Method of self-learning for the switching nodes of a data transmission network
    1.
    发明授权
    Method of self-learning for the switching nodes of a data transmission network 失效
    数据传输网络交换节点的自学习方法

    公开(公告)号:US06628655B1

    公开(公告)日:2003-09-30

    申请号:US09490767

    申请日:2000-01-24

    IPC分类号: H04L1228

    摘要: Method of self-learning for a switching node in a data transmission network (10) wherein Internet Protocol (IP) data frames are transmitted between a sending unit (20 or 24) and a receiving unit (22 or 26) via an ingress switching node (12) linked to an egress switching node (16 or 18) by a plurality of intermediate switching nodes (14) interconnected by trunks. The method consists principally in generating, in the input port/trunk interface of the switching node, a switch header including a source identification field, a destination identification field and a temporary label identifying the flow of data in response to its first data frame, this first switch header being concatenated to said data frame before being transmitted to the router interface of the switching node via its switch engine when the data frame does not belong to a known flow of data and the router has to define the routing of the flow of data. An update message is sent back from the output trunk/port interface to the input port/trunk interface to update the latter with the destination identification and with a switching label replacing the temporary label associated with the flow of data, in order to transmit the following frames of the flow of data directly to the trunk/port interface by using this switching label.

    摘要翻译: 数据传输网络(10)中的交换节点的自学习方法,其中因特网协议(IP)数据帧经由入口交换节点在发送单元(20或24)和接收单元(22或26)之间传输 (12)通过由干线互连的多个中间交换节点(14)链接到出口交换节点(16或18)。 该方法主要包括在交换节点的输入端口/中继接口中生成包括源标识字段,目的地标识字段和标识响应于其第一数据帧的数据流的临时标签的交换机标题,该 当数据帧不属于已知的数据流并且路由器必须定义数据流的路由时,第一交换机头部被连接到所述数据帧,然后经由其交换引擎被发送到交换节点的路由器接口 。 将更新消息从输出中继/端口接口发送回输入端口/中继接口,以更新后者与目的地标识,并用交换标签代替与数据流相关联的临时标签,以便传送以下信息 通过使用该切换标签将数据流的帧直接发送到中继/端口接口。

    Packet header compression system and method based upon a dynamic template creation
    2.
    发明授权
    Packet header compression system and method based upon a dynamic template creation 失效
    基于动态模板创建的数据包头压缩系统和方法

    公开(公告)号:US07664881B2

    公开(公告)日:2010-02-16

    申请号:US10886956

    申请日:2004-07-08

    IPC分类号: G06F15/16

    摘要: Header compression system for compressing the header of the data packets of a flow transmitted from an ingress node to an egress node through a data transmission network comprising template creating means, in both ingress node and egress node, adapted for creating the same compression template from a predetermined number of uncompressed data packets at the beginning of the flow respectively transmitted by the ingress node and received by the egress node, and header compression means, in the ingress node, adapted for compressing the header of each packet following the predetermined number of uncompressed data packets before transmitting it through the data transmission network, the compression being achieved by using the compression template.

    摘要翻译: 标题压缩系统,用于压缩通过数据传输网络从入口节点传送到出口节点的流的数据分组的报头,包括模板创建装置,在入口节点和出口节点中适于从一个 在入口节点分别由入口节点发送并由出口节点接收的流的开始处的预定数量的未压缩数据分组和头部压缩装置,适用于压缩预定数量的未压缩数据之后的每个分组的报头 数据包在通过数据传输网络传输之前,通过使用压缩模板来实现压缩。

    Method and system for assigning labels to data flows over a packet switched network
    3.
    发明授权
    Method and system for assigning labels to data flows over a packet switched network 有权
    通过分组交换网络为数据流分配标签的方法和系统

