括力 - 指示,在确定查找结果中选择各种组或存储器中的关联存储器条目,以及检测和传播错误条件。 在一个实现中,每个块从本地存储器检索修改映射,并且基于映射和接收到的修改数据修改接收到的搜索密钥。 在一个实现中,每个关联存储器条目包括用于指示条目上的成功匹配应该或不应该强制无命中结果的字段。 在一个实现中,从存储器检索在特定查找操作中使用的哪些关联存储器块或条目集合的指示。

    Generating and merging lookup results to apply multiple features
    9.
    发明授权
    Generating and merging lookup results to apply multiple features 有权
    生成和合并查找结果以应用多个功能

    公开(公告)号:US07177978B2

    公开(公告)日:2007-02-13

    申请号:US10630174

    申请日:2003-07-29

    IPC分类号: G06F12/00

    摘要: Methods, apparatus, and other mechanisms are disclosed for merging lookup results, such as from one or more associative memory banks and/or memory devices. An access list is identified. A first set of entries corresponding to a first feature of the access control list entries and a second set of entries corresponding to a second feature of the access control list entries are identified. First and second associative memory banks are programmed respectively based on the first and second sets of entries. Lookup operations are then typically performed substantially simultaneously on the first and second sets of associative memory entries programmed in the associative memory banks to generate multiple lookup results, with these results typically being identified directly, or via a lookup operation in an adjunct memory or other storage mechanism. These lookup results are then combined to generate a merged lookup result.

    摘要翻译: 公开了用于合并诸如来自一个或多个关联存储体和/或存储器装置的查找结果的方法,装置和其它机制。 识别访问列表。 识别对应于访问控制列表条目的第一特征的第一组条目和与访问控制列表条目的第二特征相对应的第二组条目。 基于第一和第二组条目分别对第一和第二关联存储体进行编程。 然后,通常在关联存储器组中编程的第一组和第二组关联存储器条目上基本上同时执行查找操作,以生成多个查找结果,这些结果通常直接被识别,或者经由辅助存储器或其他存储器中的查找操作 机制。 然后将这些查找结果组合以生成合并的查找结果。

    Using Fabric Port-Channels to Scale IP Connectivity to Hosts in Directly Connected Subnets in Massive Scale Data Centers
    10.
    发明申请
    Using Fabric Port-Channels to Scale IP Connectivity to Hosts in Directly Connected Subnets in Massive Scale Data Centers 审中-公开
    使用结构端口通道来缩放与大规模数据中心直连子网中的主机的IP连接

    公开(公告)号:US20140064270A1

    公开(公告)日:2014-03-06

    申请号:US13599446

    申请日:2012-08-30

    IPC分类号: H04L12/56

    CPC分类号: H04L12/4675 H04L49/354

    摘要: Systems and methods are provided for using fabric port-channels for Switched Virtual Interfaces (SVIs) to scale IP connectivity for hosts in directly connected subnets in massive scale data centers. By representing SVIs by internal fabric port-channels, ToRs hosting the SVI can share routed traffic directed toward hosts within the associated vlan in a load-balanced manner without frequent updates to the FIB/Adjacency tables.

    摘要翻译: 提供了系统和方法,用于使用交换虚拟接口(SVI)的结构端口通道扩展大规模数据中心直接连接子网中主机的IP连接。 通过内部结构端口信道表示SVI,承载SVI的ToR可以以负载均衡的方式共享指向相关vlan内的主机的路由流量,而不频繁更新FIB /邻接表。