Mechanisms for discovering path maximum transmission unit
    1.
    发明授权
    Mechanisms for discovering path maximum transmission unit 失效
    发现路径最大传输单元的机制

    公开(公告)号:US08576847B2

    公开(公告)日:2013-11-05

    申请号:US12868819

    申请日:2010-08-26

    IPC分类号: H04L12/28

    摘要: Mechanisms are provided for determining a path maximum transmission unit of a path between a source node and a destination node of the path. These mechanisms transmit an echo request packet from the source node to the destination node along the path. The mechanisms further determine, by at least one intermediate node along the path, whether a size of the echo request packet is greater than a maximum transmission unit (MTU) of a next link of the path from the intermediate node to a next node along the path. Moreover, the mechanisms record, by the at least one intermediate node, the MTU of the next link in the echo request packet in response to the determination that the size of the echo request packet is greater than the MTU of the next link.

    摘要翻译: 提供了用于确定路径的源节点和目的地节点之间的路径的路径最大传输单元的机制。 这些机制将回波请求分组从源节点沿路径传送到目的节点。 这些机制还通过沿着路径的至少一个中间节点确定回波请求分组的大小是否大于沿着沿着该中间节点到下一个节点的路径的下一个链路的最大传输单元(MTU) 路径。 此外,响应于确定回波请求分组的大小大于下一链路的MTU,该机制由至少一个中间节点记录回波请求分组中的下一链路的MTU。

    Mechanisms for Discovering Path Maximum Transmission Unit
    2.
    发明申请
    Mechanisms for Discovering Path Maximum Transmission Unit 失效
    发现路径最大传输单元的机制

    公开(公告)号:US20120051236A1

    公开(公告)日:2012-03-01

    申请号:US12868819

    申请日:2010-08-26

    IPC分类号: H04L12/56 H04L12/26

    摘要: Mechanisms are provided for determining a path maximum transmission unit of a path between a source node and a destination node of the path. These mechanisms transmit an echo request packet from the source node to the destination node along the path. The mechanisms further determine, by at least one intermediate node along the path, whether a size of the echo request packet is greater than a maximum transmission unit (MTU) of a next link of the path from the intermediate node to a next node along the path. Moreover, the mechanisms record, by the at least one intermediate node, the MTU of the next link in the echo request packet in response to the determination that the size of the echo request packet is greater than the MTU of the next link.

    摘要翻译: 提供了用于确定路径的源节点和目的地节点之间的路径的路径最大传输单元的机制。 这些机制将回波请求分组从源节点沿路径传送到目的节点。 这些机制还通过沿着路径的至少一个中间节点确定回波请求分组的大小是否大于沿着沿着该中间节点到下一个节点的路径的下一个链路的最大传输单元(MTU) 路径。 此外,响应于确定回波请求分组的大小大于下一链路的MTU,该机制由至少一个中间节点记录回波请求分组中的下一链路的MTU。

    Using Unique Local Unicast Addresses in a Global Domain Name Server
    3.
    发明申请
    Using Unique Local Unicast Addresses in a Global Domain Name Server 有权
    在全局域名服务器中使用唯一的本地单播地址

    公开(公告)号:US20120036179A1

    公开(公告)日:2012-02-09

    申请号:US12851689

    申请日:2010-08-06

    IPC分类号: G06F15/16

    CPC分类号: H04L61/1511

    摘要: Mechanisms are provided for resolving a domain name. The mechanisms send a request, from a resolver executing on the data processing system, to a name server requesting a resolution of a domain name into an address. A response to the request is received that includes a local address. The local address has a scope that is local to a site and is not global in scope. A determination is made as to whether the local address corresponds to a domain associated with the resolver. Communications are then performed with a device corresponding to the domain name using the local address in response to a determination that the local address corresponds to a domain associated with the resolver.

    摘要翻译: 提供了解决域名的机制。 机制从数据处理系统执行的解析器发送请求解析域名的名称服务器的请求到地址中。 接收到包含本地地址的对请求的响应。 本地地址具有本地站点的范围,范围不全局。 确定本地地址是否对应于与解析器相关联的域。 响应于本地地址对应于与解析器相关联的域的确定,使用本地地址使用与域名对应的设备进行通信。

    Using unique local unicast addresses in a global domain name server
    4.
    发明授权
    Using unique local unicast addresses in a global domain name server 有权
    在全局域名服务器中使用唯一的本地单播地址

    公开(公告)号:US08819282B2

    公开(公告)日:2014-08-26

    申请号:US12851689

    申请日:2010-08-06

    IPC分类号: G06F15/16

    CPC分类号: H04L61/1511

    摘要: Mechanisms are provided for resolving a domain name. The mechanisms send a request, from a resolver executing on the data processing system, to a name server requesting a resolution of a domain name into an address. A response to the request is received that includes a local address. The local address has a scope that is local to a site and is not global in scope. A determination is made as to whether the local address corresponds to a domain associated with the resolver. Communications are then performed with a device corresponding to the domain name using the local address in response to a determination that the local address corresponds to a domain associated with the resolver.

