Bridging network components
    1.
    发明授权
    Bridging network components 有权
    桥接网络组件

    公开(公告)号:US07634608B2

    公开(公告)日:2009-12-15

    申请号:US11479948

    申请日:2006-06-30

    摘要: A system includes a first and a second network component, and a bridge. The bridge, which resides a Media Access Control (MAC) layer of a host, includes a bridge component, a first virtual network interface card (VNIC) and a second VNIC, wherein the first VNIC is associated with the first network component and the second VNIC is associated with the second network component. Further, the bridge component is configured to send packets received from the first network component to the second network component and to send packets received from the second network component to the first network component.

    摘要翻译: 系统包括第一和第二网络组件和桥。 驻留主机的媒体访问控制(MAC)层的桥包括桥组件,第一虚拟网络接口卡(VNIC)和第二VNIC,其中第一VNIC与第一网络组件相关联,第二VNIC与第二网络组件相关联 VNIC与第二个网络组件相关联。 此外,桥组件被配置为将从第一网络组件接收的分组发送到第二网络组件,并将从第二网络组件接收的分组发送到第一网络组件。

    Method and system for network configuration for containers
    2.
    发明申请
    Method and system for network configuration for containers 有权
    容器网络配置方法和系统

    公开(公告)号:US20080021985A1

    公开(公告)日:2008-01-24

    申请号:US11490479

    申请日:2006-07-20

    IPC分类号: G06F15/177 G06F15/173

    CPC分类号: H04L41/28 H04L41/082

    摘要: A method for changing network configuration parameters that includes generating a request to change a network configuration parameter by a user, determining whether the user is allowed to change the network configuration parameter using a network configuration database, if the user is allowed to change the network configuration parameter, updating the network configuration database to reflect the change in the network configuration parameter, updating a container associated with the network configuration parameter to reflect the change in the configuration parameter, and if the user is not allowed to change the network configuration parameter, dropping the request.

    摘要翻译: 一种用于改变网络配置参数的方法,包括生成用户改变网络配置参数的请求,如果允许用户改变网络配置,则确定用户是否允许使用网络配置数据库改变网络配置参数 参数,更新网络配置数据库,以反映网络配置参数的变化,更新与网络配置参数相关联的容器,以反映配置参数的变化,如果用户不允许更改网络配置参数,则丢弃 请求。

    Method and system for network configuration for virtual machines
    3.
    发明申请
    Method and system for network configuration for virtual machines 有权
    虚拟机网络配置方法和系统

    公开(公告)号:US20080043756A1

    公开(公告)日:2008-02-21

    申请号:US11489923

    申请日:2006-07-20

    IPC分类号: H04L12/56 H04L12/28

    CPC分类号: H04L12/66

    摘要: A method for changing network configuration parameters that includes generating a request to change a network configuration parameter, where the request is generated by a virtual machine, sending the request to a virtual network interface card (VNIC) associated with the virtual machine, sending the request to a VNIC configuration database associated with the VNIC, determining whether the virtual machine is allowed to change the network configuration parameter, if the virtual machine is allowed to change the network configuration parameter, updating the VNIC configuration database and VNIC to reflect the change in the network configuration parameter, and notifying the virtual machine that the change in network configuration parameter is allowed, and if the virtual machine is not allowed to change the network configuration parameter, dropping the request.

    摘要翻译: 一种用于改变网络配置参数的方法,所述方法包括生成改变网络配置参数的请求,所述请求由所述虚拟机产生,所述请求发送到与所述虚拟机相关联的虚拟网络接口卡(VNIC),发送所述请求 到与VNIC相关联的VNIC配置数据库,确定虚拟机是否被允许改变网络配置参数,如果虚拟机被允许改变网络配置参数,更新VNIC配置数据库和VNIC以反映该变更 网络配置参数,并通知虚拟机允许网络配置参数的更改,如果虚拟机不允许更改网络配置参数,则丢弃请求。

    Bridging network components
    4.
    发明申请
    Bridging network components 有权
    桥接网络组件

    公开(公告)号:US20080005441A1

    公开(公告)日:2008-01-03

    申请号:US11479948

    申请日:2006-06-30

    IPC分类号: G06F13/36

    摘要: A system includes a first and a second network component, and a bridge. The bridge, which resides a Media Access Control (MAC) layer of a host, includes a bridge component, a first virtual network interface card (VNIC) and a second VNIC, wherein the first VNIC is associated with the first network component and the second VNIC is associated with the second network component. Further, the bridge component is configured to send packets received from the first network component to the second network component and to send packets received from the second network component to the first network component.

