Techniques for accounting for multiple transactions in a transport control protocol (TCP) payload
    1.
    发明申请
    Techniques for accounting for multiple transactions in a transport control protocol (TCP) payload 有权
    用于计算传输控制协议(TCP)有效载荷中的多个事务的技术

    公开(公告)号:US20070011329A1

    公开(公告)日:2007-01-11

    申请号:US11175849

    申请日:2005-07-06

    IPC分类号: G06F15/173

    摘要: Techniques for separately accounting for multiple transactions in the same data packets communicated over a network using Transport Control Protocol (TCP) include receiving an Internet Protocol (IP) data packet that includes Transport Control Protocol (TCP) payload data. The TCP payload is parsed to determine boundary data that indicates a byte location on a boundary between a first transaction and a second transaction. A byte count that indicates a number of bytes in the TCP payload associated with the first transaction is determined based on the boundary data. Accounting data for the first transaction is determined based at least in part on the byte count. These techniques allow a service gateway to bill separately for different requests and responses carried in TCP data packets, such as those for Hypertext Transfer Protocol (HTTP) and Real Time Streaming Protocol (RTSP).

    摘要翻译: 用于单独计算通过使用传输控制协议(TCP)通过网络传送的相同数据分组中的多个事务的技术包括接收包括传输控制协议(TCP)有效载荷数据的因特网协议(IP)数据分组。 解析TCP有效载荷以确定指示在第一事务和第二事务之间的边界上的字节位置的边界数据。 基于边界数据确定指示与第一事务相关联的TCP有效载荷中的字节数的字节计数。 至少部分地基于字节计数确定第一事务的计费数据。 这些技术允许服务网关对TCP数据分组(例如超文本传输​​协议(HTTP)和实时流协议(RTSP))中携带的不同请求和响应进行单独计费。

    System and method for managing access for an end user in a network environment
    2.
    发明申请
    System and method for managing access for an end user in a network environment 审中-公开
    用于在网络环境中管理最终用户的访问的系统和方法

    公开(公告)号:US20050044138A1

    公开(公告)日:2005-02-24

    申请号:US10645139

    申请日:2003-08-21

    IPC分类号: G06Q30/00 G06F15/16 G06F17/60

    CPC分类号: G06Q30/02 G06Q20/102

    摘要: An apparatus for managing network access is provided that includes a billing system element operable to receive one or more packets of a communication flow and to communicate with a price server. The price server is operable to receive a query from the billing system element associated with a pricing parameter relating to a data segment to be accessed by an end user associated with the communication flow. The price server is also operable to return a response to the billing system element that includes the pricing parameter relating to the data segment such that the end user can verify the pricing parameter before accessing the data segment.

    摘要翻译: 提供了一种用于管理网络访问的装置,其包括可操作以接收通信流的一个或多个分组并与价格服务器通信的计费系统元件。 价格服务器可操作以从与由与通信流相关联的最终用户访问的数据段相关的定价参数相关联的计费系统元件接收查询。 价格服务器还可操作地向包括与数据段相关的定价参数的计费系统元件返回响应,使得最终用户可以在访问数据段之前验证定价参数。

    Techniques for accounting for multiple transactions in a transport control protocol (TCP) payload
    3.
    发明授权
    Techniques for accounting for multiple transactions in a transport control protocol (TCP) payload 有权
    用于计算传输控制协议(TCP)有效载荷中的多个事务的技术

    公开(公告)号:US08438281B2

    公开(公告)日:2013-05-07

    申请号:US11175849

    申请日:2005-07-06

    IPC分类号: G06F15/173

    摘要: Techniques for separately accounting for multiple transactions in the same data packets communicated over a network using Transport Control Protocol (TCP) include receiving an Internet Protocol (IP) data packet that includes Transport Control Protocol (TCP) payload data. The TCP payload is parsed to determine boundary data that indicates a byte location on a boundary between a first transaction and a second transaction. A byte count that indicates a number of bytes in the TCP payload associated with the first transaction is determined based on the boundary data. Accounting data for the first transaction is determined based at least in part on the byte count. These techniques allow a service gateway to bill separately for different requests and responses carried in TCP data packets, such as those for Hypertext Transfer Protocol (HTTP) and Real Time Streaming Protocol (RTSP).

