SECURITY FOR COMMUNICATION PROTOCOLS
    51.
    发明公开

    公开(公告)号:US20230246959A1

    公开(公告)日:2023-08-03

    申请号:US18297048

    申请日:2023-04-07

    Abstract: Various example embodiments for supporting security for communications may be configured to support security for communications of communication protocols at various communication layers. For example, various example embodiments for supporting security for communications may be configured to support security for communications of communication protocols operating above Layer 2 using a Layer 2 network security protocol. For example, various example embodiments for supporting security for communications may be configured to support security for communications of communication protocols operating at Layer 2.5 (e.g., Multiprotocol Label Switching (MPLS) protocols or other Layer 2.5 protocols) using a Layer 2 network security protocol. For example, various example embodiments for supporting security for communications may be configured to support security for communications of communication protocols operating at Layer 3 (e.g., Internet Protocol (IP), such as IP version 4 (IPv4) or IP version 6 (IPv6), or other Layer 3 protocols) using a Layer 2 network security protocol.

    Locally protecting service in a label switched path network

    公开(公告)号:US11700195B2

    公开(公告)日:2023-07-11

    申请号:US16995743

    申请日:2020-08-17

    Inventor: Huaimo Chen

    CPC classification number: H04L45/22 H04L45/28 H04L45/50

    Abstract: A network node that provides egress fault protection for a primary egress node. The network node may receive a service label associated with an application from a primary egress node of a primary label switched path (LSP). The network node may use the service label to add a forwarding entry into a forwarding table associated with the primary egress node. Following a fault in the primary egress node, the network node may receive a data packet comprising an LSP label and the service label from a partial backup LSP. The network node may use the LSP label to locate the forwarding table associated with the primary egress node. The service label may be used to deliver the data packet to a destination node according to the forwarding table associated with the primary egress node.

    Optimizing entries in a content addressable memory of a network device

    公开(公告)号:US11689464B2

    公开(公告)日:2023-06-27

    申请号:US17578128

    申请日:2022-01-18

    CPC classification number: H04L45/74591 H04L45/50 H04L47/2441 H04L47/2483

    Abstract: In some implementations, a method is provided. The method includes determining a plurality of field sets and a plurality of field set groups. Each field set of the plurality of field sets comprises one or more packet characteristics. Each field set group of the plurality of field set groups comprises one or more field sets from the plurality of field sets. Each field set group is associated with one or more packet classifier rules. The method also includes determining a set of encoded labels for the plurality of field sets based on a set of rule costs and intersections between field set groups. Each encoded label of the set of encoded labels is associated with a respective field set of the plurality of field sets. The method further includes generating a plurality of entries in a memory based on the set of encoded labels. At least one entry comprises an encoded label from the set of encoded labels and at least a portion of a packet classifier rule.

    Link quality metrics as constraints in source routing switching networks

    公开(公告)号:US11689457B2

    公开(公告)日:2023-06-27

    申请号:US17576015

    申请日:2022-01-14

    Inventor: Cameron Byrne

    CPC classification number: H04L45/70 H04L43/0823 H04L45/50

    Abstract: A label switching router for a switching network configured for source routing can be configured to modify one or more reported properties of a link associated with that router based on one or more link quality metrics. For example, a router can include a link with available bandwidth of 10 Gbps, a value that can be used by a headend when evaluating nodes of the network against a set of constraints required by a particular requested connection or tunnel. A link of that router may exhibit an increased bit error rate which can be used by the label switching router to artificially deflate available bandwidth, thereby reducing the number of label switching paths including the router are selected by the headend.

    Systems and method for propagating route information

    公开(公告)号:US11671357B2

    公开(公告)日:2023-06-06

    申请号:US17142446

    申请日:2021-01-06

    CPC classification number: H04L45/50 H04L12/4633 H04L12/4675 H04L45/741

    Abstract: Techniques disclosed herein provide a method and systems for installing routes by a route reflect (RR) device when the tunnel RIB of the RR device does not include any tunnel labels definitions. The unicast routing information base (RIB) of route reflector (RR) device is configured to include a next hop associated with a first network device. When the RR device receives a route from the first network device that comprises a tunnel label for reaching the second network device, the RR device resolves the next hop of the received route using the unicast RIB of the RR device. In response to the resolving, the RR device forwards the route to a third network device (e.g., identified by an export route target of the RR device).

    METHOD AND APPARATUS FOR PROVIDING A POINT-TO-POINT CONNECTION OVER A NETWORK

    公开(公告)号:US20230163999A1

    公开(公告)日:2023-05-25

    申请号:US18158440

    申请日:2023-01-23

    CPC classification number: H04L12/4633 H04L45/02 H04L12/4641 H04L45/50

    Abstract: A method and apparatus for providing a point-to-point connection are disclosed. The method queries for a next available label for a first provider edge router and a next available label for a second provider edge router, performs a first configuration at the first provider edge router and a second configuration at the second provider edge router, wherein the performing the first configuration comprises configuring a first interface and configuring a label for using at least one tunnel by a second interface, wherein the performing the second configuration comprises configuring a third interface and configuring a label for using the at least one tunnel by a fourth interface, and performs a first mapping for the first provider edge router from the first interface to the second interface, and a second mapping for the second provider edge router from the third interface to the fourth interface.

Patent Agency Ranking