Method and apparatus for packet processing
    1.
    发明授权
    Method and apparatus for packet processing 有权
    分组处理方法和装置

    公开(公告)号:US08559423B2

    公开(公告)日:2013-10-15

    申请号:US12670766

    申请日:2008-06-26

    IPC分类号: H04L12/58

    CPC分类号: H04L67/16 H04L67/14 H04L69/32

    摘要: The present invention discloses a packet processing apparatus and method. The packet processing apparatus is applied to an L4˜L7 network device, including a plurality of interface processing units and a plurality of service processing units, the interface processing units are connected with the service processing units through a first connection unit; and each of the interface processing units is adapted to select, after receiving a packet from outside, a service processing unit from all the service processing units and transmit the packet to the selected service processing unit; and each of the service processing units is adapted to perform service processing to the packet after receiving the packet. The present invention improves packet processing capability and reliability of the L4˜L7 network device.

    摘要翻译: 本发明公开了一种分组处理装置和方法。 分组处理装置应用于包括多个接口处理单元和多个业务处理单元的L4〜L7网络​​设备,接口处理单元通过第一连接单元与业务处理单元连接; 并且每个接口处理单元适于在从外部接收到分组之后从所有服务处理单元选择服务处理单元,并将所述分组发送到所选择的服务处理单元; 并且每个服务处理单元适于在接收到分组之后对分组执行服务处理。 本发明提高了L4〜L7网络​​设备的分组处理能力和可靠性。

    METHOD AND APPARATUS FOR PACKET PROCESSING
    2.
    发明申请
    METHOD AND APPARATUS FOR PACKET PROCESSING 有权
    用于分组处理的方法和装置

    公开(公告)号:US20100195647A1

    公开(公告)日:2010-08-05

    申请号:US12670766

    申请日:2008-06-26

    IPC分类号: H04L12/56

    CPC分类号: H04L67/16 H04L67/14 H04L69/32

    摘要: The present invention discloses a packet processing apparatus and method. The packet processing apparatus is applied to an L4˜L7 network device, including a plurality of interface processing units and a plurality of service processing units, the interface processing units are connected with the service processing units through a first connection unit; and each of the interface processing units is adapted to select, after receiving a packet from outside, a service processing unit from all the service processing units and transmit the packet to the selected service processing unit; and each of the service processing units is adapted to perform service processing to the packet after receiving the packet. The present invention improves packet processing capability and reliability of the L4˜L7 network device.

    摘要翻译: 本发明公开了一种分组处理装置和方法。 分组处理装置应用于包括多个接口处理单元和多个业务处理单元的L4〜17网络设备,接口处理单元通过第一连接单元与业务处理单元连接; 并且每个接口处理单元适于在从外部接收到分组之后从所有服务处理单元选择服务处理单元,并将所述分组发送到所选择的服务处理单元; 并且每个服务处理单元适于在接收到分组之后对分组执行服务处理。 本发明提高了L4〜17网络设备的分组处理能力和可靠性。

    METHOD FOR IMPLEMENTING SECURITY-RELATED PROCESSING ON PACKET AND NETWORK SECURITY DEVICE
    3.
    发明申请
    METHOD FOR IMPLEMENTING SECURITY-RELATED PROCESSING ON PACKET AND NETWORK SECURITY DEVICE 有权
    在分组和网络安全设备上执行安全相关处理的方法

    公开(公告)号:US20100132028A1

    公开(公告)日:2010-05-27

    申请号:US12529907

    申请日:2008-07-17

    IPC分类号: G06F17/00 G06F15/16

    CPC分类号: H04L63/0236 H04L69/326

    摘要: Embodiments of the present invention provide method for implementing security-related processing on packet and a network security device. Through establishing a relationship between stream attribute information of an initial packet of a stream and security-related processing information implemented on the initial packet, when a succeeding packet of the stream is received, the previously stored relationship is acquired according to stream attribute information of the succeeding packet, the security-related processing is implemented on the succeeding packet according to the security-related processing information in the relationship. Therefore, according to the method for implementing security-related processing on packet and the network security device provided by the present invention, the process of searching for security information entries for succeeding packets of a stream is not required, the security-related processing procedure of the packet is thus accelerated, and the packet processing efficiency is improved.

    摘要翻译: 本发明的实施例提供了用于在分组和网络安全设备上实现安全相关处理的方法。 通过建立流初始分组的流属性信息与在初始分组上实现的与安全相关的处理信息之间的关系,当接收到流的后续分组时,根据流的属性信息获取先前存储的关系 根据关系中的安全相关的处理信息,在后续的分组上实现与安全相关的处理。 因此,根据本发明提供的分组安全相关处理方法和网络安全设备的实现方法,不需要搜索流的后续分组的安全信息条目的过程,与安全相关的处理过程 因此分组被加速,并且提高分组处理效率。

    Method for implementing security-related processing on packet and network security device
    4.
    发明授权
    Method for implementing security-related processing on packet and network security device 有权
    在分组和网络安全设备上实现安全相关处理的方法

