METHODS FOR HANDLING REQUESTS BETWEEN DIFFERENT RESOURCE RECORD TYPES AND SYSTEMS THEREOF
    1.
    发明申请
    METHODS FOR HANDLING REQUESTS BETWEEN DIFFERENT RESOURCE RECORD TYPES AND SYSTEMS THEREOF 有权
    用于处理不同资源记录类型之间的请求的方法及其系统

    公开(公告)号:US20120117379A1

    公开(公告)日:2012-05-10

    申请号:US12939377

    申请日:2010-11-04

    IPC分类号: H04L29/06

    摘要: A method, computer readable medium, and device for handling requests between different resource record types includes receiving at a traffic management device a first resource record type from one or more server devices in response to a request from a client device. The traffic management device validates the first resource record type, and creates a second resource record type corresponding to the first resource record type after the validating. Signing the second resource record type at the traffic management device is carried out for servicing the request from the client device.

    摘要翻译: 用于处理不同资源记录类型之间的请求的方法,计算机可读介质和设备包括响应于来自客户端设备的请求,在流量管理设备处接收来自一个或多个服务器设备的第一资源记录类型。 流量管理装置验证第一资源记录类型,并在验证后创建与第一资源记录类型对应的第二资源记录类型。 执行在流量管理装置处签名第二资源记录类型以便为来自客户端装置的请求提供服务。

    Methods for handling requests between different resource record types and systems thereof
    2.
    发明授权
    Methods for handling requests between different resource record types and systems thereof 有权
    用于处理不同资源记录类型及其系统之间的请求的方法

    公开(公告)号:US09106699B2

    公开(公告)日:2015-08-11

    申请号:US12939377

    申请日:2010-11-04

    IPC分类号: H04L29/06 H04L29/12

    摘要: A method, computer readable medium, and device for handling requests between different resource record types includes receiving at a traffic management device a first resource record type from one or more server devices in response to a request from a client device. The traffic management device validates the first resource record type, and creates a second resource record type corresponding to the first resource record type after the validating. Signing the second resource record type at the traffic management device is carried out for servicing the request from the client device.

    摘要翻译: 用于处理不同资源记录类型之间的请求的方法,计算机可读介质和设备包括响应于来自客户端设备的请求,在流量管理设备处接收来自一个或多个服务器设备的第一资源记录类型。 流量管理装置验证第一资源记录类型,并在验证后创建与第一资源记录类型对应的第二资源记录类型。 执行在流量管理装置处签名第二资源记录类型以便为来自客户端装置的请求提供服务。

    Methods for DNSSEC proxying and deployment amelioration and systems thereof
    3.
    发明授权
    Methods for DNSSEC proxying and deployment amelioration and systems thereof 有权
    DNSSEC代理和部署改进方法及其系统

    公开(公告)号:US08347100B1

    公开(公告)日:2013-01-01

    申请号:US12836053

    申请日:2010-07-14

    IPC分类号: H04L9/32 G06F7/04

    摘要: A method, computer readable medium, and device for providing authenticated domain name service includes forwarding at a traffic management device a request for a domain name from a client device to one or more servers coupled to the traffic management device. The traffic management device receives a first response comprising at least a portion of the domain name from the one or more servers. The traffic management device attaches a first signature to the first response when the first response is determined by the traffic management device to be an unauthenticated response, and provides the first response with the first signature to the client device.

    摘要翻译: 一种用于提供经认证的域名服务的方法,计算机可读介质和设备包括在流量管理设备处转发从客户端设备到连接到流量管理设备的一个或多个服务器的域名请求。 流量管理装置从一个或多个服务器接收包括域名的至少一部分的第一响应。 当业务管理设备将第一响应确定为未认证响应时,流量管理设备将第一签名附加到第一响应,并向客户端设备提供具有第一签名的第一响应。

    Methods for preserving flow state during virtual machine migration and devices thereof
    4.
    发明授权
    Methods for preserving flow state during virtual machine migration and devices thereof 有权
    在虚拟机迁移期间保持流状态的方法及其装置

    公开(公告)号:US09141625B1

    公开(公告)日:2015-09-22

    申请号:US13166624

    申请日:2011-06-22

    IPC分类号: G06F15/173 G06F17/30 G06F9/48

    摘要: Methods, computer-readable media, and apparatuses for network flow state preservation include migration of at least one application hosted on a first server device to a second server device coupled to a second traffic management device is detected at a first traffic management device. At least a portion of connection state information associated with a network connection between at least one client device and the application is communicated by the first traffic management device to the second traffic management device via a communication channel between the first and second traffic management devices. The application is provided by the first traffic management device to the at least one client device during the migration based upon the connection state information.

