Optimizing flow detection and reducing control plane processing in a multi-protocol over ATM (MPOA) system
    1.
    发明授权
    Optimizing flow detection and reducing control plane processing in a multi-protocol over ATM (MPOA) system 失效
    通过ATM(MPOA)系统的多协议优化流量检测和减少控制平面处理

    公开(公告)号:US06279035B1

    公开(公告)日:2001-08-21

    申请号:US09058693

    申请日:1998-04-10

    IPC分类号: G06F1300

    摘要: A method and apparatus for reducing the amount of control plane processing and flow detection required in a Multiprotocol Over ATM (MPOA) system are provided. According to one aspect of the present invention, flow detection processing may be altered based upon a packet's content. A first MPOA client (MPC) may include a plurality of flow detection mechanisms including standard MPOA processing and modified flow detection processing. For example, a flow may be determined to exist when the number of packets to a particular destination within a predetermined time interval exceeds a threshold value. Alternatively, a flow may be determined to exist immediately for certain types of traffic and detection of a flow may be suppressed for other types of traffic. Upon receipt at a first MPC, traffic may be classified based upon any information contained within a packet, including the header, the payload, or portions and/or combinations thereof. Based upon the packet's content, the MPC then selects among the plurality of flow detection mechanisms for purposes of determining whether or not a flow exists. According to another aspect of the present invention, control plane processing may be managed based upon a packet's content. A first MPC determines whether or not a stream of data with which a packet is associated justifies establishing a shortcut between the first MPC and the MPC with which the target is associated. After determining that the shortcut is justified, the first MPC allows or disallows the transmission of a resolution request based upon the packet's content.

    摘要翻译: 提供了一种用于减少多协议ATM(MPOA)系统中所需的控制平面处理和流量检测量的方法和装置。 根据本发明的一个方面,可以基于分组的内容来改变流检测处理。 第一MPOA客户端(MPC)可以包括包括标准MPOA处理和修改的流检测处理的多个流检测机制。 例如,当在预定时间间隔内到特定目的地的分组数量超过阈值时,可以确定存在流程。 或者,可以确定流量可以立即存在于某些类型的业务,并且可以抑制流的检测用于其他类型的业务。 在第一MPC接收时,可以基于分组中包含的任何信息来分类业务,包括报头,有效载荷或其部分和/或其组合。 基于分组的内容,MPC然后在多个流检测机构中选择用于确定流是否存在的目的。 根据本发明的另一方面,可以基于分组的内容来管理控制平面处理。 第一MPC确定数据包相关联的数据流是否与在第一MPC与目标所关联的MPC之间建立快捷方式相对应。 在确定快捷方式是合理的之后,第一MPC允许或不允许基于分组的内容传送解决请求。

    Method and apparatus for processing data packets in a network
    2.
    发明授权
    Method and apparatus for processing data packets in a network 失效
    用于处理网络中的数据分组的方法和装置

    公开(公告)号:US5790554A

    公开(公告)日:1998-08-04

    申请号:US538921

    申请日:1995-10-04

    摘要: A method and apparatus for filtering data packets from a network device, such as a LAN switch, onto a network coupled thereto based on the content of the data packets. A pattern is defined and a forwarding action performed on data packets whose contents match or do not match the pattern, according to a specified condition. Filters may be configured on a per port basis, i.e., a filter can be applied to data packets entering or exiting a specific port on a networking device such as a LAN switch. A data packet received or transmitted at a port of a network device whose contents meet a condition specified by a filter may be processed in a number of ways: the packet may be forwarded to a normal destination port according to normal forwarding rules, forwarded to additional destination ports, forwarded to a monitor destination port, dropped, or subjected to another filter. The next filter may define a different forwarding action for data packets that do not meet the condition specified by the present filter.

    摘要翻译: 一种用于根据数据分组的内容将诸如LAN交换机等网络设备的数据分组过滤到与其相连的网络上的方法和装置。 根据指定的条件,定义了一个模式,并对其内容与模式匹配或不匹配的数据包执行转发操作。 可以在每个端口的基础上配置过滤器,即,过滤器可以应用于进入或退出诸如LAN交换机的网络设备上的特定端口的数据分组。 在内容满足由过滤器指定的条件的网络设备的端口处接收或发送的数据分组可以以多种方式被处理:可以根据正常的转发规则将分组转发到正常目的地端口,转发到附加 目的端口,转发到监视目标端口,丢弃或经受另一个过滤器。 下一个过滤器可以为不符合本过滤器指定条件的数据包定义不同的转发动作。

    Method and apparatus for managing the flow of data within a switching device
    3.
    再颁专利
    Method and apparatus for managing the flow of data within a switching device 有权
    用于管理交换设备内的数据流的方法和装置