    公开(公告)号:US08316432B2

    公开(公告)日:2012-11-20

    申请号:US12529907

    申请日:2008-07-17

    IPC分类号: H04L29/06

    CPC分类号: H04L63/0236 H04L69/326

    摘要: Embodiments of the present invention provide method for implementing security-related processing on packet and a network security device. Through establishing a relationship between stream attribute information of an initial packet of a stream and security-related processing information implemented on the initial packet, when a succeeding packet of the stream is received, the previously stored relationship is acquired according to stream attribute information of the succeeding packet, the security-related processing is implemented on the succeeding packet according to the security-related processing information in the relationship. Therefore, according to the method for implementing security-related processing on packet and the network security device provided by the present invention, the process of searching for security information entries for succeeding packets of a stream is not required, the security-related processing procedure of the packet is thus accelerated, and the packet processing efficiency is improved.

    摘要翻译: 本发明的实施例提供了用于在分组和网络安全设备上实现安全相关处理的方法。 通过建立流初始分组的流属性信息与在初始分组上实现的与安全相关的处理信息之间的关系,当接收到流的后续分组时,根据流的属性信息获取先前存储的关系 根据关系中的安全相关的处理信息,在后续的分组上实现与安全相关的处理。 因此,根据本发明提供的分组安全相关处理方法和网络安全设备的实现方法,不需要搜索流的后续分组的安全信息条目的过程,与安全相关的处理过程 因此分组被加速,并且提高分组处理效率。

    Managing partitions in a scalable environment

    公开(公告)号:US10860384B2

    公开(公告)日:2020-12-08

    申请号:US13366039

    申请日:2012-02-03

    IPC分类号: G06F9/50 G06F9/52

    摘要: Systems and methods are provided that enable a general framework for partitioning application-defined jobs in a scalable environment. The general framework decouples partitioning of a job from the other aspects of the job. As a result, the effort required to define the application-defined job is reduced or minimized, as the user is not required to provide a partitioning algorithm. The general framework also facilitates management of masters and servers performing computations within the distributed environment.

    Verification in wireless local area network

    公开(公告)号:US09730067B2

    公开(公告)日:2017-08-08

    申请号:US13900538

    申请日:2011-12-22

    申请人: Ju Wang Hao Wang Tao Lin

    发明人: Ju Wang Hao Wang Tao Lin

    IPC分类号: H04W12/08 H04L29/06

    CPC分类号: H04W12/08 H04L63/126

    摘要: A verification method or apparatus applied in a Wireless Local Area Network (WLAN) includes learning an Internet Protocol (IP) address assigned to a station; sending the IP address to a managing device that is managing the access device and receiving, from the managing device, a determination of whether the IP address is used by another station; and verifying a data packet sent by the station by using an IP address that is not used by another station as reported by the managing device.

    Network apparatus and method for communication between different components
    7.
    发明授权
    Network apparatus and method for communication between different components 有权
    用于不同组件之间通信的网络设备和方法

    公开(公告)号:US09083565B2

    公开(公告)日:2015-07-14

    申请号:US12442838

    申请日:2007-05-09

    摘要: The present invention discloses a method for communication among different components, including integrating a Network Forwarding Component (NFC) for forwarding messages and at least one Independent Application Component (IAC) for performing other service processing into one network device; setting at least one cooperation mode in the NFC and each of the at least one IAC; and communicating with each other, by the NFC and the at least one IAC, according to the at least one cooperation mode. The cooperation mode may be any or any combination of a host mode, a mirror mode, a redirection mode and a pass-through mode. According to the present invention, the NFC and the IAC may communicate according to the cooperation mode so as to ensure that the NFC and the IAC can cooperate to provide various service capabilities including message forwarding and other additional service capabilities.

    摘要翻译: 本发明公开了一种用于不同组件之间的通信的方法,包括将用于转发消息的网络转发组件(NFC)和至少一个独立应用组件(IAC)集成到一个网络设备中执行其他服务处理; 在NFC中设置至少一个协作模式和所述至少一个IAC中的每一个; 以及根据所述至少一个协作模式,通过所述NFC和所述至少一个IAC彼此进行通信。 协作模式可以是主机模式,镜像模式,重定向模式和直通模式的任何或任意组合。 根据本发明,NFC和IAC可以根据协作模式进行通信,以便确保NFC和IAC可以协作来提供包括消息转发和其他附加服务能力的各种服务能力。

    LOAD BALANCING WHEN REPLICATING ACCOUNT DATA
    8.
    发明申请
    LOAD BALANCING WHEN REPLICATING ACCOUNT DATA 有权
    更换帐户数据时的负载平衡

    公开(公告)号:US20140258499A9

    公开(公告)日:2014-09-11

    申请号:US13113776

    申请日:2011-05-23

    IPC分类号: G06F15/173

    摘要: Embodiments of the present invention relate to invoking and managing load-balancing operation(s) applied to partitions within a distributed computing environment, where each partition represents a key range of data for a storage account. The partitions affected by the load-balancing operation(s) are source partitions hosted on a primary storage stamp and/or destination partitions hosted on a secondary storage stamp, where the primary and secondary storage stamps are located in geographically distinct areas and are equipped to replicate the storage account's data therebetween. The load-balancing operation(s) include splitting partitions into child partitions upon detecting an increased workload as a result of active replication, merging partitions to form parent partitions upon detecting a reduction in workload as a result of decreased processing-related resource consumption, or offloading partitions based on resource consumption. A service within a partition layer of the storage stamps is responsible for determining when to invoke these load-balancing operation(s).

