Inline network address translation within a mobile gateway router
    1.
    发明授权
    Inline network address translation within a mobile gateway router 有权
    移动网关路由器内的网络地址转换

    公开(公告)号:US08891540B2

    公开(公告)日:2014-11-18

    申请号:US13471252

    申请日:2012-05-14

    Abstract: Techniques are described for performing inline NAT functions in a forwarding element of a mobile gateway router or other device in which subscriber sessions of a mobile access network are distributed across a plurality of session management cards. The session management cards pre-allocate a public network address and port range for subscribers at the time a network connection is established in response to connection request prior to receiving any data traffic associated with the subscriber. NAT profiles are programmed into hardware forwarding elements of the mobile gateway router for inline NAT when routing subscriber traffic for the mobile access network.

    Abstract translation: 描述了用于在移动网关路由器或其他设备的转发元件中执行内联NAT功能的技术,其中移动接入网络的用户会话分布在多个会话管理卡上。 会话管理卡在接收到与用户相关联的任何数据流量之前,在响应于连接请求建立网络连接时为用户预分配公共网络地址和端口范围。 当为移动接入网络路由用户流量时,NAT配置文件被编程为用于内联NAT的移动网关路由器的硬件转发元件。

    Network path selection for multi-homed edges to ensure end-to-end resiliency
    2.
    发明授权
    Network path selection for multi-homed edges to ensure end-to-end resiliency 有权
    多归位边缘的网络路径选择,以确保端到端的弹性

    公开(公告)号:US08724456B1

    公开(公告)日:2014-05-13

    申请号:US12881999

    申请日:2010-09-14

    CPC classification number: G06F11/00

    Abstract: Techniques are described for selecting an alternate path for end-to-end service data traffic that traverses multi-homed routers that provide the service to customer networks. For example, as described herein, a router that is a member of a first multi-homing set connected to a layer two (L2) network with one of a plurality of first access links. The router advertises a status of one of the first access links to a second multi-homing set connected to the first multi-homing set with one or more core links. A core link database stores advertised status information for access links of the first and second multi-homing set. Upon a link failure, a path selector selects a core link to transport service data traffic and directs a switch module to switch to active a status a first access links that connects to a router in the first multi-homing set connected to the selected core link.

    Abstract translation: 描述技术来选择用于通过向客户网络提供服务的多归属路由器的端到端服务数据业务的备用路径。 例如,如本文所述,路由器是与多个第一接入链路中的一个连接到第二层(L2)网络的第一多归属集合的成员。 路由器将具有一个第一接入链路的状态通告给具有一个或多个核心链路的连接到第一多归属集的第二多归属集。 核心链路数据库存储用于第一和第二多归属集合的接入链路的通告状态信息。 在链路故障时,路径选择器选择核心链路来传输服务数据流量并指示交换机模块切换到活动状态,连接到连接到所选核心链路的第一多归属集中的路由器的第一接入链路 。

    Mobile gateway having decentralized control plane for anchoring subscriber sessions
    3.
    发明授权
    Mobile gateway having decentralized control plane for anchoring subscriber sessions 有权
    具有用于锚定用户会话的分散控制平面的移动网关

    公开(公告)号:US08650279B2

    公开(公告)日:2014-02-11

    申请号:US13172556

    申请日:2011-06-29

    CPC classification number: H04W8/082

    Abstract: In general, techniques are described for decentralizing handling of subscriber sessions within a gateway device of a mobile network. A mobile network gateway comprises a data plane having a plurality of forwarding components to receive session requests from a mobile service provider network in which the mobile network gateway resides. A control plane comprises a plurality of distributed subscriber management service units coupled by a switch fabric to the data plane. Each of the subscriber management service units serve as anchors for communication sessions for mobile devices that are accessing one or more packet data network by the mobile service provider network. A request delegation module within each of the forwarding components directs the session requests to the subscriber management service units unit to provide management services for the sessions requested by the mobile device.

