摘要:
A communication system, includes: a node that requests a processing rule for processing a packet; and a control apparatus that notifies the node of the processing rule in response to the request. The control apparatus, upon being notified of change of a connection relationship between a communication apparatus to which a packet is addressed and the node, determines a forwarding path for a packet addressed to the communication apparatus and notifies the node of a processing rule for realizing the forwarding path.
摘要:
The control unit specifies an undetected connection destination port and sends a reply request to a connection destination of the undetected connection destination port. The packet transfer unit determines whether the received reply request is to be transferred to any other packet transfer unit. The packet transfer unit, upon determining the reply request to be transferred to any other packet transfer unit, transfers the reply request to any other packet transfer unit. The packet transfer unit, upon determining the reply request not to be transferred to any other packet transfer unit, returns a reply that includes information on ports of the local packet transfer unit, the reply being sent along a path leading to the control unit.
摘要:
A communication network management system has: a communication network including a plurality of nodes and a plurality of links connecting between the plurality of nodes; and a management computer that manages the communication network. The management computer has: a storage means in which a route information indicating a transfer route of frames in the communication network is stored; and a monitoring means configured to perform, based on the route information, transmission and reception of frames to and from the communication network. The monitoring means transmits a frame to the transfer route. Each of the plurality of nodes, when receiving a frame, not only forwards the received frame along the transfer route but also sends a reply to the management computer. The monitoring means identifies a location of failure occurrence on the transfer route, based on reception state of the reply from the plurality of nodes.
摘要:
A communication network includes a plurality of nodes and a plurality of links connecting between the nodes. A management computer managing the communication network has a storage means, an entry control means and a monitoring means. A route information indicating a transfer route of frames in the communication network is stored in the storage means. The monitoring means performs, based on the route information, transmission and reception of frames to and from the communication network. The entry control means instructs each node to set up a forwarding table indicating a correspondence relationship between an input source and a forwarding destination of frames. More specifically, the entry control means instructs the each node to set up the forwarding table such that frames are forwarded along the transfer route indicated by the route information.
摘要:
A communication system includes a first switch that refers to a first processing rule included in a packet and processes the packet in accordance with the first processing rule; a second switch that includes a table associating and storing an identifier and a second processing rule for a packet, refers to an identifier included in a packet, and processes the packet in accordance with a second processing rule associated with the identifier; and a control apparatus that stores the first processing rule and the identifier in a packet, associates and stores, in the table of the second switch, the identifier and the second processing rule.
摘要:
The present invention provides a tunneling apparatus which can perform tunneling without requiring the network to be suspended or requiring the existing configuration of a local network to be modified. The frame sorting part 11 determines whether or not a frame input from a local network through a physical interface is an encapsulated tunnel frame. If such frame is a tunnel frame, the frame sorting part 11 outputs such frame to the decapsulation unit of the tunneling part 13. If such frame is not a tunnel frame, the frame sorting part 11 outputs such frame to at least one of the address resolution unit of the kernel part 12 and the encapsulation unit of the tunneling part, based on the characteristics of such frame.
摘要:
In a client terminal of a communication system, a cipher session establishing section establishes a cipher session use connection between the client terminal as a source client terminal and a relay server by transmitting/receiving a cipher session establishment message between the source client terminal and the relay server, and notifies header information contained in a cipher session header to the relay server. A shared key managing section holds a client shared key with a destination client terminal, A data enciphering section performs encipherment of a data and/or MAC (Message Authentication Code) calculation of the data by using the client shared key and to output the performing result as a client cipher data. A message producing section produces a data communication message including a cipher data field in which the client cipher data is inserted and a non-cipher data field in which the cipher session header containing the header information is inserted. A transmitting section transmits the data communication messages destined to the destination client terminal to the relay server by using the cipher session use connection.
摘要:
A network management service system includes a policy management apparatus that receives updating of a communication policy from an user and manages the communication policy for each user; a control apparatus that generates a packet handling operation of a packet associated with the communication policy of the user, in response to a request from the user, and sets the generated packet handling operation in a forwarding node(s); and the forwarding node(s) that processes the packet using the packet handling operation generated by the control apparatus.
摘要:
A communication system, includes: a node that requests a processing rule for processing a packet; and a control apparatus that notifies the node of the processing rule in response to the request. The control apparatus, upon being notified of change of a connection relationship between a communication apparatus to which a packet is addressed and the node, determines a forwarding path for a packet addressed to the communication apparatus and notifies the node of a processing rule for realizing the forwarding path.
摘要:
A communication system includes: a plurality of communication nodes; and a control apparatus that controls packet processing of the plurality of communication nodes. The control apparatus further includes: a virtualization unit that configures a virtual node(s) from a plurality of communication nodes among the plurality of communication nodes; a control unit that sets a processing rule for a packet in at least one communication node of the plurality of communication nodes included in the virtual node(s), so that the at least one communication node executes packet processing corresponding to an operation of the virtual node(s); and a path calculation unit that calculates a forwarding path of a packet, based on a virtual network topology including the virtual node(s). The plurality of communication nodes process a packet corresponding to the forwarding path, in accordance with the processing rule.