    公开(公告)号:US06499061B1

    公开(公告)日:2002-12-24

    申请号:US09330853

    申请日:1999-06-11

    IPC分类号: G06F1516

    CPC分类号: H04L12/4641

    摘要: Method and system for assigning labels in a data transmission network in which flows of data, composed of packets, are transmitted from a source node to a destination node through a plurality of switching nodes. The network is further characterized in that a label, identifying each flow of data, is added to each packet of the flow of data before the packet is transmitted from a transmitting node to an adjacent receiving node in the network. This so-called identification label is recognized by the receiving node as the identification of the flow of data to be transmitted. Each node in the network assigns an identification label to the packets when a new flow of data is received by the node. Both the transmitting and receiving nodes in the network generate an identical label for a given flow of data. Thus, the overhead associated with the sending of assigned labels from assigning nodes to corresponding upstream or downstream transmitting or receiving nodes in the network is avoided.

    摘要翻译: 在数据传输网络中分配标签的方法和系统,其中由分组组成的数据流通过多个交换节点从源节点传送到目的地节点。 该网络的特征还在于,在将数据包从发送节点发送到网络中的相邻接收节点之前,将标识每个数据流的标签添加到数据流的每个分组。 该所谓的识别标签被接收节点识别为要发送的数据流的标识。 当节点接收到新的数据流时,网络中的每个节点都会为数据包分配一个标识标签。 网络中的发送和接收节点都会为给定的数据流生成相同的标签。 因此,避免了将分配的标签从分配节点发送到网络中的相应的上游或下游发送或接收节点所涉及的开销。

    Packet header compression system and method based upon a dynamic template creation
    5.
    发明授权
    Packet header compression system and method based upon a dynamic template creation 有权
    基于动态模板创建的数据包头压缩系统和方法

    公开(公告)号:US08065437B2

    公开(公告)日:2011-11-22

    申请号:US12647492

    申请日:2009-12-26

    IPC分类号: G06F15/16

    摘要: Header compression system for compressing the header of the data packets of a flow transmitted from an ingress node to an egress node through a data transmission network comprising template creating means, in both ingress node and egress node, adapted for creating the same compression template from a predetermined number of uncompressed data packets at the beginning of the flow respectively transmitted by the ingress node and received by the egress node, and header compression means, in the ingress node, adapted for compressing the header of each packet following the predetermined number of uncompressed data packets before transmitting it through the data transmission network, the compression being achieved by using the compression template.

    摘要翻译: 标题压缩系统,用于压缩通过数据传输网络从入口节点传送到出口节点的流的数据分组的报头,包括模板创建装置,在入口节点和出口节点中适于从一个 在入口节点分别由入口节点发送并由出口节点接收的流的开始处的预定数量的未压缩数据分组和头部压缩装置,适用于压缩预定数量的未压缩数据之后的每个分组的报头 数据包在通过数据传输网络传输之前,通过使用压缩模板来实现压缩。

    Method for transmitting high-priority packets in an IP transmission network
    6.
    发明授权
    Method for transmitting high-priority packets in an IP transmission network 有权
    用于在IP传输网络中传输高优先级分组的方法

    公开(公告)号:US07558269B2

    公开(公告)日:2009-07-07

    申请号:US10638898

    申请日:2003-08-11

    IPC分类号: H04L12/28

    摘要: Method for transmitting high-priority packets in an IP transmission network based upon the Internet Protocol (IP) wherein low-priority packets or fragments of packets are transmitted between a sender and a receiver and at least a high-priority packet can be transmitted from the sender to the receiver by pre-emption of a low-priority packet or a fragment of packet. the method comprises in the sender, the steps of determining whether a low-priority packet or fragment of packet is being transmitted from the sender to the receiver when a high-priority packet has to be transmitted, setting to 1 a reserved bit within the IP header of the high-priority packet used as a pre-emption indicator if a low-priority packet or fragment of packet is currently transmitted, transmitting the high-priority packet with the pre-emption indicator set to 1 from the sender to the receiver, and resuming the transmission of the low-priority packet or fragment of packet at the end of transmission of the high-priority packet.