    Abstract translation: 一般来说,描述了用于在移动网络的网关设备内分散处理用户会话的技术。 移动网络网关包括具有多个转发组件的数据平面,用于从移动网络网关驻留的移动服务提供商网络接收会话请求。 控制平面包括由交换结构耦合到数据平面的多个分布式用户管理服务单元。 每个用户管理服务单元用作移动服务提供商网络正在访问一个或多个分组数据网络的移动设备的通信会话的锚点。 每个转发组件内的请求委托模块将会话请求引导到用户管理服务单元单元,以为移动设备请求的会话提供管理服务。

    Mobile gateway having reduced forwarding state for anchoring mobile subscribers
    4.
    发明授权
    Mobile gateway having reduced forwarding state for anchoring mobile subscribers 有权
    移动网关具有减少用于锚定移动用户的转发状态

    公开(公告)号:US08635326B1

    公开(公告)日:2014-01-21

    申请号:US13248834

    申请日:2011-09-29

    CPC classification number: H04W74/002 H04L45/60 H04L45/745 H04L67/146

    Abstract: In general, techniques are described for aggregating, within a network device, internal forwarding routes for multiple control protocols and allocating next hops for the routes among individual service units of a decentralized control plane for the network device. The techniques may also include aggregating internal forwarding routes for data protocols and allocating next hops for the routes among individual forwarding units of a decentralized data plane for the network device. In one example, a mobile gateway includes a plurality of subscriber management service units that present a uniform interface to nodes within a mobile service provider network. An allocation manager apportions a control protocol session identifier namespace into a plurality of contiguous, non-overlapping protocol session identifier ranges and allocates the ranges among the service units. The service units execute the control protocol by utilizing respective allocated ranges, which the aggregate internal forwarding routes use to identify the associated service units.

    Abstract translation: 通常,描述了在网络设备内聚合用于多个控制协议的内部转发路由并为网络设备的分散控制平面的各个服务单元之间的路由分配下一跳的技术。 这些技术还可以包括聚合用于数据协议的内部转发路由,并为网络设备的分散数据平面的各个转发单元之间的路由分配下一跳。 在一个示例中,移动网关包括向移动服务提供商网络内的节点呈现统一接口的多个订户管理服务单元。 分配管理器将控制协议会话标识符命名空间分配到多个连续的非重叠协议会话标识符范围中,并在服务单元之间分配范围。 服务单元通过利用各自分配的范围来执行控制协议,集中的内部转发路由用于标识相关的服务单元。

    Performing scalable L2 wholesale services in computer networks
    5.
    发明授权
    Performing scalable L2 wholesale services in computer networks 有权
    在计算机网络中执行可扩展的L2批发服务

    公开(公告)号:US08619788B1

    公开(公告)日:2013-12-31

    申请号:US12901985

    申请日:2010-10-11

    Abstract: In general, techniques are described for performing scalable layer two (L2) learning in computer networks. A network device that includes interfaces and a control unit may implement these techniques. The control unit stores a L2 learning table having entries that are each associated with a service tag identifying a service virtual local area network. In response to receiving a packet that includes a service tag, the interfaces access the L2 learning table using the service tag to determine whether any of the entries of the L2 learning table are associated with the service tag. When none of the entries are associated with the service tag, the L2 learning module updates the L2 learning table to create a new entry defining an association between the one of the interfaces that received the packet and the service tag.

    Abstract translation: 通常,描述了在计算机网络中执行可缩放的第二层(L2)学习的技术。 包括接口和控制单元的网络设备可以实现这些技术。 控制单元存储具有每个与标识服务虚拟局域网的服务标签相关联的条目的L2学习表。 响应于接收到包括服务标签的分组,接口使用服务标签访问L2学习表,以确定L2学习表的任何条目是否与服务标签相关联。 当没有任何条目与服务标签相关联时,L2学习模块更新L2学习表,以创建定义接收到分组的接口之一与服务标签之间的关联的新条目。

    Point-to-multipoint service in a layer two ethernet network
    6.
    发明授权
    Point-to-multipoint service in a layer two ethernet network 有权
    二层以太网网络中的点对多点业务

    公开(公告)号:US08611347B2

    公开(公告)日:2013-12-17

    申请号:US12847505

    申请日:2010-07-30

    CPC classification number: H04L45/16 H04L45/50 H04L45/68

    Abstract: Techniques are described for providing point-to-multipoint (P2MP) Ethernet service in a L2 network. Routers providing the Ethernet service allow an administrator to classify local attachment circuits as either “leaf” attachment circuits or “root” attachment circuits to define a tree-like architecture for forwarding Ethernet frames within a VPLS domain. Based on the classifications, each of router constructs flood domains, referred to herein as mesh groups, that control switching behavior between attachment circuits and pseudowires that transport the L2 communications through the VPLS domain. The routers utilize the mesh groups when switching L2 communications to enforce the requirements of E-TREE service or other L2 services in which L2 traffic is constrained within the L2 VPN to tree-like connectivity.