    摘要翻译: 提供了解决域名的机制。 机制从数据处理系统执行的解析器发送请求解析域名的名称服务器的请求到地址中。 接收到包含本地地址的对请求的响应。 本地地址具有本地站点的范围,范围不全局。 确定本地地址是否对应于与解析器相关联的域。 响应于本地地址对应于与解析器相关联的域的确定,使用本地地址使用与域名对应的设备进行通信。

    Mitigating connection identifier collisions in a communication network
    5.
    发明授权
    Mitigating connection identifier collisions in a communication network 失效
    减轻通信网络中的连接标识符冲突

    公开(公告)号:US08706889B2

    公开(公告)日:2014-04-22

    申请号:US12879786

    申请日:2010-09-10

    IPC分类号: G06F15/16

    CPC分类号: H04L69/162 H04L67/142

    摘要: A new instance of a connection that is in the wait state can be established while mitigating connection identifier collisions. Based on a connection identifier in a connection request received at a server from a client, it is determined that a previous instance of a connection represented by the connection identifier is in a wait state. An acknowledgement message comprising wait state parameters associated with the connection identifier and original connection parameters associated with the previous instance of the connection in the wait state is provided from the server to the client. In response, the server receives a compliance message comprising updated wait state parameters and updated connection parameters from the client. The new instance of the connection represented by the connection identifier that previously represented the previous instance of the connection is established based, at least in part, on the updated wait state parameters and the updated connection parameters.

    摘要翻译: 可以在缓解连接标识符冲突的同时建立处于等待状态的连接的新实例。 基于从客户端在服务器处接收的连接请求中的连接标识符,确定由连接标识符表示的连接的先前实例处于等待状态。 从服务器向客户端提供包括与连接标识符相关联的等待状态参数和与等待状态中的连接的先前实例相关联的原始连接参数的确认消息。 作为响应,服务器从客户端接收包括更新的等待状态参数和更新的连接参数的合规消息。 至少部分地基于更新的等待状态参数和更新的连接参数建立由先前表示连接的先前实例的连接标识符表示的连接的新实例。

    SECURING NETWORK COMMUNICATIONS FROM BLIND ATTACKS WITH CHECKSUM COMPARISONS
    6.
    发明申请
    SECURING NETWORK COMMUNICATIONS FROM BLIND ATTACKS WITH CHECKSUM COMPARISONS 有权
    使用检查比较从BLIND攻击中保护网络通信

    公开(公告)号:US20130139252A1

    公开(公告)日:2013-05-30

    申请号:US13305617

    申请日:2011-11-28

    IPC分类号: G06F21/00

    摘要: Blind attacks on a protocol connection, such as a TCP connection, are prevented by inserting checksums computed during protocol connection establishment handshake into data sent through the connection and invalidating data sent through the connection that lacks the protocol setup information checksums. Reset attacks are prevented by invalidating reset requests unless a master checksum computed from the protocol setup information checksums is included with the reset request. Checksums computed from protocol setup information have improved robustness by including a random number with the protocol setup information.

    摘要翻译: 通过将在协议连接建立握手期间计算出的校验和插入通过连接发送的数据,并使通过缺少协议设置信息校验和的连接发送的数据无效,可以防止对协议连接(例如TCP连接)的盲目攻击。 除非重置请求中包含从协议设置信息校验和计算的主校验和,否则无效复位请求可以防止复位攻击。 从协议设置信息计算的校验和通过将协议设置信息包括随机数来改善鲁棒性。

    Securing network communications from blind attacks with checksum comparisons
    7.
    发明授权
    Securing network communications from blind attacks with checksum comparisons 有权
    保证网络通信免受盲目攻击与校验和比较

    公开(公告)号:US08832830B2

    公开(公告)日:2014-09-09

    申请号:US13305617

    申请日:2011-11-28

    IPC分类号: H04L29/06

    摘要: Blind attacks on a protocol connection, such as a TCP connection, are prevented by inserting checksums computed during protocol connection establishment handshake into data sent through the connection and invalidating data sent through the connection that lacks the protocol setup information checksums. Reset attacks are prevented by invalidating reset requests unless a master checksum computed from the protocol setup information checksums is included with the reset request. Checksums computed from protocol setup information have improved robustness by including a random number with the protocol setup information.