    摘要翻译: 用于单独计算通过使用传输控制协议(TCP)通过网络传送的相同数据分组中的多个事务的技术包括接收包括传输控制协议(TCP)有效载荷数据的因特网协议(IP)数据分组。 解析TCP有效载荷以确定指示在第一事务和第二事务之间的边界上的字节位置的边界数据。 基于边界数据确定指示与第一事务相关联的TCP有效载荷中的字节数的字节计数。 至少部分地基于字节计数确定第一事务的计费数据。 这些技术允许服务网关对TCP数据分组(例如超文本传输​​协议(HTTP)和实时流协议(RTSP))中携带的不同请求和响应进行单独计费。

    Load balancing using distributed forwarding agents with application based feedback for different virtual machines
    5.
    发明申请
    Load balancing using distributed forwarding agents with application based feedback for different virtual machines 有权
    使用分布式转发代理进行负载平衡,并为不同的虚拟机提供基于应用的

    公开(公告)号:US20050249199A1

    公开(公告)日:2005-11-10

    申请号:US11185574

    申请日:2005-07-19

    IPC分类号: G06F15/16 H04L12/66 H04L29/08

    CPC分类号: H04L67/1008 H04L67/1002

    摘要: A system and method are described for selecting a server to handle a connection. The method includes receiving at a service manager a connection request intercepted by a network device having a forwarding agent that is operative to receive instructions from a service manager, the connection request having been forwarded from the forwarding agent on the network device to the service manager. A preferred server is selected at the service manager from among a group of available servers. The preferred server is the server that is to service the connection request. Instructions are sent from the service manager to the forwarding agent. The instructions include the preferred server that is to service the connection request so that the connection request may be forwarded from the network device to the preferred server.

    摘要翻译: 描述了用于选择服务器来处理连接的系统和方法。 该方法包括在服务管理器处接收由具有可从服务管理器接收指令的转发代理的网络设备拦截的连接请求,所述连接请求已经从网络设备上的转发代理转发到服务管理器。 在服务管理器之间从一组可用服务器中选择首选服务器。 首选服务器是服务于连接请求的服务器。 指令从服务管理员发送到转发代理。 指令包括服务于连接请求的首选服务器,以便连接请求可以从网络设备转发到首选服务器。

    Method for protecting a firewall load balancer from a denial of service attack
    6.
    发明授权
    Method for protecting a firewall load balancer from a denial of service attack 有权
    保护防火墙负载平衡器免受拒绝服务攻击的方法

    公开(公告)号:US07770215B2

    公开(公告)日:2010-08-03

    申请号:US11554081

    申请日:2006-10-30

    IPC分类号: G06F9/00

    摘要: A method for protecting firewall load balancers from a denial of service attack is provided. Packets are received by the firewall load balancer. Each packet has a source and a destination. The firewall load balancer is equipped with a connection database that can contain entries about the packets. Upon receipt of a packet, the connection database is queried to determine whether or not there is an entry for the received packet. If an entry is found in the database, the packet is forwarded to its destination. Otherwise, if the packet was received from a firewall, then a new connection entry for the packet is built and is saved to the connection database and the packet is forwarded on to its destination. If the packet does not have an entry (match) in the connection database and the packet was not received from a firewall, then the packet is forwarded to a firewall.

    摘要翻译: 提供了一种保护防火墙负载均衡器免受拒绝服务攻击的方法。 数据包由防火墙负载平衡器接收。 每个数据包都有源和目标。 防火墙负载平衡器配有可以包含有关数据包的条目的连接数据库。 在接收到分组时,查询连接数据库以确定是否存在所接收分组的条目。 如果在数据库中找到条目,则将数据包转发到其目的地。 否则,如果从防火墙接收到数据包,则会建立新的数据包连接条目,并将其保存到连接数据库,并将数据包转发到其目的地。 如果数据包在连接数据库中没有条目(匹配),并且未从防火墙接收到数据包,则将数据包转发到防火墙。

    Method for Protecting a Firewall Load Balancer From a Denial of Service Attack
    7.
    发明申请
    Method for Protecting a Firewall Load Balancer From a Denial of Service Attack 有权
    从拒绝服务攻击中保护防火墙负载均衡器的方法

    公开(公告)号:US20080028456A1

    公开(公告)日:2008-01-31

    申请号:US11554081

    申请日:2006-10-30

    IPC分类号: G06F15/16

    摘要: A method for protecting firewall load balancers from a denial of service attack is provided. Packets are received by the firewall load balancer. Each packet has a source and a destination. The firewall load balancer is equipped with a connection database that can contain entries about the packets. Upon receipt of a packet, the connection database is queried to determine whether or not there is an entry for the received packet. If an entry is found in the database, the packet is forwarded to its destination. Otherwise, if the packet was received from a firewall, then a new connection entry for the packet is built and is saved to the connection database and the packet is forwarded on to its destination. If the packet does not have an entry (match) in the connection database and the packet was not received from a firewall, then the packet is forwarded to a firewall.