    Abstract translation: 描述了在L2网络中提供点对多点(P2MP)以太网服务的技术。 提供以太网服务的路由器允许管理员将本地连接电路分类为“叶”附件电路或“根”连接电路,以定义用于转发VPLS域内的以太网帧的树状架构。 基于分类,每个路由器构造泛洪域(这里称为网格组),其控制连接电路之间的交换行为和通过VPLS域传输L2通信的伪线。 当切换L2通信时,路由器利用网状组来实现E-TREE业务或其他L2业务限制在L2 VPN内的树状连接的其他L2业务的需求。

    Hybrid port range encoding
    7.
    发明授权
    Hybrid port range encoding 有权
    混合端口范围编码

    公开(公告)号:US08576841B2

    公开(公告)日:2013-11-05

    申请号:US13174437

    申请日:2011-06-30

    CPC classification number: H04L63/0236 H04L45/60 H04L45/7457

    Abstract: In general, techniques are described for encoding port ranges. In one example, a method includes generating an encoded value that represents a specified port range including a first element storing an identifier that identifies a frequently occurring port range stored in an associative data structure of most frequently occurring port ranges, a second element storing an index that represents a dynamically-learned port range specifying at least a part of the specified port range, the dynamically-learned port range represented in a tree-structure of dynamically-learned port ranges and identified by the index, and applying, by a forwarding plane of the computing device, one or more filters associated with the encoded value to a packet that specifies a port included in the specified port range.

    Abstract translation: 一般来说,描述用于编码端口范围的技术。 在一个示例中,一种方法包括生成代表指定端口范围的编码值,该编码值包括存储识别存储在最频繁出现的端口范围的关联数据结构中的频繁出现的端口范围的标识符的第一元素,存储索引的第二元素 这表示一个动态学习的端口范围,指定指定端口范围的至少一部分,动态学习的端口范围,以动态学习的端口范围的树结构表示,并由索引标识,并由转发平面 计算设备的一个或多个与编码值相关联的过滤器与指定包括在指定端口范围中的端口的分组相关联。

    Routing frames in a computer network using bridge identifiers
    8.
    发明授权
    Routing frames in a computer network using bridge identifiers 有权
    使用网桥标识符在计算机网络中路由帧

    公开(公告)号:US08509248B2

    公开(公告)日:2013-08-13

    申请号:US12344644

    申请日:2008-12-29

    CPC classification number: H04L45/12 H04L12/462 H04L45/04 H04L45/66

    Abstract: Methods, apparatus, and products for routing frames in a network using bridge identifiers, wherein the network includes a plurality of bridge nodes. At least one of the bridge nodes operates as an ingress bridge node through which frames are received into the network. At least one of the bridge nodes operates as an egress bridge node through which frames are transmitted out of the network. One of the bridge nodes receives, from the ingress bridge node, a frame for transmission to a destination node. The destination node connects to the network through the egress bridge node. The frame includes an ingress bridge identifier and an egress bridge identifier. The bridge that received the frame then routes the frame to the egress bridge node through which the destination node connects to the network in dependence upon the ingress bridge identifier and the egress bridge identifier included in the frame.

