System and method for providing network route redundancy across layer 2 devices
    12.
    发明授权
    System and method for providing network route redundancy across layer 2 devices 有权
    在第2层设备上提供网络路由冗余的系统和方法

    公开(公告)号:US07558195B1

    公开(公告)日:2009-07-07

    申请号:US11695458

    申请日:2007-04-02

    IPC分类号: H04J1/16 H04L12/56

    摘要: Systems and methods are described for providing network route redundancy through Layer 2 devices, such as a loop free Layer 2 network having a plurality of switching devices. A virtual switch is coupled to the loop free Layer 2 network, the virtual switch having two or more switches configured to transition between master and backup modes to provide redundant support for the loop free Layer 2 network, the switches communicating their status through use of a plurality of redundancy control packets. The system also includes means for allowing the redundancy control packets to be flooded through the Layer 2 network. The means may include time-to-live data attached to the redundancy control packet which is decremented only when the packets are transferred through devices which are configured to recognize the protocol used in redundancy control packets.

    摘要翻译: 描述了通过第2层设备提供网络路由冗余的系统和方法,例如具有多个交换设备的无环路的二层网络。 虚拟交换机耦合到无环路的二层网络,虚拟交换机具有两个或多个交换机,配置为在主模式和备用模式之间转换,为无环路的二层网络提供冗余支持,交换机通过使用 多个冗余控制分组。 该系统还包括允许冗余控制分组通过第2层网络淹没的装置。 该装置可以包括附加到冗余控制分组的生存时间数据,只有当分组通过被配置为识别在冗余控制分组中使用的协议的设备传送时,该冗余控制分组才递减。

    Global server load balancing
    13.
    发明申请
    Global server load balancing 有权
    全局服务器负载均衡

    公开(公告)号:US20100082787A1

    公开(公告)日:2010-04-01

    申请号:US11707697

    申请日:2007-02-16

    IPC分类号: G06F15/173

    摘要: A global server load-balancing (GSLB) switch serves as a proxy to an authoritative DNS and communicates with numerous site switches that are coupled to host servers serving specific applications. The GSLB switch receives from site switches operational information regarding host servers within the site switches neighborhood. When a client program requests a resolution of a host name, the GSLB switch, acting as a proxy of an authoritative DNS, returns one or more ordered IP addresses for the host name. The IP addresses are ordered using metrics that include the information collected from the site switches. In one instance, the GSLB switch places the address that is deemed “best” at the top of the list.

    摘要翻译: 全局服务器负载平衡(GSLB)交换机用作授权DNS的代理,并与多个站点交换机进行通信,这些站点交换机与服务于特定应用程序的主机服务器相连。 GSLB交换机从站点交换机接收关于站点交换机附近的主机服务器的操作信息。 当客户端程序请求解析主机名时,作为权威DNS的代理的GSLB交换机返回主机名的一个或多个有序IP地址。 IP地址使用包含从站点交换机收集的信息的度量来排序。 在一个实例中,GSLB开关将地址视为“最佳”位于列表的顶部。

    Network configuration protocol and method for rapid traffic recovery and loop avoidance in ring topologies
    14.
    发明授权
    Network configuration protocol and method for rapid traffic recovery and loop avoidance in ring topologies 失效
    环形拓扑中快速流量恢复和回路避免的网络配置协议和方法

    公开(公告)号:US06717922B2

    公开(公告)日:2004-04-06

    申请号:US10090669

    申请日:2002-03-04

    IPC分类号: H04L1228

    摘要: A network configuration protocol and algorithm are described which resolve deficiencies with existing protocols. A large network having many bridges may be built as a combination of smaller networks, many of which may each be arranged in a ring topology. Each ring may be monitored by a single master bridge regularly sending control packets, and each other bridge in the ring does not make decisions with respect to its status. A loop free topology is achieved by selectively blocking and unblocking data traffic in one of the ring ports of the single master bridge for the ring, while all other bridges in the ring keep their ports in non-blocked states. In multiple ring topologies, each ring has a single master bridge which chooses one of its ports to be blocking. When rings are connected through a shared link formed between two shared bridges, rings with higher priorities carry control packets of rings with lower priorities so that, in case of failure of the shared link, a single ring may be formed from the connected rings with only the master bridge of the higher priority ring aware of and monitoring the larger ring. In case of any link failure inside a given ring, the master bridge quickly detects the failure and automatically changes its blocking port to a non-blocking state in which traffic may flow and follow an alternate path, avoiding the failed link.