    摘要翻译: 通过将在协议连接建立握手期间计算出的校验和插入通过连接发送的数据,并使通过缺少协议设置信息校验和的连接发送的数据无效,可以防止对协议连接(例如TCP连接)的盲目攻击。 除非重置请求中包含从协议设置信息校验和计算的主校验和,否则无效复位请求可以防止复位攻击。 从协议设置信息计算的校验和通过将协议设置信息包括随机数来改善鲁棒性。

    MITIGATING CONNECTION IDENTIFIER COLLISIONS IN A COMMUNICATION NETWORK
    8.
    发明申请
    MITIGATING CONNECTION IDENTIFIER COLLISIONS IN A COMMUNICATION NETWORK 失效
    在通信网络中减轻连接识别器碰撞

    公开(公告)号:US20120066399A1

    公开(公告)日:2012-03-15

    申请号:US12879786

    申请日:2010-09-10

    IPC分类号: G06F15/16

    CPC分类号: H04L69/162 H04L67/142

    摘要: A new instance of a connection that is in the wait state can be established while mitigating connection identifier collisions. Based on a connection identifier in a connection request received at a server from a client, it is determined that a previous instance of a connection represented by the connection identifier is in a wait state. An acknowledgement message comprising wait state parameters associated with the connection identifier and original connection parameters associated with the previous instance of the connection in the wait state is provided from the server to the client. In response, the server receives a compliance message comprising updated wait state parameters and updated connection parameters from the client. The new instance of the connection represented by the connection identifier that previously represented the previous instance of the connection is established based, at least in part, on the updated wait state parameters and the updated connection parameters.

    摘要翻译: 可以在缓解连接标识符冲突的同时建立处于等待状态的连接的新实例。 基于从客户端在服务器处接收的连接请求中的连接标识符,确定由连接标识符表示的连接的先前实例处于等待状态。 从服务器向客户端提供包括与连接标识符相关联的等待状态参数和与等待状态中的连接的先前实例相关联的原始连接参数的确认消息。 作为响应,服务器从客户端接收包括更新的等待状态参数和更新的连接参数的合规消息。 至少部分地基于更新的等待状态参数和更新的连接参数建立由先前表示连接的先前实例的连接标识符表示的连接的新实例。

    Using Unique Local Unicast Addresses in a Global Domain Name Server by Providing a Centralized Registry
    9.
    发明申请
    Using Unique Local Unicast Addresses in a Global Domain Name Server by Providing a Centralized Registry 有权
    通过提供集中注册表,在全局域名服务器中使用唯一的本地单播地址

    公开(公告)号:US20120198095A1

    公开(公告)日:2012-08-02

    申请号:US13445972

    申请日:2012-04-13

    IPC分类号: G06F15/16

    摘要: Mechanisms are provided for assigning addresses for use in communications between computing devices. With these mechanisms, a centralized domain name registrar server assigns a unique global identifier to a domain of a site such that the unique global identifier uniquely identifies the domain. The unique global identifier is received in a data processing system from the centralized domain name registrar server. The site is divided into a plurality of sub-domains and a unique sub-domain identifier is assigned to each sub-domain in the site such that the unique sub-domain identifier uniquely identifies a corresponding sub-domain in the site. The global identifier for the domain of the site and the sub-domain identifiers of the sub-domains in the plurality of sub-domains are provided by the data processing system to routers of the site for use in associating addresses with devices of the site.

    摘要翻译: 提供了用于分配用于计算设备之间的通信中的地址的机制。 通过这些机制,集中式域名注册服务器将唯一的全局标识符分配给站点的域,以使唯一的全局标识符唯一地标识该域。 在集中式域名注册服务器的数据处理系统中接收到唯一的全局标识符。 站点被分成多个子域,并且将唯一子域标识符分配给站点中的每个子域,使得唯一子域标识符唯一地标识站点中的对应子域。 多个子域中的子域的域的全局标识符和子域标识符由数据处理系统提供给站点的路由器,用于将地址与站点的设备相关联。

    Network Message Transmission
    10.
    发明申请
    Network Message Transmission 审中-公开
    网络消息传输

    公开(公告)号:US20110296054A1

    公开(公告)日:2011-12-01

    申请号:US12788907

    申请日:2010-05-27

    IPC分类号: G06F15/16

    CPC分类号: H04L69/18 H04L69/14 Y02D50/30

    摘要: A method, computer program product, and apparatus for transmitting a message over a network are presented. A processor unit receives the message for transmission over the network and a portion of an address for a source from which the message is to be transmitted. The processor unit identifies an interface configured to transmit messages from the source onto the network using the portion of the address. The processor unit then transmits the message from the source onto the network using the interface.

    摘要翻译: 提出了一种通过网络发送消息的方法,计算机程序产品和装置。 处理器单元接收用于通过网络传输的消息以及要从其发送消息的源的地址的一部分。 处理器单元识别被配置为使用地址的部分将消息从源传送到网络的接口。 处理器单元然后使用该接口将来自源的消息发送到网络上。