Optimal path selection system
    1.
    发明申请
    Optimal path selection system 审中-公开
    最优路径选择系统

    公开(公告)号:US20070047467A1

    公开(公告)日:2007-03-01

    申请号:US11349607

    申请日:2006-02-08

    IPC分类号: H04L12/28

    摘要: A router includes a label-mapping-message receiving unit, a passing-node managing unit, and a passing-node selecting unit. The label-mapping-message receiving unit receives a label-mapping message including label information and PV TLV information from all adjacent nodes. The passing-node managing unit registers received label information and PV TLV information to manage the information. When a line fault occurs in a network, the passing-node selecting unit selects PV TLV information that does not include an identifier of the router itself from among registered PV TLV information. Thus, an optimal path is determined based on selected PV TLV information so that a loop does not occur in the network.

    摘要翻译: 路由器包括标签映射消息接收单元,通过节点管理单元和通过节点选择单元。 标签映射消息接收单元从所有相邻节点接收包括标签信息和PV TLV信息的标签映射消息。 通过节点管理单元注册接收到的标签信息和PV TLV信息以管理信息。 当网络发生线路故障时,通过节点选择单元从注册的PV TLV信息中选择不包含路由器本身的标识符的PV TLV信息。 因此,基于选择的PV TLV信息确定最佳路径,使得在网络中不发生循环。

    Communications system with security checking functions for file transfer operation
    4.
    发明授权
    Communications system with security checking functions for file transfer operation 有权
    具有文件传输操作安全检查功能的通信系统

    公开(公告)号:US07725931B2

    公开(公告)日:2010-05-25

    申请号:US11366658

    申请日:2006-03-02

    IPC分类号: G06F9/00

    CPC分类号: H04L63/20 H04L69/22

    摘要: A secure data communications system with an enhanced function of preventing information leakage. The system includes a user terminal and a router. The router has a security condition definition unit and a storage unit to receive and store a set of security conditions. A packet parser identifies and parses a packet produced by a file transfer application protocol and extracts from that packet a destination address and a security condition ID that the sending user has specified for a file in the packet. The packet parser discards the packet to prevent information leakage if the extracted destination address does not satisfy the security condition corresponding to the user-specified security condition ID. The user terminal has a security condition user interface that requests the router to provide information about security conditions and gives a security condition ID to each file to indicate which security condition the sending user has specified.

    摘要翻译: 一种具有增强防止信息泄漏功能的安全数据通信系统。 该系统包括用户终端和路由器。 路由器具有安全条件定义单元和用于接收和存储一组安全条件的存储单元。 分组解析器识别和解析由文件传输应用协议产生的分组,并从该分组中提取目的地地址和发送用户为分组中的文件指定的安全条件ID。 如果提取的目的地址不符合与用户指定的安全条件ID相对应的安全条件,则数据包解析器丢弃数据包以防止信息泄漏。 用户终端具有安全条件用户界面,请求路由器提供有关安全条件的信息,并向每个文件提供安全条件ID,以指示发送用户指定的安全条件。

    Network management system, and network management method
    5.
    发明申请
    Network management system, and network management method 有权
    网络管理系统和网络管理方法

    公开(公告)号:US20050276232A1

    公开(公告)日:2005-12-15

    申请号:US10978815

    申请日:2004-11-01

    摘要: To collectively manage user networks connected to a virtual private network (VPN) without such time and effort necessary for an operation management server to be ready for an expansion MIB for each of vendors. Provided is a network management system, including: a first edge router, an operation management server and a second edge router which connects to the first edge router, the second edge router being included in the network constituted for each of the user groups, wherein the first edge router includes: collecting unit for collecting management information regarding constituent elements of the network constituted for each of the user groups from the second edge router on the network constituted for each of the user groups, unit for storing the management information in correspondence with the virtual private network for each of the user groups, and unit for returning the management information when receiving, from the operation management server, a request for the management information brought in correspondence with the virtual private network for each of the user groups, and the operation management server includes requesting unit for designating the virtual private network for each of the user groups and requesting the first edge router to return the management information regarding the constituent elements of the network constituted for each user group connected to the virtual private network.

