-
公开(公告)号:US20080189769A1
公开(公告)日:2008-08-07
申请号:US11970976
申请日:2008-01-08
申请人: Martin Casado , Nick Mckeown , Dan Boneh , Michael J. Freedman , Scott Shenker
发明人: Martin Casado , Nick Mckeown , Dan Boneh , Michael J. Freedman , Scott Shenker
CPC分类号: H04L63/102 , G06F21/6281 , G06F21/85 , G06F2221/2129 , G06F2221/2141
摘要: Use of a centralized control architecture in a network. Policy declaration, routing computation, and permission checks are managed by a logically centralized controller. By default, hosts on the network can only route to the network controller. Hosts and users must first authenticate themselves with the controller before they can request access to the network resources. The controller uses the first packet of each flow for connection setup. When a packet arrives at the controller, the controller decides whether the flow represented by that packet should be allowed. The switches use a simple flow table to forward packets under the direction of the controller. When a packet arrives that is not in the flow table, it is forwarded to the controller, along with information about which port the packet arrived on. When a packet arrives that is in the flow table, it is forwarded according to the controller's directive.
摘要翻译: 在网络中使用集中控制架构。 策略声明,路由计算和权限检查由逻辑集中控制器管理。 默认情况下,网络中的主机只能路由到网络控制器。 主机和用户必须首先通过控制器对其进行身份验证,然后才能请求访问网络资源。 控制器使用每个流的第一个数据包进行连接建立。 当数据包到达控制器时,控制器决定是否允许由该数据包表示的流。 交换机使用简单的流表在控制器的方向转发数据包。 当数据包到达不在流表中时,它将转发到控制器,以及数据包到达哪个端口的信息。 当流表中的数据包到达时,它将根据控制器的指令进行转发。
-
公开(公告)号:US08463904B2
公开(公告)日:2013-06-11
申请号:US13309860
申请日:2011-12-02
申请人: Martin Casado , Michael J. Freedman
发明人: Martin Casado , Michael J. Freedman
IPC分类号: G06F15/173
CPC分类号: H04L63/10 , H04L63/0492 , H04L67/18 , H04W4/02
摘要: A computer-implemented system and method to detect and characterize middleboxes is disclosed. Embodiments of the system and method include a middlebox detection engine to provide a plurality of middlebox detection modules, and to use at least one middlebox detection module of the plurality of middlebox detection modules to determine if a middlebox exists on a path between a first communicating entity of a network and a second communicating entity of the network.
摘要翻译: 公开了一种用于检测和表征中间盒的计算机实现的系统和方法。 该系统和方法的实施例包括提供多个中间箱检测模块的中间箱检测引擎,并且使用多个中间箱检测模块中的至少一个中间箱检测模块来确定中间箱是否存在于第一通信实体 的网络和第二通信实体。
-
公开(公告)号:US08204982B2
公开(公告)日:2012-06-19
申请号:US11855745
申请日:2007-09-14
申请人: Martin Casado , Michael J. Freedman
发明人: Martin Casado , Michael J. Freedman
IPC分类号: G06F15/173
CPC分类号: H04L63/10 , H04L63/0492 , H04L67/18 , H04W4/02
摘要: A computer-implemented system and method to detect and characterize middleboxes is disclosed. Embodiments of the system and method include a middlebox detection engine to provide a plurality of middlebox detection modules, and to use at least one middlebox detection module of the plurality of middlebox detection modules to determine if a middlebox exists on a path between a first communicating entity of a network and a second communicating entity of the network.
摘要翻译: 公开了一种用于检测和表征中间盒的计算机实现的系统和方法。 该系统和方法的实施例包括提供多个中间箱检测模块的中间箱检测引擎,并且使用多个中间箱检测模块中的至少一个中间箱检测模块来确定中间箱是否存在于第一通信实体 的网络和第二通信实体。
-
公开(公告)号:US20120079104A1
公开(公告)日:2012-03-29
申请号:US13309860
申请日:2011-12-02
申请人: Martin Casado , Michael J. Freedman
发明人: Martin Casado , Michael J. Freedman
IPC分类号: G06F15/173
CPC分类号: H04L63/10 , H04L63/0492 , H04L67/18 , H04W4/02
摘要: A computer-implemented system and method to detect and characterize middleboxes is disclosed. Embodiments of the system and method include a middlebox detection engine to provide a plurality of middlebox detection modules, and to use at least one middlebox detection module of the plurality of middlebox detection modules to determine if a middlebox exists on a path between a first communicating entity of a network and a second communicating entity of the network.
摘要翻译: 公开了一种用于检测和表征中间盒的计算机实现的系统和方法。 该系统和方法的实施例包括提供多个中间箱检测模块的中间箱检测引擎,并且使用多个中间箱检测模块中的至少一个中间箱检测模块来确定中间箱是否存在于第一通信实体 的网络和第二通信实体。
-
-
-