    摘要翻译: 提供了一种保护防火墙负载均衡器免受拒绝服务攻击的方法。 数据包由防火墙负载平衡器接收。 每个数据包都有源和目标。 防火墙负载平衡器配有可以包含有关数据包的条目的连接数据库。 在接收到分组时,查询连接数据库以确定是否存在所接收分组的条目。 如果在数据库中找到条目,则将数据包转发到其目的地。 否则,如果从防火墙接收到数据包,则会建立新的数据包连接条目,并将其保存到连接数据库,并将数据包转发到其目的地。 如果数据包在连接数据库中没有条目(匹配),并且未从防火墙接收到数据包,则将数据包转发到防火墙。

    Method for protecting a firewall load balancer from a denial of service attack
    8.
    发明授权
    Method for protecting a firewall load balancer from a denial of service attack 有权
    保护防火墙负载平衡器免受拒绝服务攻击的方法

    公开(公告)号:US07131140B1

    公开(公告)日:2006-10-31

    申请号:US09788690

    申请日:2001-02-19

    IPC分类号: G06F9/00

    摘要: A method for protecting firewall load balancers from a denial of service attack is provided. Packets are received by the firewall load balancer. Each packet has a source and a destination. The firewall load balancer is equipped with a connection database that can contain entries about the packets. Upon receipt of a packet, the connection database is queried to determine whether or not there is an entry for the received packet. If an entry is found in the database, the packet is forwarded to its destination. Otherwise, if the packet was received from a firewall, then a new connection entry for the packet is built and is saved to the connection database and the packet is forwarded on to its destination. If the packet does not have an entry (match) in the connection database and the packet was not received from a firewall, then the packet is forwarded to a firewall.

    摘要翻译: 提供了一种保护防火墙负载均衡器免受拒绝服务攻击的方法。 数据包由防火墙负载平衡器接收。 每个数据包都有源和目标。 防火墙负载平衡器配有可以包含有关数据包的条目的连接数据库。 在接收到分组时,查询连接数据库以确定是否存在所接收分组的条目。 如果在数据库中找到条目,则将数据包转发到其目的地。 否则,如果从防火墙接收到数据包,则会建立新的数据包连接条目,并将其保存到连接数据库,并将数据包转发到其目的地。 如果数据包在连接数据库中没有条目(匹配),并且未从防火墙接收到数据包,则将数据包转发到防火墙。

    OBJECT IDENTIFIER AWARENESS FOR NETWORK DEVICE NOTIFICATIONS
    9.
    发明申请
    OBJECT IDENTIFIER AWARENESS FOR NETWORK DEVICE NOTIFICATIONS 审中-公开
    网络设备通知的对象标识符意识

    公开(公告)号:US20090006435A1

    公开(公告)日:2009-01-01

    申请号:US11778592

    申请日:2007-07-16

    IPC分类号: G06F17/30

    摘要: In one embodiment, a control processor sends unique identifiers to each traffic processor in a multi-processor system of different unique identifiers may be sent for each traffic processor supported Management Information Base (MIB). The traffic processors modify MIB object identifiers to include the unique identifiers and then transmit notifications that include the unique identifiers, MIB object identifiers, and associated traffic processor parameter values. In another embodiment, the control processor handles the task of attaching unique identifiers so each MIB object identifiers are uniquely correlated with a particular traffic processor.

    摘要翻译: 在一个实施例中,控制处理器向不同唯一标识符的多处理器系统中的每个业务处理器发送唯一的标识符,可以为每个支持流量处理器的管理信息库(MIB)发送唯一的标识符。 业务处理器修改MIB对象标识符以包括唯一标识符,然后发送包括唯一标识符,MIB对象标识符和相关联的业务处理器参数值的通知。 在另一个实施例中,控制处理器处理附加唯一标识符的任务,因此每个MIB对象标识符与特定业务处理器唯一相关。