UTILIZING DOMAIN SEGMENT IDENTIFIERS FOR INTER-DOMAIN SHORTEST PATH SEGMENT ROUTING

    公开(公告)号:US20230224238A1

    公开(公告)日:2023-07-13

    申请号:US18185644

    申请日:2023-03-17

    CPC classification number: H04L45/34 H04L45/04 H04L45/12 H04L45/50

    Abstract: An ingress network device may receive a core domain network segment identifier associated with a core domain network of the multi-domain network. The ingress network device may receive location data of an egress network device associated with a second leaf domain network of the multi-domain network, wherein the location data may include data identifying the core domain network segment identifier, a second leaf domain network segment identifier associated with the second leaf domain network, and an egress network device segment identifier associated with the egress network device. The ingress network device may store the core domain network segment identifier and the location data, and may utilize the core domain segment identifier and the location data to route traffic to the egress network device.

    SUPPORTING MULTIPLE SEGMENT ROUTING TRAFFIC ENGINEERING ALGORITHMS

    公开(公告)号:US20220247673A1

    公开(公告)日:2022-08-04

    申请号:US17164282

    申请日:2021-02-01

    Abstract: In some implementations, a network device may identify a segment routing traffic engineering (SR-TE) algorithm supported by the network device. The network device may determine, based on identifying the SR-TE algorithm, an identification value associated with the network device. The network device may generate an advertisement packet that includes the identification value and information identifying the SR-TE algorithm. The network device may send the advertisement packet to another network device to cause the other network device to update a data structure to indicate that the network device supports the SR-TE algorithm and that the network device is associated with the identification value. The other network device may determine, using the SR-TE algorithm, a forwarding path for a data packet that indicates the network device as a hop in the forwarding path.

    SECURING MULTIPROTOCOL LABEL SWITCHING (MPLS) PAYLOADS

    公开(公告)号:US20240106744A1

    公开(公告)日:2024-03-28

    申请号:US18531947

    申请日:2023-12-07

    CPC classification number: H04L45/50 H04L45/66 H04L63/0464 H04L63/061 H04L69/22

    Abstract: In some implementations, an egress network device of a multiprotocol label switching (MPLS) network may exchange Internet key exchange (IKE) messages with an ingress network device of the MPLS network to establish a security association between the egress network device and the ingress network device. The egress network device may receive an MPLS packet that includes an MPLS header, a secure MPLS data header, and an MPLS payload. The egress network device may process the MPLS header to determine a label associated with a label-switched path (LSP) and a secure function indicator. The egress network device may decrypt, using a secure function identified based on the secure MPLS data header, the MPLS payload to generate a decrypted packet. The egress network device may transmit the decrypted packet towards a destination device.

    SECURING MULTIPROTOCOL LABEL SWITCHING (MPLS) PAYLOADS

    公开(公告)号:US20230370369A1

    公开(公告)日:2023-11-16

    申请号:US17663319

    申请日:2022-05-13

    CPC classification number: H04L45/50 H04L45/66 H04L63/0464 H04L63/061 H04L69/22

    Abstract: In some implementations, an ingress network device of a multiprotocol label switching (MPLS) network may receive a packet destined for a destination network device. The ingress network device may determine, based on the packet, a secure function to secure the packet and a label associated with a label-switched path (LSP) from the ingress network device to an egress network device of the MPLS network that is associated with the destination network device. The ingress network device may encrypt, using the secure function, the packet to generate an encrypted packet. The ingress network device may generate an MPLS packet comprising: an MPLS header that includes the label and a secure function indicator, a secure MPLS data header that includes information identifying the secure function, and an MPLS payload that includes the encrypted packet. The ingress network device may forward, based on the label, the MPLS packet.

    UTILIZING DOMAIN SEGMENT IDENTIFIERS FOR INTER-DOMAIN SHORTEST PATH SEGMENT ROUTING

    公开(公告)号:US20210297340A1

    公开(公告)日:2021-09-23

    申请号:US16825734

    申请日:2020-03-20

    Abstract: An ingress network device may receive a core domain network segment identifier associated with a core domain network of the multi-domain network. The ingress network device may receive location data of an egress network device associated with a second leaf domain network of the multi-domain network, wherein the location data may include data identifying the core domain network segment identifier, a second leaf domain network segment identifier associated with the second leaf domain network, and an egress network device segment identifier associated with the egress network device. The ingress network device may store the core domain network segment identifier and the location data, and may utilize the core domain segment identifier and the location data to route traffic to the egress network device.

Patent Agency Ranking