    摘要翻译: 用于网络流状态保存的方法,计算机可读介质和装置包括在第一业务管理设备处检测到托管在第一服务器设备上的至少一个应用的迁移到耦合到第二业务管理设备的第二服务器设备。 至少一部分与至少一个客户端设备和应用之间的网络连接相关联的连接状态信息由第一流量管理设备经由第一和第二流量管理设备之间的通信信道传送到第二流量管理设备。 基于连接状态信息,在迁移期间,应用由第一流量管理设备提供给至少一个客户端设备。

    Methods for dynamic DNS implementation and systems thereof

    公开(公告)号:US09843554B2

    公开(公告)日:2017-12-12

    申请号:US13397610

    申请日:2012-02-15

    IPC分类号: G06F15/16 H04L29/12

    CPC分类号: H04L61/1511 H04L61/251

    摘要: A method, computer readable medium, and device for dynamic DNS implementation, comprises receiving, at a network traffic management device, a first DNS response from a DNS server, wherein the first DNS response is compliant with Internet Protocol version 4 (IPv4). The first DNS response corresponds to a first DNS request from a client device being compliant with Internet Protocol version 6 (IPv6). The first DNS response is converted into a DNS second response that is compliant with IPv6, by attaching a prefix that identifies a network gateway device which is to handle receive subsequent non-DNS requests from the client device. The second DNS response is routed to the client device. Subsequent non-DNS requests from the client device that contain at least a part of the prefix allow the network traffic management device to route the non-DNS request through the designated network gateway device.

    DNS flood protection platform for a network
    6.
    发明授权
    DNS flood protection platform for a network 有权
    一个网络的DNS防洪平台

    公开(公告)号:US08886930B1

    公开(公告)日:2014-11-11

    申请号:US13567938

    申请日:2012-08-06

    CPC分类号: H04L63/1458 H04L61/1511

    摘要: Embodiments are directed towards providing protection to DNS servers against DNS flood attacks by causing a requesting device to perform multiple DNS lookup requests for resolving a resource record. A request from a network device for a resolution of a domain name may be received by a device interposed between the requesting network device and a DNS server. Upon receiving the request to resolve the domain name, the interposed device may respond with a CNAME that includes a cookie. The requesting device may then send another request that includes the cookie preceded CNAME. The interposed device may then validate the returned cookie returned in the CNAME and if valid, forward the domain name resolution request on to a DNS server. The response may then be forwarded to the requesting device.

    摘要翻译: 实施例旨在通过使请求设备执行多个DNS查找请求来解决资源记录来提供对DNS服务器的防范DNS泛洪攻击的保护。 来自网络设备的用于解析域名的请求可以被插入在请求的网络设备和DNS服务器之间的设备接收。 在收到解决域名的请求后,插入的设备可能会响应包含Cookie的CNAME。 然后,请求设备可以发送另一个包含CNAME之前的cookie的请求。 插入的设备可以验证返回的CNAME返回的cookie,如果有效,则将域名解析请求转发到DNS服务器。 然后可以将响应转发到请求设备。

    Method and system for enabling persistent access to virtual servers by an LDNS server
    7.
    发明授权
    Method and system for enabling persistent access to virtual servers by an LDNS server 有权
    用于通过LDNS服务器持续访问虚拟服务器的方法和系统

    公开(公告)号:US07707289B1

    公开(公告)日:2010-04-27

    申请号:US11379557

    申请日:2006-04-20

    IPC分类号: G06F15/16

    摘要: Disclosed are methods and systems for providing persistence across multiple requests in a WAN load-balanced environment. More than one load balancing system may be used to provide persistence while load balancing. One method and system disclosed provides persistence by using modulus arithmetic to load balance requests. Another method and system disclosed provides persistence using topology information contained in the request. Another method and system disclosed provides persistence by storing connection information to refer a timely continuation request of a prior request to the same server the prior request was referred to. When more than one load balancing system is used with this method, the load balancing systems periodically exchange the stored connection information so that each load balancing system may provide persistence to repeat requests.

    摘要翻译: 公开了用于在WAN负载平衡环境中跨多个请求提供持久性的方法和系统。 可以使用多个负载平衡系统来提供持久性,同时负载平衡。 所公开的一种方法和系统通过使用模数运算来负载平衡请求来提供持久性。 所公开的另一方法和系统使用包含在请求中的拓扑信息来提供持久性。 所公开的另一种方法和系统通过存储连接信息来提供持续性,以将先前请求的及时请求引用到同一服务器。 当使用多个负载平衡系统时,负载平衡系统周期性地交换存储的连接信息,以便每个负载均衡系统可以提供持久性来重复请求。

    Minimize recycle SYN issues for split TCP hot flows to improve system reliability and performance
    8.
    发明授权
    Minimize recycle SYN issues for split TCP hot flows to improve system reliability and performance 有权
    最大限度地减少拆分TCP热流的回收SYN问题,以提高系统的可靠性和性能

