Network-based security services for managed internet service
    1.
    发明授权
    Network-based security services for managed internet service 有权
    用于托管互联网服务的基于网络的安全服务

    公开(公告)号:US08549610B2

    公开(公告)日:2013-10-01

    申请号:US12636286

    申请日:2009-12-11

    IPC分类号: H04L29/06

    CPC分类号: H04L45/00 H04L63/0227

    摘要: Data traffic is routed from a customer edge (CE) router to an Ethernet services router via a generic routing encapsulation (GRE) tunnel. Upon routing the data traffic from the CE router to the Ethernet services router, the data traffic is routed from the Ethernet services router to an aggregation switch. Upon routing the data traffic from the Ethernet services router to the aggregation switch, the data traffic is routed from the aggregation switch to a service switch through a security module, the security module configured to filter the data traffic. The filtered data traffic is routed from the service switch to the Ethernet services router. Upon routing the filtered data traffic from the service switch to the Ethernet services router, the filtered data traffic is routed from the Ethernet services router to a provider edge (PE) router.

    摘要翻译: 数据流量通过通用路由封装(GRE)隧道从客户端(CE)路由器路由到以太网服务路由器。 在将数据流量从CE路由器路由到以太网服务路由器时,数据流量从以太网服务路由器路由到聚合交换机。 在将数据流量从以太网服务路由器路由到聚合交换机时,数据流量通过安全模块从聚合交换机路由到业务交换机,安全模块被配置为过滤数据流量。 经过过滤的数据流量从服务交换机路由到以太网服务路由器。 将经过过滤的数据流量从业务交换机路由到以太网业务路由器后,过滤的数据流量将从以太网业务路由器路由到提供商边缘(PE)路由器。