    摘要翻译: 基于互联网协议(IP)在IP传输网络中发送高优先级分组的方法,其中低优先级分组或分组在发送方和接收方之间传送,并且至少高优先级分组可以从 发送方通过优先级低优先级的数据包或数据包的片段来发送给接收方。 所述方法包括在发送方中,当高优先级分组必须被发送时,确定低优先级分组或分组是否正在从发送方发送到接收方,将该IP优先级设置为1 如果当前正在发送低优先级分组或分组片段,则用作优先级指示符的高优先级分组的报头,将优先级分组以从发送方设置为1的优先级分组发送到接收方, 并且在高优先级分组的传输结束时恢复低优先级分组或分组分段的传输。

    System and method for transmitting compressed frame headers in a multiprotocal data transmission network
    7.
    发明授权
    System and method for transmitting compressed frame headers in a multiprotocal data transmission network 失效
    用于在多径数据传输网络中发送压缩帧头的系统和方法

    公开(公告)号:US06804238B1

    公开(公告)日:2004-10-12

    申请号:US09473802

    申请日:1999-12-28

    IPC分类号: H04L1228

    摘要: A method for transmitting data frames with compressed headers in a multiprotocol data transmission network comprising at least one ingress node transmitting data to egress nodes. Each frame of data includes data bytes and a header which defines the transmission protocols. This method comprises the steps of comparing the address field of the frame to a list of address fields corresponding to the current flows of data, selecting candidate headers associated with flows having the same address, determining a compressed header based upon the position and the number of bytes that differ between the frame header and the candidate header, selecting as reference header the best candidate header based on compression ratio, and transmitting a compressed data frame wherein the data bytes are preceded by a reference label and a compressed header including a field defining the position and the number of consecutive bytes in the portion being compressed, a field including the different bytes, and a field including the portion of header which is not compressed.

    摘要翻译: 一种用于在多协议数据传输网络中传送带有压缩报头的数据帧的方法,包括至少一个入口节点向出口节点发送数据。 每帧数据包括数据字节和定义传输协议的报头。 该方法包括以下步骤:将帧的地址字段与对应于当前数据流的地址字段的列表进行比较,选择与具有相同地址的流相关联的候选报头,基于位置和数量来确定压缩报头 在帧头和候选报头之间不同的字节,基于压缩比选择最佳候选报头作为参考报头,并且发送压缩数据帧,其中数据字节在参考标签之前,压缩报头包括定义 位置和被压缩部分中的连续字节的数量,包括不同字节的字段以及包括未被压缩的标题部分的字段。

    Firewall system for interconnecting two IP networks managed by two different administrative entities
    8.
    发明授权
    Firewall system for interconnecting two IP networks managed by two different administrative entities 失效
    用于互连由两个不同管理实体管理的两个IP网络的防火墙系统

    公开(公告)号:US07392379B2

    公开(公告)日:2008-06-24

    申请号:US11831631

    申请日:2007-07-31

    IPC分类号: G06F9/00

    摘要: Firewall system for interconnecting a first IP network (10) to a second IP network (16), these networks belonging to two different entities having each a different administration wherein any data packet transmitted/received by the first IP network is filtered by using a first firewall function and any data packet transmitted/received by the second IP network is filtered by using a second firewall function. The system comprises essentially a single firewall device (20) including filtering means (41, 43) performing both first firewall function and second firewall function, a console port (37) enabling the administrator in charge of each IP network to enter filtering rules for updating the associated firewall function and control means (39, 47, 49) interconnecting the console port and the filtering means for transmitting thereto the filtering rules so that each administrator may independently manage the system from the console port.