    摘要翻译: 系统包括第一和第二网络组件和桥。 驻留主机的媒体访问控制(MAC)层的桥包括桥组件,第一虚拟网络接口卡(VNIC)和第二VNIC,其中第一VNIC与第一网络组件相关联,第二VNIC与第二网络组件相关联 VNIC与第二个网络组件相关联。 此外,桥组件被配置为将从第一网络组件接收的分组发送到第二网络组件,并将从第二网络组件接收的分组发送到第一网络组件。

    Method and system for network configuration for containers
    5.
    发明授权
    Method and system for network configuration for containers 有权
    容器网络配置方法和系统

    公开(公告)号:US07912926B2

    公开(公告)日:2011-03-22

    申请号:US11490479

    申请日:2006-07-20

    CPC分类号: H04L41/28 H04L41/082

    摘要: A method for changing network configuration parameters that includes generating a request to change a network configuration parameter by a user, determining whether the user is allowed to change the network configuration parameter using a network configuration database, if the user is allowed to change the network configuration parameter, updating the network configuration database to reflect the change in the network configuration parameter, updating a container associated with the network configuration parameter to reflect the change in the configuration parameter, and if the user is not allowed to change the network configuration parameter, dropping the request.

    摘要翻译: 一种用于改变网络配置参数的方法,包括生成用户改变网络配置参数的请求,如果允许用户改变网络配置,则确定用户是否允许使用网络配置数据库改变网络配置参数 参数,更新网络配置数据库,以反映网络配置参数的变化,更新与网络配置参数相关联的容器,以反映配置参数的变化,如果用户不允许更改网络配置参数,则丢弃 请求。

    Method and system for network configuration for virtual machines
    6.
    发明授权
    Method and system for network configuration for virtual machines 有权
    虚拟机网络配置方法和系统

    公开(公告)号:US08713202B2

    公开(公告)日:2014-04-29

    申请号:US11489923

    申请日:2006-07-20

    CPC分类号: H04L12/66

    摘要: A method for changing network configuration parameters that includes generating a request to change a network configuration parameter, where the request is generated by a virtual machine, sending the request to a virtual network interface card (VNIC) associated with the virtual machine, sending the request to a VNIC configuration database associated with the VNIC, determining whether the virtual machine is allowed to change the network configuration parameter, if the virtual machine is allowed to change the network configuration parameter, updating the VNIC configuration database and VNIC to reflect the change in the network configuration parameter, and notifying the virtual machine that the change in network configuration parameter is allowed, and if the virtual machine is not allowed to change the network configuration parameter, dropping the request.

    摘要翻译: 一种用于改变网络配置参数的方法,所述方法包括生成改变网络配置参数的请求,所述请求由所述虚拟机产生,所述请求发送到与所述虚拟机相关联的虚拟网络接口卡(VNIC),发送所述请求 到与VNIC相关联的VNIC配置数据库,确定虚拟机是否被允许改变网络配置参数,如果虚拟机被允许改变网络配置参数,更新VNIC配置数据库和VNIC以反映该变更 网络配置参数,并通知虚拟机允许网络配置参数的更改,如果虚拟机不允许更改网络配置参数,则丢弃请求。

    Host operating system bypass for packets destined for a virtual machine
    7.
    发明授权
    Host operating system bypass for packets destined for a virtual machine 有权
    主机操作系统绕过去往虚拟机的数据包

    公开(公告)号:US08005022B2

    公开(公告)日:2011-08-23

    申请号:US11489943

    申请日:2006-07-20

    IPC分类号: H04L12/28

    CPC分类号: H04L12/4641

    摘要: A method for processing packets that includes receiving a first packet for a first virtual machine by a network interface card (NIC), classifying the first packet using a hardware classifier, where the hardware classifier is located on the NIC, sending the first packet to a first one of a plurality of receive rings based on the classification, sending the first packet from the first one of the plurality of receive rings to a first virtual network interface card (VNIC), sending the first packet from the first VNIC to a first interface, and sending the first packet from the first interface to the first virtual machine, where the first virtual machine is associated with the first interface, where the first VNIC and the first virtual machine are executing on a host.

    摘要翻译: 一种处理分组的方法,包括通过网络接口卡(NIC)接收第一虚拟机的第一分组,使用硬件分类器对硬件分类器进行分类,其中硬件分类器位于NIC上,将第一分组发送到 将第一分组从多个接收环中的第一个发送到第一虚拟网络接口卡(VNIC),将第一分组从第一VNIC发送到第一接口 以及将所述第一分组从所述第一接口发送到所述第一虚拟机,其中所述第一虚拟机与所述第一接口相关联,其中所述第一VNIC和所述第一虚拟机在主机上执行。

    MANAGING TRAFFIC ON VIRTUALIZED LANES BETWEEN A NETWORK SWITCH AND A VIRTUAL MACHINE
    8.
    发明申请
    MANAGING TRAFFIC ON VIRTUALIZED LANES BETWEEN A NETWORK SWITCH AND A VIRTUAL MACHINE 有权
    管理网络交换机与虚拟机之间虚拟化网络的通信