    公开(公告)号:USRE40467E1

    公开(公告)日:2008-08-26

    申请号:US11347786

    申请日:2006-02-03

    IPC分类号: H04L12/00

    摘要: A method and apparatus for managing the flow of data within a switching device is provided. The switching device includes network interface cards connected to a common backplane. Each interface card is configured to support the maximum transfer rate of the backplane by maintaining a “pending” queue to track data that has been received but for which the appropriate routing destination has not yet been determined. The switching device includes a switch controller that maintains a central card/port-to-address table. When an interface card receives data with a destination address that is not known to the interface card, the interface card performs a direct memory access over a bus that is separate from the backplane to read routing data directly from the central table in the switch controller. Each interface card builds and maintains a routing information table in its own local memory that only includes a routing information for the destination addresses that the interface card is most likely to receive.

    摘要翻译: 提供一种用于管理切换装置内的数据流的方法和装置。 交换设备包括连接到公共背板的网络接口卡。 每个接口卡被配置为通过维持“挂起”队列来支持背板的最大传输速率来跟踪已经接收到但是尚未确定适当的路由目的地的数据。 开关装置包括维持中央卡/端口到地址表的开关控制器。 当接口卡接收到具有接口卡不知道的目的地地址的数据时,接口卡通过与背板分离的总线执行直接存储器访问,以直接从交换机控制器中的中央表读取路由数据。 每个接口卡在其本地存储器中构建并维护路由信息表,其中仅包括接口卡最可能接收的目的地地址的路由信息​​。

    Unified, configurable, adaptive, network architecture
    4.
    发明授权
    Unified, configurable, adaptive, network architecture 有权
    统一的,可配置的,自适应的网络架构

    公开(公告)号:US07310664B1

    公开(公告)日:2007-12-18

    申请号:US10773487

    申请日:2004-02-06

    IPC分类号: G06F15/173

    摘要: A network switch having a unified, adaptive management paradigm for wireless network devices is disclosed. The switch includes configurable ports for connecting devices. A software application running on the switch allows a network administrator to selectively configure each port to support either a wired device or wireless device. Configuration information and software images that are needed for operation of the wireless device are associated with the port. When a wireless device is first plugged into the switch port, it downloads its configuration directly from the switch port. By storing the configuration information and images at the switch and automatically downloading them to the wireless devices, the task of configuring the devices is greatly simplified for the network administrator. This is particularly advantageous in heterogeneous network environments that support both wired and wireless devices, and where wireless device are readily moved to different ports.

    摘要翻译: 公开了一种具有用于无线网络设备的统一的自适应管理范例的网络交换机。 交换机包括用于连接设备的可配置端口。 交换机上运行的软件应用程序允许网络管理员选择性地配置每个端口以支持有线设备或无线设备。 无线设备操作所需的配置信息和软件映像与端口相关联。 当无线设备首次插入交换机端口时,它直接从交换机端口下载其配置。 通过将配置信息和图像存储在交换机上并自动将其下载到无线设备,为网络管理员大大简化了配置设备的任务。 这在支持有线和无线设备以及无线设备容易地移动到不同端口的异构网络环境中特别有利。

    Method and apparatus for managing the flow of data within a switching device

    公开(公告)号:US06427185B1

    公开(公告)日:2002-07-30

    申请号:US08896485

    申请日:1997-07-17

    IPC分类号: G06F1208

    摘要: A method and apparatus for managing the flow of data within a switching device is provided. The switching device includes network interface cards connected to a common backplane. Each interface card is configured to support the maximum transfer rate of the backplane by maintaining a “pending” queue to track data that has been received but for which the appropriate routing destination has not yet been determined. The switching device includes a switch controller that maintains a central card/port-to-address table. When an interface card receives data with a destination address that is not known to the interface card, the interface card performs a direct memory access over a bus that is separate from the backplane to read routing data directly from the central table in the switch controller. Each interface card builds and maintains a routing information table in its own local memory that only includes routing information for the destination addresses that the interface card is most likely to receive.

    Apparatus, method and system for improving network security
    6.
    发明授权
    Apparatus, method and system for improving network security 有权
    用于提高网络安全性的装置,方法和系统

    公开(公告)号:US07577996B1

    公开(公告)日:2009-08-18

    申请号:US10773394

    申请日:2004-02-06

    IPC分类号: G06F11/30 H04M1/66

    CPC分类号: H04L63/0853

    摘要: Devices, systems and related methods are disclosed for improving operational security of a network and/or network devices, such as wireless access points (APs). In the disclosed systems, a network device is not fully operational until it is attached to a network and downloads sensitive information. The information is stored in the network device so that when the device is disconnected from the network, the sensitive information is erased from the device, making the device inoperative and removing sensitive information, such as passwords, network security keys, or the like. Disabling the network device in this manner not only prevents the theft of sensitive network access information, by also discourages theft of the device itself because it cannot be used on another network without the configuration information. In addition to downloading configuration information, the network device can also download an executable image that is likewise not permanently resident on the device.