    摘要翻译: 共同管理连接到虚拟专用网(VPN)的用户网络,而无需为操作管理服务器准备好每个供应商的扩展MIB所需的时间和精力。 提供了一种网络管理系统,包括:第一边缘路由器,操作管理服务器和连接到第一边缘路由器的第二边缘路由器,第二边缘路由器被包括在为每个用户组构成的网络中,其中, 第一边缘路由器包括:收集单元,用于从针对每个用户组构成的网络上的第二边缘路由器收集关于为每个用户组构成的网络的构成要素的管理信息,用于存储与 用于每个用户组的虚拟专用网络,以及用于在从操作管理服务器接收到针对每个用户组对应于虚拟专用网络而引入的管理信息的请求时返回管理信息的单元,以及操作 管理服务器包括用于为每个o指定虚拟专用网络的请求单元 f请求第一边缘路由器返回关于为连接到虚拟专用网络的每个用户组构成的网络的组成元素的管理信息。

    Network management system, and network management method
    6.
    发明授权
    Network management system, and network management method 有权
    网络管理系统和网络管理方法

    公开(公告)号:US07668106B2

    公开(公告)日:2010-02-23

    申请号:US10978815

    申请日:2004-11-01

    IPC分类号: G01R31/08

    摘要: To collectively manage user networks connected to a virtual private network (VPN) without such time and effort necessary for an operation management server to be ready for an expansion MIB for each of vendors. Provided is a network management system, including: a first edge router, an operation management server and a second edge router which connects to the first edge router, the second edge router being included in the network constituted for each of the user groups, wherein the first edge router includes: collecting unit for collecting management information regarding constituent elements of the network constituted for each of the user groups from the second edge router on the network constituted for each of the user groups, unit for storing the management information in correspondence with the virtual private network for each of the user groups, and unit for returning the management information when receiving, from the operation management server, a request for the management information brought in correspondence with the virtual private network for each of the user groups, and the operation management server includes requesting unit for designating the virtual private network for each of the user groups and requesting the first edge router to return the management information regarding the constituent elements of the network constituted for each user group connected to the virtual private network.

    摘要翻译: 共同管理连接到虚拟专用网(VPN)的用户网络,而无需为操作管理服务器准备好每个供应商的扩展MIB所需的时间和精力。 提供了一种网络管理系统,包括:第一边缘路由器,操作管理服务器和连接到第一边缘路由器的第二边缘路由器,第二边缘路由器被包括在为每个用户组构成的网络中,其中, 第一边缘路由器包括:收集单元,用于从针对每个用户组构成的网络上的第二边缘路由器收集关于为每个用户组构成的网络的构成要素的管理信息,用于存储与 用于每个用户组的虚拟专用网络,以及用于在从操作管理服务器接收到针对每个用户组对应于虚拟专用网络而引入的管理信息的请求时返回管理信息的单元,以及操作 管理服务器包括用于为每个o指定虚拟专用网络的请求单元 f请求第一边缘路由器返回关于为连接到虚拟专用网络的每个用户组构成的网络的组成元素的管理信息。

    STORAGE MEDIUM STORING TERMINAL IDENTIFYING PROGRAM TERMINAL IDENTIFYING APPARATUS, AND MAIL SYSTEM
    7.
    发明申请
    STORAGE MEDIUM STORING TERMINAL IDENTIFYING PROGRAM TERMINAL IDENTIFYING APPARATUS, AND MAIL SYSTEM 审中-公开
    存储中端存储终端识别程序终端识别设备和邮件系统

    公开(公告)号:US20080168563A1

    公开(公告)日:2008-07-10

    申请号:US11971039

    申请日:2008-01-08

    IPC分类号: G06F21/00

    CPC分类号: H04L63/145

    摘要: A terminal infected by an e-mail with a new virus is identified by storing information of e-mails as mail archive information, storing a distribution request history in which each distribution request of an email is associated with a terminal identification information which serves as a terminal information for identifying the terminal that has issued the distribution request, checking the mail archive and identifying an e-mail with a new virus, when definitions of new viruses have been added in a virus definition file, obtaining account information of the identified e-mail with the new virus, and extracting the terminal identification information of the terminal that issued the distribution request of the e-mail with the new virus, based upon both the obtained account information and the distribution request history.

