会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • System and methods for network segmentation
    • 网络分割的系统和方法
    • US20070058638A1
    • 2007-03-15
    • US11226011
    • 2005-09-14
    • James GuichardW. WainnerSaul AdlerKhalil JabrS. Van de Houten
    • James GuichardW. WainnerSaul AdlerKhalil JabrS. Van de Houten
    • H04L12/28
    • H04L12/4641H04L45/50H04L45/66
    • A routing mechanism provides network segmentation preservation by route distribution with segment identification, policy distribution for a given VPN segment, and encapsulation/decapsulation for each segment using an Ethernet VLAN_ID, indicative of the VPN segment (subnetwork). Encapsulated segmentation information in a message packet identifies which routing and forwarding table is employed for the next hop. A common routing instance receives the message packets from the common interface, and indexes a corresponding VRF table from the VLAN ID, or segment identifier, indicative of the subnetwork (e.g. segment). In this manner, the routing instance receives the incoming message packet, decapsulates the VLAN ID in the incoming message packet, and indexes the corresponding VRF and policy ID from the VLAN ID, therefore employing a common routing instance over a common subinterface for a plurality of segments (subnetworks) coupled to a particular forwarding device (e.g. VPN router).
    • 路由机制通过分段识别,给定VPN段的策略分配以及使用指示VPN段(子网)的以太网VLAN_ID对每个段进行封装/解封装来提供网络分段保护。 消息分组中的封装分段信息标识下一跳采用的路由和转发表。 公共路由实例从公共接口接收消息包,并从指示子网(例如,段)的VLAN ID或段标识符中对相应的VRF表进行索引。 以这种方式,路由实例接收到入消息包,将入局消息包中的VLAN ID解封装,并从VLAN ID中对相应的VRF和策略ID进行索引,因此在公共子接口上采用公共路由实例, 耦合到特定转发设备(例如,VPN路由器)的段(子网络)。
    • 3. 发明申请
    • Layer two encryption for data center interconnectivity
    • 数据中心互连的第二层加密
    • US20100153701A1
    • 2010-06-17
    • US12316842
    • 2008-12-17
    • Sudhakar ShenoyKhalil JabrSridar KandaswamyMadhusudanan ManoharSandeep Hebbani
    • Sudhakar ShenoyKhalil JabrSridar KandaswamyMadhusudanan ManoharSandeep Hebbani
    • H04L9/00
    • H04L12/4666H04L12/4633H04L63/0428H04L63/162
    • Systems, methods, and other embodiments associated with layer two (L2) encryption for data center interconnectivity are described. One example system includes a receive logic to receive an unencrypted L2 switched frame (UL2SF). The UL2SF may include a payload and an L2 header. The example system may also include an encryption logic to selectively encrypt the UL2SF into an encrypted frame if the UL2SF is to be sent through an L2 virtual private network (L2VPN) requiring encryption. The example system may also include a delivery logic that adds a header to the encrypted frame. The header may include data to identify a decryption function to decrypt the encrypted frame and routing information for the encrypted frame. The delivery logic may also provide the encrypted frame to the L2VPN, where the providing includes selectively sending the encrypted frame as one of, a point to point packet, and a multipoint packet.
    • 描述了与用于数据中心互连的第二层(L2)加密相关联的系统,方法和其它实施例。 一个示例系统包括接收未加密的L2交换帧(UL2SF)的接收逻辑。 UL2SF可以包括有效载荷和L2报头。 如果要通过需要加密的L2虚拟专用网(L2VPN)发送UL2SF,示例系统还可以包括加密逻辑,以选择性地将UL2SF加密成加密帧。 示例系统还可以包括向加密的帧添加头部的递送逻辑。 标题可以包括用于识别解密加密帧的解密功能的数据和用于加密帧的路由信息​​。 递送逻辑还可以将加密的帧提供给L2VPN,其中提供包括选择性地将加密的帧作为点对点分组和多点分组之一发送。
    • 5. 发明授权
    • Layer two encryption for data center interconnectivity
    • 数据中心互连的第二层加密
    • US08271775B2
    • 2012-09-18
    • US12316842
    • 2008-12-17
    • Sudhakar ShenoyKhalil JabrSridar KandaswamyMadhusudanan ManoharSandeep Hebbani
    • Sudhakar ShenoyKhalil JabrSridar KandaswamyMadhusudanan ManoharSandeep Hebbani
    • H04L29/06
    • H04L12/4666H04L12/4633H04L63/0428H04L63/162
    • Systems, methods, and other embodiments associated with layer two (L2) encryption for data center interconnectivity are described. One example system includes a receive logic to receive an unencrypted L2 switched frame (UL2SF). The UL2SF may include a payload and an L2 header. The example system may also include an encryption logic to selectively encrypt the UL2SF into an encrypted frame if the UL2SF is to be sent through an L2 virtual private network (L2VPN) requiring encryption. The example system may also include a delivery logic that adds a header to the encrypted frame. The header may include data to identify a decryption function to decrypt the encrypted frame and routing information for the encrypted frame. The delivery logic may also provide the encrypted frame to the L2VPN, where the providing includes selectively sending the encrypted frame as one of, a point to point packet, and a multipoint packet.
    • 描述了与用于数据中心互连的第二层(L2)加密相关联的系统,方法和其它实施例。 一个示例系统包括接收未加密的L2交换帧(UL2SF)的接收逻辑。 UL2SF可以包括有效载荷和L2报头。 如果要通过需要加密的L2虚拟专用网(L2VPN)发送UL2SF,示例系统还可以包括加密逻辑,以选择性地将UL2SF加密成加密帧。 示例系统还可以包括向加密帧添加头部的递送逻辑。 标题可以包括用于识别解密加密帧的解密功能的数据和用于加密帧的路由信息​​。 递送逻辑还可以将加密的帧提供给L2VPN,其中提供包括选择性地将加密的帧作为点对点分组和多点分组之一发送。
    • 9. 发明授权
    • Inducing symmetry via multi topology routing
    • 通过多拓扑路由引导对称
    • US08036118B2
    • 2011-10-11
    • US12024779
    • 2008-02-01
    • Khalil Jabr
    • Khalil Jabr
    • H04L12/28
    • H04L45/302H04L45/02H04L45/306H04L45/745
    • In one embodiment, a technique for selecting a topology, in a multi-topology routing network, based on a source-destination pair of a packet is provided. The packet may be routed on a preferred path of the selected topology. By selecting the same topology for the source-destination pair even if the source and destination addresses are swapped, upstream and downstream traffic may be routed in a symmetrical manner. For some embodiments, a topology may be selected using a hash value that is generated using an algorithm that is commutative with respect to the source and destination addresses.
    • 在一个实施例中,提供了一种基于分组的源 - 目的地对在多拓扑路由选择网络中选择拓扑的技术。 分组可以在所选拓扑的优选路径上路由。 通过为源 - 目的地对选择相同的拓扑,即使交换了源和目标地址,也可以以对称的方式路由上游和下游流量。 对于一些实施例,可以使用使用相对于源和目的地址交换的算法生成的散列值来选择拓扑。