METHOD FOR SCALING ADDRESS LOOKUPS USING SYNTHETIC ADDRESSES
    25.
    发明申请
    METHOD FOR SCALING ADDRESS LOOKUPS USING SYNTHETIC ADDRESSES 有权
    使用合成地址缩放地址查询的方法

    公开(公告)号:US20150124805A1

    公开(公告)日:2015-05-07

    申请号:US14475349

    申请日:2014-09-02

    Abstract: Various examples of the present disclosure provide methods for unifying various types of end-point identifiers, such as IPv4 (e.g., Internet protocol version 4 represented by a VRF and an IPv4 address), IPv6 (e.g., Internet protocol version 6 represented by a VRF and an IPv6 address) and L2 (e.g., Layer-2 represented by a bridge domain (BD) and a media access control (MAC) address), by mapping end-point identifiers to a uniform space (e.g., a synthetic IPv4 address and a synthetic VRF) and allowing different forms of lookups to be uniformly handled. In some examples, a lookup database residing on a switch device can be sharded into a plurality of lookup table subsets, each of which resides on a different one of multiple switch chipsets (e.g., Tridents) in the switch device.

    Abstract translation: 本公开的各种示例提供了用于统一各种端点标识符(例如,由VRF和IPv4地址表示的因特网协议版本4),IPv6(例如,由VRF表示的因特网协议版本6)的各种端点标识符的方法 和IPv6地址)和L2(例如,由桥接域(BD)和媒体访问控制(MAC)地址表示的层2),通过将端点标识符映射到统一的空间(例如,合成IPv4地址和 合成VRF),并允许不同形式的查找被统一处理。 在一些示例中,驻留在交换机设备上的查找数据库可以划分成多个查找表子集,每个查找表子集驻留在交换设备中的多个交换芯片组(例如Trident)中的不同的一个。

    Method for improving access control for TCP connections while optimizing hardware resources

    公开(公告)号:US10432628B2

    公开(公告)日:2019-10-01

    申请号:US15051454

    申请日:2016-02-23

    Abstract: Disclosed are systems, methods, and computer-readable storage media for minimizing the number of entries in network access control lists (ACLs). In some embodiments of the present technology a networking device can receive, from a first computing device, a first data transmission intended for a second computing device, the first data transmission including first transmission data. The networking device can normalize at least a subset of the first transmission data based on a predetermined normalization algorithm, yielding a first normalized data set for the first data transmission. Subsequently, the networking device can identify a first access control list entry from a set of access control list entries based on the first normalized data set, the first access control list entry identifying a first action, and implement the first action in relation to the first data transmission.

    Networking apparatuses and packet statistic determination methods employing atomic counters

    公开(公告)号:US10412615B2

    公开(公告)日:2019-09-10

    申请号:US15855620

    申请日:2017-12-27

    Abstract: Disclosed herein are methods and related apparatuses for determining statistics descriptive of packets received at a particular location on a network out of a set of packets transmitted on the network, which include transmitting first and second groups of packets on the network, the packets in the first and second groups labeled with first and second labels, respectively (the packets in the second group not in the first group), incrementing first and second packet counters associated with the particular network location in response to packet(s) in the first and second groups, respectively, being received at the network location until all packets in the first and second groups have drained from the network, and using values read from the first and second packet counters to determine a statistic descriptive of the packets received at the particular network location out of those in the first and second groups transmitted on the network.

Patent Agency Ranking