    摘要翻译: 通过将电子邮件的信息存储为邮件存档信息来识别由具有新病毒的电子邮件感染的终端,存储与电子邮件的每个分发请求相关联的分发请求历史记录,终端标识信息作为 用于识别发布分发请求的终端的终端信息,检查邮件存档并且识别具有新病毒的电子邮件,当新病毒的定义已经被添加到病毒定义文件中时,获得所识别的电子邮件的帐户信息, 使用新的病毒发送邮件,并且基于获得的帐户信息和分发请求历史来提取发布具有新病毒的电子邮件的分发请求的终端的终端标识信息。

    Provider network for providing L-2 VPN services and edge router
    8.
    发明申请
    Provider network for providing L-2 VPN services and edge router 有权
    供应商网络,用于提供L-2 VPN服务和边缘路由器

    公开(公告)号:US20060056384A1

    公开(公告)日:2006-03-16

    申请号:US11025277

    申请日:2004-12-29

    IPC分类号: H04L12/28

    CPC分类号: H04L43/026 H04L45/50

    摘要: The provider network that interconnects user networks includes a plurality of edge routers. At least one of the plurality of edge routers includes an obtaining unit for obtaining information of a packet transferred by the edge router itself, a creating unit for creating a flow list in which flow information of packets transferred from the user network side to the provider network side is registered based on the packet information, a monitoring unit for monitoring a traffic state of a flow of each packet registered in the flow list based on information of packets transferred from the provider network to the user network, and a notifying unit for notifying the traffic state of the flow registered in the flow list to a maintenance engineer.

    摘要翻译: 互连用户网络的提供商网络包括多个边缘路由器。 所述多个边缘路由器中的至少一个包括获取单元,用于获取由边缘路由器本身传送的分组的信息;创建单元,用于创建流列表,其中从用户网络侧传送到提供商网络的分组的流信息 基于所述分组信息登记的一方,监视单元,用于基于从所述提供者网络向所述用户网络传送的分组的信息,监视在所述流列表中登记的每个分组的流的流量状态;以及通知单元, 在流程列表中注册的流量的流量状态到维护工程师。

    Provider network for providing L-2 VPN services and edge router
    9.
    发明授权
    Provider network for providing L-2 VPN services and edge router 有权
    供应商网络,用于提供L-2 VPN服务和边缘路由器

    公开(公告)号:US07684382B2

    公开(公告)日:2010-03-23

    申请号:US11025277

    申请日:2004-12-29

    IPC分类号: H04L12/28

    CPC分类号: H04L43/026 H04L45/50

    摘要: The provider network that interconnects user networks includes a plurality of edge routers. At least one of the plurality of edge routers includes an obtaining unit for obtaining information of a packet transferred by the edge router itself, a creating unit for creating a flow list in which flow information of packets transferred from the user network side to the provider network side is registered based on the packet information, a monitoring unit for monitoring a traffic state of a flow of each packet registered in the flow list based on information of packets transferred from the provider network to the user network, and a notifying unit for notifying the traffic state of the flow registered in the flow list to a maintenance engineer.

    摘要翻译: 互连用户网络的提供商网络包括多个边缘路由器。 所述多个边缘路由器中的至少一个包括获取单元,用于获取由边缘路由器本身传送的分组的信息;创建单元,用于创建流列表,其中从用户网络侧传送到提供商网络的分组的流信息 基于所述分组信息登记的一方,监视单元,用于基于从所述提供者网络向所述用户网络传送的分组的信息,监视在所述流列表中登记的每个分组的流的流量状态;以及通知单元, 在流程列表中注册的流量的流量状态到维护工程师。

    Network device and computer product
    10.
    发明授权
    Network device and computer product 有权
    网络设备和电脑产品

    公开(公告)号:US08223756B2

    公开(公告)日:2012-07-17

    申请号:US11829163

    申请日:2007-07-27

    IPC分类号: H03H15/00 G06F15/16

    CPC分类号: H04L63/0227 H04L63/101

    摘要: A filter-information transmitting/receiving unit transmits path information with the filter information when the filter information is set by a filter setting unit, and receives the path information when the filter information is set in other network device. A filter-combining determining unit determines whether redundant filter information with the other network device is to be combined or deleted, based on the filter information and the path information. A filter control unit issues a filter-setting request or a filter release request based on a result of determination by the filter-combining determining unit.

    摘要翻译: 当滤波器信息由滤波器设置单元设置时,滤波器信息发送/接收单元发送具有滤波器信息的路径信息,并且当在其他网络设备中设置滤波器信息时接收路径信息。 滤波器组合确定单元基于过滤器信息和路径信息来确定是否组合或删除与其他网络设备的冗余过滤器信息。 滤波器控制单元基于滤波器组合确定单元的确定结果发出滤波器设置请求或滤波器释放请求。