    摘要翻译: 描述了一种解决现有协议缺陷的网络配置协议和算法。 可以将具有许多桥的大型网络构建为较小网络的组合,其中许多网络可以各自布置在环形拓扑中。 每个环可以由单个主桥监控,定期发送控制分组,并且环中的每个其他桥不相对于其状态做出决定。 通过选择性地阻塞和解除阻塞环中单个主桥的一个环形端口中的数据流量,环路中的所有其他网桥将其端口保持为非阻塞状态,实现无环路拓扑。 在多环拓扑中,每个环都有一个主桥,它选择一个端口阻塞。 当环路通过两个共享网桥之间形成的共享链路连接时,具有较高优先级的环路可以承载具有较低优先级的环的控制分组,以便在共享链路发生故障的情况下,可以仅从连接的环形成单个环 较高优先级的主桥知道并监视较大的环。 在给定环中发生任何链路故障的情况下,主桥快速检测到故障,并自动将其阻塞端口更改为流量可能流动并遵循备用路径的非阻塞状态,避免了故障链路。

    System and method for implementation of layer 2 redundancy protocols across multiple networks
    15.
    发明申请
    System and method for implementation of layer 2 redundancy protocols across multiple networks 有权
    跨多个网络实施第2层冗余协议的系统和方法

    公开(公告)号:US20090274153A1

    公开(公告)日:2009-11-05

    申请号:US10261946

    申请日:2002-10-01

    IPC分类号: H04L12/56

    CPC分类号: H04L45/74 H04L12/66

    摘要: The system, method, and article of manufacture of the present invention allows multiple customers connected to a common external network to each implement a layer 2 redundancy protocol, such as the spanning tree protocol, in order to prevent layer 2 loops. Accordingly, a method is presented for providing an independent loop free layer 2 topology between a external network and a customer network comprising tagging control packets originating on the customer network with a unique identifier and tunneling the control packets received from the customer network between a plurality of boundary interface devices at the external network such that the control packets are routed back to the customer network based on the presence of the unique identifier in the control packet. The layer 2 redundancy protocol on the customer network converges based at least in part on the presence of control packets appearing on more than one port on the customer network.

    摘要翻译: 本发明的系统,方法和制品允许连接到公共外部网络的多个客户各自实现诸如生成树协议之类的第二层冗余协议,以便防止第二层环路。 因此,提出了一种用于在外部网络和客户网络之间提供独立的循环自由层2拓扑的方法,包括使用唯一标识符标记来自客户网络的控制分组,并且在多个 边界接口设备,使得控制分组基于控制分组中唯一标识符的存在被路由回客户网络。 客户网络上的第2层冗余协议至少部分地基于出现在客户网络上的多个端口上的控制分组的存在来收敛。

    Method for providing scalable multicast service in a virtual private LAN service
    16.
    发明申请
    Method for providing scalable multicast service in a virtual private LAN service 有权
    在虚拟专用LAN服务中提供可扩展多播服务的方法

    公开(公告)号:US20050027782A1

    公开(公告)日:2005-02-03

    申请号:US10632484

    申请日:2003-08-01

    摘要: Multicast capability in a virtual private LAN service (VPLS) is provided in a provider IP/MPLS infrastructure without headend replications by encapsulating a customer data packet to use an established multicast protocol, such as IP multicast. In one example, the customer data packet is encapsulated by an IP header having an IP multicast group address and an Ethernet header. In one implementation, a DNS type mechanism is provided to distribute the IP multicast addresses for VPLS use. Such IP multicast group address can be set aside from an administratively scoped address range. An efficient IP routing algorithm running on the provider's network provides an efficient distribution tree for routing IP-encapsulated customer packet for the VPLS.

    摘要翻译: 虚拟专用LAN服务(VPLS)中的组播能力通过封装客户数据包来使用已建立的多播协议(如IP多播),在提供商IP / MPLS架构中提供无前端复制功能。 在一个示例中,客户数据分组由具有IP多播组地址和以太网报头的IP报头来封装。 在一个实现中,提供DNS类型机制来分发用于VPLS使用的IP多播地址。 这样的IP组播组地址可以从管理范围的地址范围来设置。 在提供商网络上运行的高效IP路由算法为VPLS路由IP封装的客户数据包提供了一个有效的分配树。

    SYSTEMS AND METHODS FOR NETWORK ACCESS CONTROL
    17.
    发明申请
    SYSTEMS AND METHODS FOR NETWORK ACCESS CONTROL 有权
    网络访问控制系统与方法

    公开(公告)号:US20140325588A1

    公开(公告)日:2014-10-30

    申请号:US14261322

    申请日:2014-04-24

    IPC分类号: H04L29/06

    摘要: Network access control systems and methods are provided herein. A method includes receiving at a network device a SYN packet from a client device over a network, determining if the client device is a trusted source for the network using the SYN packet, if the client device is a trusted resource, receiving an acknowledgement (ACK) packet from the client device that includes identifying information for the client device plus an additional value, and identifying information for the network device, and establishing a connection with the network for the client device.