    摘要翻译: 公开了用于改善诸如无线接入点(AP)的网络和/或网络设备的操作安全性的设备,系统和相关方法。 在所公开的系统中,网络设备在连接到网络并且下载敏感信息之前不能完全运行。 该信息存储在网络设备中,使得当设备与网络断开连接时,敏感信息从设备中被擦除,使得设备不起作用,并且去除诸如密码,网络安全密钥等的敏感信息。 以这种方式禁用网络设备不仅防止了敏感网络访问信息的窃取,还阻止了设备本身的窃取,因为它不能在没有配置信息的情况下在另一个网络上使用。 除了下载配置信息之外,网络设备还可以下载同样不永久驻留在设备上的可执行映像。

    Method and apparatus for providing efficient management of resources in a multi-protocol over ATM (MPOA)
    8.
    发明授权
    Method and apparatus for providing efficient management of resources in a multi-protocol over ATM (MPOA) 有权
    用于在ATM(MPOA)多协议中提供资源的有效管理的方法和装置

    公开(公告)号:US06747951B1

    公开(公告)日:2004-06-08

    申请号:US09399548

    申请日:1999-09-20

    IPC分类号: H04L1228

    摘要: A technique for dynamically adjusting the aging time of a shortcut virtual circuit connection (VCC) in a Multi-protocol over ATM (MPOA) client based on one or more factors. In one embodiment, a method of dynamically adjusting aging time of a shortcut VCC includes detecting a packet flow between a source and a destination, establishing a shortcut VCC between the source and destination, and adjusting an aging time of the shortcut VCC in response to the number of VCCs available by the MPOA client. In other embodiment, the aging time is dynamically adjusted based on the VCC threshold level, the protocol of the flow, and/or the application type of the flow.

    摘要翻译: 一种用于基于一个或多个因素来动态调整ATM(MPOA)多协议客户端中的快捷虚拟电路连接(VCC)的老化时间的技术。 在一个实施例中,一种动态调整快捷方式VCC的老化时间的方法包括检测源与目的地之间的分组流,建立源和目的地之间的快捷方式VCC,以及响应于所述源和目的地之间的快捷方式VCC的老化时间 MPOA客户端可用的VCC数量。 在其他实施例中,基于VCC阈值水平,流程协议和/或流程的应用类型来动态地调整老化时间。

    Method and apparatus for controlling data flow within a switching device
    9.
    发明授权
    Method and apparatus for controlling data flow within a switching device 失效
    用于控制切换装置内的数据流的方法和装置

    公开(公告)号:US5732080A

    公开(公告)日:1998-03-24

    申请号:US501483

    申请日:1995-07-12

    IPC分类号: H04L12/56 H04Q11/04 H04L12/28

    摘要: A method and apparatus for controlling data flow within a switching device are provided. The switching device includes a cell-switched backplane. Both packet switched and cell switched network interface cards may be coupled to the cell-switched backplane. A destination tag is created for each unique destination port and for each unique set of destination ports. The destination tags are used to index a master destination tag table. The entry of the master destination tag table that corresponds to a given destination tag includes a destination mask that indicates which ports are destination ports the given destination tag. Local tables are built and maintained within each network interface card based on the information contained in the master destination tag table. When a network interface receives data from an external device, the network interface determines the destination tag associated with the data. Once the destination tag is determined, it is used as an index to the locally stored tables to determine whether the data should be forwarded to any local ports, and whether the data should be sent over the cell-switched backplane to other network interfaces within the switching device. When a network interface receives data over the backplane, the network interface uses the destination tag as an index to a locally stored table to determine to which local ports the data should be sent. Tables also establish correlations between destination tags and control information for converting data between packets and cells.

    摘要翻译: 提供一种用于控制切换装置内的数据流的方法和装置。 交换设备包括小区交换背板。 分组交换和小区交换网络接口卡都可以耦合到小区交换背板。 为每个唯一目标端口和每个唯一的目标端口集创建一个目标标签。 目的地标签用于索引主目标标签表。 对应于给定目的地标签的主目的地标签表的条目包括目的掩码,其指示哪些端口是给定目的地标签的目的地端口。 根据主目标标签表中包含的信息,在每个网络接口卡内构建和维护本地表。 当网络接口从外部设备接收数据时,网络接口确定与数据相关联的目的地标签。 一旦确定了目的地标签,就将其用作本地存储表的索引,以确定数据是否应转发到任何本地端口,以及数据是否应通过小区交换背板发送到其中的网络接口 开关装置。 当网络接口通过背板接收数据时,网络接口使用目标标签作为本地存储表的索引,以确定应向哪些本地端口发送数据。 表格还建立了目标标签和控制信息之间的相关性,以便在数据包和单元之间转换数据。