    摘要翻译: 本发明的实施例涉及调用和管理应用于分布式计算环境中的分区的负载平衡操作,其中每个分区表示存储帐户的数据的关键范围。 受负载均衡操作影响的分区是托管在辅助存储印记上托管的主存储印记和/或目标分区上的源分区,其中主存储邮票和辅助存储邮票位于地理位置不同的区域,并且配备为 复制存储帐户之间的数据。 负载平衡操作包括在检测到作为主动复制的结果的增加的工作负载时将分区划分成子分区,在检测到与处理相关的资源消耗减少的结果中检测到工作负载的减少时,将分区合并以形成父分区;或 基于资源消耗卸载分区。 存储标记的分区层内的服务负责确定何时调用这些负载平衡操作。

    STORAGE ACCOUNT MIGRATION BETWEEN STORAGE STAMPS
    9.
    发明申请
    STORAGE ACCOUNT MIGRATION BETWEEN STORAGE STAMPS 审中-公开
    存储帐户之间的存储帐户迁移

    公开(公告)号:US20120303912A1

    公开(公告)日:2012-11-29

    申请号:US13113808

    申请日:2011-05-23

    IPC分类号: G06F12/16

    摘要: Embodiments of the present invention relate to invoking and managing migration operations applied to partitions within a distributed computing environment, where each partition represents a key range of data for a storage account. The partitions affected by the migration operations are source partitions hosted on a primary storage stamp and/or destination partitions hosted on a secondary storage stamp, where the primary and secondary storage stamps are equipped to replicate the storage account's data therebetween upon initiating a migration. Upon substantial completion of a bootstrapping phase of replication, one migration operation includes designating the secondary storage stamp as a new primary storage stamp such that the destination partitions commence processing client requests, sending resultant transactions to the source partitions, and providing read and write access thereto. Another migration operation includes designating the primary storage stamp as a new secondary storage stamp such that the source partitions commence replaying the transactions.

    摘要翻译: 本发明的实施例涉及调用和管理应用于分布式计算环境中的分区的迁移操作,其中每个分区表示存储帐户的数据的关键范围。 由迁移操作影响的分区是托管在辅助存储戳记上托管的主存储戳记和/或目标分区上的源分区,主存储戳记和辅助存储戳记在启动迁移时可以复制存储帐户的数据。 在大量完成复制的引导阶段之后,一个迁移操作包括将辅助存储标记指定为新的主存储标记,使得目的地分区开始处理客户端请求,将结果事务发送到源分区,并提供对其的读取和写入访问 。 另一个迁移操作包括将主存储戳记指定为新的辅助存储戳,使得源分区开始重播事务。

    METHOD FOR IMPLEMENTING INTERSECTING RING NETWORK WITH ARBITRARY TOPOLOGY, NODE AND INTERSECTING RING NETWORK
    10.
    发明申请
    METHOD FOR IMPLEMENTING INTERSECTING RING NETWORK WITH ARBITRARY TOPOLOGY, NODE AND INTERSECTING RING NETWORK 有权
    用于实现具有仲裁拓扑,节点和交叉环网的交叉环网的方法

    公开(公告)号:US20090262643A1

    公开(公告)日:2009-10-22

    申请号:US12407579

    申请日:2009-03-19

    IPC分类号: H04J3/14 H04L12/28

    摘要: The present invention discloses a method for implementing an intersecting ring network with arbitrary topology, node and an intersecting ring network. The method includes: intersecting multiple Ethernet rings to form the intersecting ring network with arbitrary topology, each Ethernet ring in the intersecting ring network comprising a master node and multiple transmission nodes; the master node of each Ethernet ring opening its primary port and blocking its secondary port during initial normal operation; and the master node of each Ethernet ring in the intersecting ring network performing fault detection and fault processing as well as fault recovery detection and fault recovery processing by using one of the two manners containing protocol message interaction and detection on links directly connected to the master node.

    摘要翻译: 本发明公开了一种实现具有任意拓扑,节点和交叉环网的交叉环网的方法。 该方法包括:交叉多个以太网环形成具有任意拓扑的交叉环网,交叉环网中的每个以太网环包括主节点和多个传输节点; 每个以太网环的主节点在初始正常运行期间打开其主端口并阻塞其次端口; 并且交叉环网中每个以太网环的主节点通过使用直接连接到主节点的链路上包含协议消息交互和检测的两种方式之一执行故障检测和故障处理以及故障恢复检测和故障恢复处理 。