    摘要翻译: 本文提供了网络访问控制系统和方法。 一种方法包括在网络设备处通过网络从客户端设备接收SYN分组,如果客户机设备是可信资源,则确定客户端设备是否是使用SYN分组的网络的可信源,接收到确认 )分组,其包括客户端设备的识别信息加上附加值,以及识别网络设备的信息,以及建立与客户端设备的网络的连接。

    Virtual Application Delivery Chassis System
    18.
    发明申请
    Virtual Application Delivery Chassis System 有权
    虚拟应用交付机箱系统

    公开(公告)号:US20120297240A1

    公开(公告)日:2012-11-22

    申请号:US13558350

    申请日:2012-07-26

    IPC分类号: G06F11/20 G06F15/16

    摘要: A method for electing a master blade in a virtual application distribution chassis (VADC), includes: sending by each blade a VADC message to each of the other blades; determining by each blade that the VADC message was not received from the master blade within a predetermined period of time; in response, sending a master claim message including a blade priority by each blade to the other blades; determining by each blade whether any of the blade priorities obtained from the received master claim messages is higher than the blade priority of the receiving blade; in response to determining that none of the blade priorities obtained is higher, setting a status of a given receiving blade to a new master blade; and sending by the given receiving blade a second VADC message to the other blades indicating the status of the new master blade of the given receiving blade.

    摘要翻译: 一种用于在虚拟应用分发机架(VADC)中选择主刀片的方法,包括:由每个刀片发送VADC消息给每个其他刀片; 在预定时间段内由每个刀片确定VADC消息未被从主刀片接收; 作为响应,将包括由每个刀片的刀片优先级的主要声明消息发送到其他刀片; 由每个刀片确定从所接收的主机声明消息获得的任何刀片优先级是否高于接收刀片的刀片优先级; 响应于确定没有获得的叶片优先级更高,将给定接收叶片的状态设置为新的主叶片; 并且由给定接收刀片发送第二VADC消息给另一个刀片,指示给定接收刀片的新主刀片的状态。

    System and Method for Distributing Application Traffic to Servers Based on Dynamic Service Response Time
    19.
    发明申请
    System and Method for Distributing Application Traffic to Servers Based on Dynamic Service Response Time 有权
    基于动态服务响应时间的应用程序流量分配到服务器的系统和方法

    公开(公告)号:US20120144015A1

    公开(公告)日:2012-06-07

    申请号:US12958435

    申请日:2010-12-02

    IPC分类号: G06F15/173

    摘要: A service gateway processes a service request received from a host by: relaying the service request from the service gateway to a server over a service session between the service gateway and the server; determining a service request time for the service session; receiving by the service gateway a service response from the server; determining by the service gateway a service response time; calculating by the service gateway a service processing time for the service request from the service request time and the service response time; comparing the service processing time with an expected service processing time; and updating a server busy indicator for the server in response to the comparing. If the service processing time exceeds the expected service processing time, the server busy indicator is updated to indicate that the server is busy. Otherwise, the server busy indicator is updated to indicate that the server is not busy.

    摘要翻译: 服务网关通过以下方式处理从主机接收的服务请求:通过服务网关和服务器之间的服务会话将服务请求从服务网关中继到服务器; 确定所述服务会话的服务请求时间; 由服务网关接收来自服务器的服务响应; 由服务网关确定服务响应时间; 由服务网关根据服务请求时间和服务响应时间计算服务请求的服务处理时间; 将服务处理时间与期望的服务处理时间进行比较; 以及响应于比较而更新服务器的服务器繁忙指示符。 如果服务处理时间超过预期的服务处理时间,则更新服务器忙指示符以指示服务器正忙。 否则,将更新服务器忙指示符以指示服务器不忙。

    Sychronization of configuration file of virtual application distribution chassis
    20.
    发明授权
    Sychronization of configuration file of virtual application distribution chassis 有权
    虚拟应用分发机箱配置文件的同步

    公开(公告)号:US09154577B2

    公开(公告)日:2015-10-06

    申请号:US13154399

    申请日:2011-06-06

    摘要: Synchronization of configuration files of a virtual application distribution chassis, includes: processing a configuration command received by a master blade; updating a first configuration file with the configuration command and an updated tag by the master blade; sending a configuration message by the master blade to the slave blades informing of the updated configuration file, the configuration message comprising the updated tag; in response to receiving the configuration message by a given slave blade of the one or more slave blades, comparing the updated tag in the configuration message with a tag in a second configuration file stored at the given slave blade; and in response to determining that the updated tag in the configuration message is more recent than the tag in the second configuration file stored at the given slave blade, sending a request for the updated configuration file to the master blade by the given slave blade.

    摘要翻译: 虚拟应用分发机箱的配置文件同步包括:处理主刀片接收的配置命令; 使用配置命令更新第一配置文件和由主刀片更新的标签; 将所述主刀片的配置消息发送到所述从属刀片,通知所述更新的配置文件,所述配置消息包括所述更新的标签; 响应于由一个或多个从属刀片的给定从属刀片接收配置消息,将配置消息中的更新标签与存储在给定从属刀片上的第二配置文件中的标签进行比较; 并且响应于确定配置消息中的更新的标签比存储在给定从属刀片中的第二配置文件中的标签更新,由给定从属刀片向主刀片发送对更新的配置文件的请求。