    公开(公告)号:US20100303075A1

    公开(公告)日:2010-12-02

    申请号:US12474671

    申请日:2009-05-29

    IPC分类号: H04L12/56

    CPC分类号: G06F13/385 G06F2213/0058

    摘要: A computer readable medium comprising software instructions for managing resources on a host, wherein the software instructions comprise functionality to: configure a classifier located on a NIC, to forward packets addressed to a first destination address to a first HRR mapped to a first VNIC, wherein packets addressed to the first destination address are associated with a first PFC lane; configure the classifier to forward packets addressed to a second destination address to a second HRR, wherein packets addressed to the second destination address are associated with a second PFC lane; and transmit, by the first VNIC, a pause frame associated with the first PFC lane to a switch operatively connected to the physical NIC, wherein the switch, in response to receiving the pause frame, stores packets associated with the first PFC lane in a buffer without transmitting the packets.

    摘要翻译: 一种包括用于管理主机上的资源的软件指令的计算机可读介质,其中所述软件指令包括以下功能:配置位于NIC上的分类器,将寻址到第一目的地地址的分组转发到映射到第一VNIC的第一HRR,其中 寻址到第一目的地地址的分组与第一PFC通道相关联; 配置分类器将寻址到第二目的地地址的分组转发到第二HRR,其中寻址到第二目的地地址的分组与第二PFC通道相关联; 并且由所述第一VNIC将与所述第一PFC通道相关联的暂停帧发送到可操作地连接到所述物理NIC的交换机,其中所述交换机响应于接收到所述暂停帧,将与所述第一PFC通道相关联的分组存储在缓冲器中 而不发送数据包。

    Method and system for automatically reflecting hardware resource allocation modifications
    9.
    发明授权
    Method and system for automatically reflecting hardware resource allocation modifications 有权
    自动反映硬件资源分配修改的方法和系统

    公开(公告)号:US07788411B2

    公开(公告)日:2010-08-31

    申请号:US11490582

    申请日:2006-07-20

    IPC分类号: G06F15/16

    CPC分类号: H04L12/4679

    摘要: A method is disclosed that includes assigning a portion of network hardware resources of a host to a virtual network interface card (VNIC), and configuring a virtual machine network stack (VMNS) in a virtual machine (VM) bound to the VNIC to use the portion of network hardware resources assigned to the VNIC. The method also includes performing a modification to the portion of network hardware resources, and automatically reconfiguring the VMNS to adapt to the modification.

    摘要翻译: 公开了一种方法,其包括将主机的网络硬件资源的一部分分配给虚拟网络接口卡(VNIC),以及在与VNIC绑定的虚拟机(VM)中配置虚拟机网络堆栈(VMNS)以使用 分配给VNIC的部分网络硬件资源。 该方法还包括对网络硬件资源的一部分进行修改,并且自动重新配置VMNS以适应修改。

    Method and apparatus for containing a denial of service attack using hardware resources on a network interface card
    10.
    发明授权
    Method and apparatus for containing a denial of service attack using hardware resources on a network interface card 有权
    用于在网络接口卡上使用硬件资源来包含拒绝服务攻击的方法和装置

    公开(公告)号:US07966401B2

    公开(公告)日:2011-06-21

    申请号:US11480100

    申请日:2006-06-30

    IPC分类号: G06F15/173 G06F11/00

    CPC分类号: H04L63/1408 H04L63/1458

    摘要: A method for processing packets, where the method includes programming a hardware classifier in a network interface card (NIC) to send packets associated with a first packet destination to a non-standby hardware receive ring (HRR), programming a software ring to obtain packets from the non-standby HRR, programming the software ring to send packets for the first destination to a first software receive ring (SRR), wherein the first packet destination is associated with the first SRR, obtaining identifying information about a packet associated with a denial of service (DoS) attack, programming the hardware classifier, using the identifying information, to send the packet associated with the DoS attack to a standby HRR, and for each packet received by the hardware classifier determining to which of the standby HRR and the non-standby HRR to send the packet using the programming of the hardware classifier.

    摘要翻译: 一种处理分组的方法,其中所述方法包括对网络接口卡(NIC)中的硬件分类器进行编程,以将与第一分组目的地相关联的分组发送到非待机硬件接收环(HRR),编程软件环以获得分组 从所述非备用HRR,对所述软件环进行编程,以将所述第一目的地的分组发送到第一软件接收环(SRR),其中所述第一分组目的地与所述第一SRR相关联,获得关于拒绝的分组的标识信息 的服务(DoS)攻击,使用识别信息对硬件分类器进行编程,将与DoS攻击相关联的分组发送到备用HRR,并且对于由硬件分类器接收的每个分组来确定哪个待机HRR和非零 - 通过HRR发送包使用硬件分类器的编程。