    Abstract translation: 用于使用桥标识符在网络中路由帧的方法,装置和产品,其中所述网络包括多个网桥节点。 桥接节点中的至少一个作为进入网络的入口网桥节点运行。 至少一个桥接节点作为出口网桥节点运行,帧从网络中传出。 桥节点之一从入口网桥节点接收用于传输到目的地节点的帧。 目的节点通过出口网桥节点连接到网络。 帧包括入口网桥标识符和出口网桥标识符。 接收到帧的桥接器根据包含在帧中的入口网桥标识符和出口网桥标识符,将帧路由到目的节点通过其连接到网络的出口网桥节点。

    ROUTING FRAMES IN A SHORTEST PATH COMPUTER NETWORK FOR A MULTI-HOMED LEGACY BRIDGE NODE
    9.
    发明申请
    ROUTING FRAMES IN A SHORTEST PATH COMPUTER NETWORK FOR A MULTI-HOMED LEGACY BRIDGE NODE 有权
    一个多重路由计算机网络中的路由框架

    公开(公告)号:US20110019678A1

    公开(公告)日:2011-01-27

    申请号:US12508949

    申请日:2009-07-24

    Abstract: Methods, apparatus, and products for routing frames in a shortest path computer network for a multi-homed legacy bridge, wherein the network includes a plurality of bridges. At least two of the plurality of bridges operate as edge bridges through which the frames ingress and egress the network. A first edge bridge identifies a legacy bridge nickname for a legacy bridge connected to the network through the first edge bridge and a second edge bridge using active-active link aggregation. The first bridge receives a frame from the legacy bridge and determines, in dependence upon the frame's destination node address, an egress bridge nickname for a third bridge through which a destination node connects to the network. The first bridge then adds the legacy bridge nickname and the egress bridge nickname to the frame and routes the frame to the third bridge in dependence upon the egress bridge nickname.

    Abstract translation: 用于在用于多宿主遗留桥的最短路径计算机网络中路由帧的方法,装置和产品,其中所述网络包括多个桥。 所述多个网桥中的至少两个桥作为边缘网桥,所述帧通过所述边缘网桥进入和离开所述网络。 第一个边缘网桥为通过第一个边缘网桥连接到网络的传统网桥和使用主动 - 主动链路聚合的第二个边缘网桥标识传统网桥昵称。 第一桥接器从传统桥接收帧,并根据帧的目的地节点地址确定目的节点通过其连接到网络的第三桥的出口网桥昵称。 然后,第一个桥接器将遗留桥昵称和出口桥昵称添加到帧中,并根据出口网桥昵称将帧路由到第三桥。

    ROUTING FRAMES IN A TRILL NETWORK USING SERVICE VLAN IDENTIFIERS
    10.
    发明申请
    ROUTING FRAMES IN A TRILL NETWORK USING SERVICE VLAN IDENTIFIERS 有权
    使用服务VLAN标识符在路由器网络中路由框架

    公开(公告)号:US20100226381A1

    公开(公告)日:2010-09-09

    申请号:US12397811

    申请日:2009-03-04

    CPC classification number: H04L12/465 H04L45/00 H04L45/66 H04L45/72

    Abstract: Methods, apparatus, and products are disclosed for routing frames in a TRILL network using service VLAN identifiers by: receiving a frame from an ingress bridge node for transmission through the TRILL network to a destination node that connects to the TRILL network through an egress node, the received frame including a customer VLAN identifier, a service VLAN identifier uniquely assigned to the ingress bridge node, and a destination node address for the destination node, the received frame not having mac-in-mac encapsulation; adding, in dependence upon the service VLAN identifier and the destination node address, a TRILL header conforming to the TRILL protocol, the TRILL header including an ingress bridge nickname and an egress bridge nickname; and routing, to the egress bridge node through which the destination node connects to the network, the frame in dependence upon the ingress bridge nickname and the egress bridge nickname.

    Abstract translation: 公开了用于使用服务VLAN标识符在TRILL网络中路由帧的方法,装置和产品:从入口网桥节点接收帧,以通过TRILL网络传输到通过出口节点连接到TRILL网络的目的地节点, 所接收的帧包括客户VLAN标识符,唯一地分配给入口网桥节点的服务VLAN标识符和目的地节点的目的地节点地址,所接收的帧不具有mac-in-mac封装; 根据服务VLAN标识符和目的地节点地址,添加符合TRILL协议的TRILL报头,TRILL报头包括入口网桥昵称和出口网桥昵称; 并且根据入口网桥昵称和出口网桥昵称路由到目的地节点通过其连接到网络的出口网桥节点。

Patent Agency Ranking