    摘要翻译: 用于将第一IP网络(10)互连到第二IP网络(16)的防火墙系统,属于具有不同管理的两个不同实体的这些网络,其中由第一IP网络发送/接收的任何数据分组通过使用第一IP网络 防火墙功能和由第二IP网络发送/接收的任何数据包通过使用第二防火墙功能进行过滤。 该系统基本上包括单个防火墙设备(20),其包括执行第一防火墙功能和第二防火墙功能的过滤装置(41,43),使得管理员能够负责每个IP网络的控制台端口(37)输入用于更新的过滤规则 相关联的防火墙功能和控制装置(39,47,49),其互连控制台端口和过滤装置,用于向其发送过滤规则,使得每个管理员可以从控制台端口独立地管理系统。

    Virtual Private Network Based upon Multi-Protocol Label Switching Adapted to Measure the Traffic flowing between single rate zones
    9.
    发明申请
    Virtual Private Network Based upon Multi-Protocol Label Switching Adapted to Measure the Traffic flowing between single rate zones 有权
    基于多协议标签交换的虚拟专用网络适用于测量单速率区域之间流量的流量

    公开(公告)号:US20100158020A1

    公开(公告)日:2010-06-24

    申请号:US12643534

    申请日:2009-12-21

    IPC分类号: H04L12/56

    CPC分类号: H04L12/1403 H04L12/14

    摘要: Virtual Private Network (VPN) dedicated to a customer using a physical transmission network based upon Multi-Protocol Label Switching (MPLS) technology including a plurality of Provider (P) devices and a plurality of Provider Edge (PE) devices, the customer owning at least two specific Customer Edge (CE) devices amongst a plurality of CE devices, a specific CE device being attached to a specific PE device and enabling the customer to gain access to any other CE device belonging to the same VPN, by the intermediary of PE devices to which are attached the CE devices. The VPN comprises several billing zones (10, 12, 14) being each defined by the application of a single flat rate. A PE device (18) belonging to each billing zone includes a virtual router (58, 60, 62) associated with each billing zone, two virtual routers being interconnected by a virtual circuit (38, 40, 42) transmitting all the traffic exchanged between the two associated billing zones so that the traffic flowing between the two billing zones can be measured and therefore precisely billed to the customer.

    摘要翻译: 基于多协议标签交换(MPLS)技术的使用物理传输网络的客户的虚拟专用网络(VPN),包括多个提供商(P)设备和多个提供者边缘(PE)设备,客户拥有 在多个CE设备中的至少两个特定的客户边缘(CE)设备,特定的CE设备被附加到特定的PE设备并且使客户能够通过PE的中介获得对属于同一VPN的任何其他CE设备的访问 设备连接到CE设备。 VPN包括几个计费区域(10,12,14),每个计费区域由应用单个统一费率定义。 属于每个计费区域的PE设备(18)包括与每个计费区域相关联的虚拟路由器(58,60,62),两个虚拟路由器由虚拟电路(38,40,42)互连,该虚拟路由器传输在 两个关联的计费区域,使得可以测量在两个计费区域之间流动的流量,并因此精确地向客户收费。

    Method of gaining secure access to intranet resources
    10.
    发明授权
    Method of gaining secure access to intranet resources 有权
    获取安全访问内部网资源的方法

    公开(公告)号:US07320143B2

    公开(公告)日:2008-01-15

    申请号:US10638860

    申请日:2003-08-11

    CPC分类号: H04L63/12 H04L63/1466

    摘要: Method of gaining secure access from a host (13) to Intranet resources provided by at least a content server (18) in a data transmission system wherein the host is connected to the content server through a gateway (17). Such a method consists in generating and sending at predetermined transmission instants from either the host or the gateway verification messages wherein each verification message contains a signature which depends upon the data exchanged between the host and the gateway since the preceding verification message, the host and the gateway also called peer devices having at their disposal a same algorithm defining which of them sends a verification message at each of the predetermined instants.

    摘要翻译: 从数据传输系统获得从主机(13)到由至少内容服务器(18)提供的内联网资源的安全访问的方法,其中主机通过网关(17)连接到内容服务器。 这种方法包括:从主机或网关验证消息的预定传输时刻生成和发送,其中每个验证消息包含取决于主机与网关之间交换的数据的签名,因为前述验证消息,主机和 网关还称为具有相同算法的对等设备,其定义了在每个预定时刻中的哪一个发送验证消息。