METHOD FOR UPDATING BEST PATH BASED ON REAL-TIME CONGESTION FEEDBACK
    3.
    发明申请
    METHOD FOR UPDATING BEST PATH BASED ON REAL-TIME CONGESTION FEEDBACK 审中-公开
    基于实时响应反馈更新最佳路径的方法

    公开(公告)号:WO2007027481A2

    公开(公告)日:2007-03-08

    申请号:PCT/US2006/032828

    申请日:2006-08-17

    Abstract: Techniques are provided for updating best path based on real-time congestion feedback. A method comprises monitoring packets received from an internetworked system, wherein the packets are received on one of a plurality of external interfaces of a networking device; detecting that a received packet includes real-time information that signals a present or pending congestion condition on a path from the external interfaces of the networking device to the internetworked system; notifying a control logic of the real-time information; receiving from the control logic control information defining a change in one or more paths from the external interfaces to the internetworked system; and changing the one or more paths from the external interfaces to the internetworked system. Examining ingress traffic on external interfaces of an internetworked system can cause changes to routes, routing policies and PBRs in routers of the first internetworked system in response to real-time congestion.

    Abstract translation: 提供了基于实时拥塞反馈来更新最佳路径的技术。 一种方法包括监视从互联网络系统接收的分组,其中分组在网络设备的多个外部接口之一上被接收; 检测所接收的分组包括实时信息,其表示从所述网络设备的外部接口到所述互联网络系统的路径上的当前或未完成拥塞状况; 通知实时信息的控制逻辑; 从所述控制逻辑控制信息接收定义从所述外部接口到所述互联网络系统的一个或多个路径的变化; 并将一个或多个路径从外部接口改变为互联网络系统。 检查互联网络系统的外部接口上的入口流量可能会导致第一个互联网络系统的路由器中的路由,路由策略和PBR的更改,以响应实时拥塞。

    SYNERGISTIC DNS SECURITY UPDATE
    4.
    发明申请

    公开(公告)号:WO2020112402A1

    公开(公告)日:2020-06-04

    申请号:PCT/US2019/061966

    申请日:2019-11-18

    Abstract: Systems and methods provide for synergistic domain name system DNS security updates for an enterprise network operating under a Software Defined Wide Area Network (SD-WAN). A system may be configured to collect positive and/or negative unified threat defense (UTD) results, deploy a rules-based model that, when a threat or clearance is detected across several SD-WAN edge network devices, triggers an update to a local security blacklist/whitelist, wherein the update comprises a signature, and push the update to other devices that have not yet seen the threat or clearance.

    DYNAMIC INTENT-BASED FIREWALL
    5.
    发明申请

    公开(公告)号:WO2020112345A1

    公开(公告)日:2020-06-04

    申请号:PCT/US2019/060910

    申请日:2019-11-12

    Abstract: Systems and methods provide for provisioning a dynamic intent-based firewall. A network controller can generate a master route table for network segments reachable from edge network devices managed by the controller. The controller can receive zone definition information mapping the network segments into zones and Zone-based Firewall (ZFW) policies to apply to traffic between a source and destination zone specified by each ZFW policy. The controller can evaluate a ZFW policy to determine first edge network devices that can reach first network segments mapped to the source zone specified by the ZFW policy, second edge network devices that can reach second network segments mapped to the destination zone specified by the ZFW policy, and routing information (from the route table) between the first network segments, the first and second edge network devices, and the second network segments. The controller can transmit the routing information to the edge network devices.

Patent Agency Ranking