Methods and apparatus for a distributed control plane

    公开(公告)号:US09774518B1

    公开(公告)日:2017-09-26

    申请号:US14456938

    申请日:2014-08-11

    CPC classification number: H04L45/02 H04L45/025 H04L49/25

    Abstract: In some embodiments, an apparatus includes a first network control entity configured to be implemented at a first edge device. The first network control entity is configured to receive a control packet from a peripheral processing device via a tunnel that is between the peripheral processing device and the first network control entity and that includes at least a portion within a second edge device. The first network control entity is configured to determine routing information associated with the peripheral processing device based on the control packet. The first network control entity is configured to send the routing information to a second network control entity such that the second network control entity routes a data unit addressed to the peripheral processing device to the second edge device without sending the data unit to the first edge device.

    Methods and apparatus for implementing access control at a network switch
    3.
    发明授权
    Methods and apparatus for implementing access control at a network switch 有权
    在网络交换机上实现访问控制的方法和装置

    公开(公告)号:US08804708B1

    公开(公告)日:2014-08-12

    申请号:US13723344

    申请日:2012-12-21

    CPC classification number: H04L45/745

    Abstract: A switch device is configured to receive a data unit from a virtual port from a first set of virtual ports. The switch device is configured to associate an identifier of each virtual port from the first set of virtual ports with an identifier of a first access group that is associated with an access set. The switch device is configured to prohibit the data unit from being sent to a remaining virtual port from the first set of virtual ports if the data unit is addressed to that virtual port. The switch device is configured to otherwise allow the data unit to be sent to a virtual port from a second set of virtual ports associated with a second access group when the second access group is associated with the access set. The second set of virtual ports is mutually exclusive from the first set of virtual ports.

    Abstract translation: 交换机设备被配置为从第一组虚拟端口从虚拟端口接收数据单元。 交换机设备被配置为将来自第一组虚拟端口的每个虚拟端口的标识符与与访问集相关联的第一访问组的标识符相关联。 如果数据单元寻址到该虚拟端口,则交换设备被配置为禁止数据单元从第一组虚拟端口发送到剩余的虚拟端口。 交换设备被配置为当第二接入组与接入组相关联时,允许将数据单元从与第二接入组相关联的第二组虚拟端口发送到虚拟端口。 第二组虚拟端口与第一组虚拟端口互斥。

Patent Agency Ranking