    公开(公告)号:US09525632B1

    公开(公告)日:2016-12-20

    申请号:US13461675

    申请日:2012-05-01

    摘要: Embodiments are directed towards employing a packet traffic management device that has a split data flow segment (“DFS”) and control segment (“CS”) to determine if a connection flow update provided by the DFS to the CS is valid. The CS may be utilized to establish connection flows at the DFS based on connection flow requests. The CS may generate a connection flow identifier (“CFID”) for a connection flow request. The CS may cache the CFID at the CS. The CS may establish a connection flow at the DFS based at least on the connection flow request and the CFID. After a connection flow is established, a DFS may provide a connection flow update and a corresponding CFID to the CS. The CS may determine that the connection flow update is valid if the corresponding CFID matches the CFID cached at the CS.

    摘要翻译: 实施例涉及采用具有分割数据流段(“DFS”)和控制段(“CS”)的分组业务管理设备,以确定由DFS向CS提供的连接流更新是否有效。 CS可以用于基于连接流请求在DFS建立连接流。 CS可以为连接流请求生成连接流标识符(“CFID”)。 CS可以在CS缓存CFID。 CS可以至少基于连接流请求和CFID在DFS建立连接流。 在建立连接流程之后,DFS可以向CS提供连接流更新和相应的CFID。 如果对应的CFID与CS缓存的CFID匹配,则CS可以确定连接流更新是有效的。

    METHODS FOR DYNAMIC DNS IMPLEMENTATION AND SYSTEMS THEREOF
    9.
    发明申请
    METHODS FOR DYNAMIC DNS IMPLEMENTATION AND SYSTEMS THEREOF 有权
    用于动态DNS实现及其系统的方法

    公开(公告)号:US20130212240A1

    公开(公告)日:2013-08-15

    申请号:US13397610

    申请日:2012-02-15

    IPC分类号: G06F15/173

    CPC分类号: H04L61/1511 H04L61/251

    摘要: A method, computer readable medium, and device for dynamic DNS implementation, comprises receiving, at a network traffic management device, a first DNS response from a DNS server, wherein the first DNS response is compliant with Internet Protocol version 4 (IPv4). The first DNS response corresponds to a first DNS request from a client device being compliant with Internet Protocol version 6 (IPv6). The first DNS response is converted into a DNS second response that is compliant with IPv6, by attaching a prefix that identifies a network gateway device which is to handle receive subsequent non-DNS requests from the client device. The second DNS response is routed to the client device. Subsequent non-DNS requests from the client device that contain at least a part of the prefix allow the network traffic management device to route the non-DNS request through the designated network gateway device.

    摘要翻译: 一种用于动态DNS实现的方法,计算机可读介质和设备,包括在网络流量管理设备处接收来自DNS服务器的第一DNS响应,其中所述第一DNS响应符合互联网协议版本4(IPv4)。 第一个DNS响应对应于来自符合Internet协议版本6(IPv6)的客户端设备的第一个DNS请求。 第一个DNS响应被转换成符合IPv6的DNS第二响应,通过附加标识网络网关设备的前缀来处理从客户端设备接收后续的非DNS请求。 第二个DNS响应被路由到客户端设备。 来自客户端设备的至少包含前缀的一部分的后续非DNS请求允许网络流量管理设备通过指定的网关设备路由非DNS请求。

    DNS flood protection platform for a network
    10.
    发明授权
    DNS flood protection platform for a network 有权
    一个网络的DNS防洪平台

    公开(公告)号:US08261351B1

    公开(公告)日:2012-09-04

    申请号:US12018031

    申请日:2008-01-22

    CPC分类号: H04L63/1458 H04L61/1511

    摘要: Embodiments are directed towards providing protection to DNS servers against DNS flood attacks by causing a requesting device to perform multiple DNS lookup requests for resolving a resource record. A request from a network device for a resolution of a domain name may be received by a device interposed between the requesting network device and a DNS server. Upon receiving the request to resolve the domain name, the interposed device may respond with a CNAME that includes a cookie. The requesting device may then send another request that includes the cookie preceded CNAME. The interposed device may then validate the returned cookie returned in the CNAME and if valid, forward the domain name resolution request on to a DNS server. The response may then be forwarded to the requesting device.

    摘要翻译: 实施例旨在通过使请求设备执行多个DNS查找请求来解决资源记录来提供对DNS服务器的防范DNS泛洪攻击的保护。 来自网络设备的用于解析域名的请求可以被插入在请求的网络设备和DNS服务器之间的设备接收。 在收到解决域名的请求后,插入的设备可能会响应包含Cookie的CNAME。 然后,请求设备可以发送另一个包含CNAME之前的cookie的请求。 插入的设备可以验证返回的CNAME返回的cookie,如果有效,则将域名解析请求转发到DNS服务器。 然后可以将响应转发到请求设备。