Access control method, apparatus, and system

    公开(公告)号:US11095478B2

    公开(公告)日:2021-08-17

    申请号:US16109801

    申请日:2018-08-23

    Inventor: Ying Xie Xin Wang

    Abstract: The present invention discloses an access control method, apparatus, and system, and belongs to the communications field. The method includes: receiving a virtual extensible local area network VXLAN request packet sent by an access device; parsing the VXLAN request packet to obtain an IP address of the access device and authentication information of a user; sending the IP address of the access device and the authentication information of the user to an authentication server, so that the authentication server authenticates the user; receiving an authentication result sent by the authentication server; and controlling the user according to the authentication result. According to the present invention, the user is authenticated according to access information of the user in a VXLAN scenario.

    Method for packet forwarding based on equal-cost multi-path and network device

    公开(公告)号:US10091108B2

    公开(公告)日:2018-10-02

    申请号:US15274522

    申请日:2016-09-23

    Abstract: A method for packet forwarding based on equal-cost multi-path and a network device, in order to resolve problems that are caused by inconsistent forwarding paths for packets in two directions of a same service flow in an equal-cost multi-path scenario. A first network device performs calculation on characteristic information in a packet using a hash algorithm to obtain a hash value, determines, according to a correspondence between hash values and path identifiers that is acquired in advance, a path identifier corresponding to the hash value, and forwards the packet to a second network device through a path that corresponds to the path identifier, where the path is one of the N equal-cost paths. There exist N equal-cost paths for packet forwarding between the first network device and the second network device. The same hash algorithm is configured on the two network devices respectively.

    Method for Packet Forwarding Based On Equal-Cost Multi-Path and Network Device

    公开(公告)号:US20170093718A1

    公开(公告)日:2017-03-30

    申请号:US15274522

    申请日:2016-09-23

    Abstract: A method for packet forwarding based on equal-cost multi-path and a network device, in order to resolve problems that are caused by inconsistent forwarding paths for packets in two directions of a same service flow in an equal-cost multi-path scenario. A first network device performs calculation on characteristic information in a packet using a hash algorithm to obtain a hash value, determines, according to a correspondence between hash values and path identifiers that is acquired in advance, a path identifier corresponding to the hash value, and forwards the packet to a second network device through a path that corresponds to the path identifier, where the path is one of the N equal-cost paths. There exist N equal-cost paths for packet forwarding between the first network device and the second network device. The same hash algorithm is configured on the two network devices respectively.

    Path switching method and related apparatus

    公开(公告)号:US11528217B2

    公开(公告)日:2022-12-13

    申请号:US17100530

    申请日:2020-11-20

    Abstract: This application provides a path switching method and a related apparatus. In the path switching process, an ECMP table includes a first ECMP index of a first path group and a second ECMP index of a second path group; when all paths in the first path group have failed, a path group identifier corresponding to the first ECMP index may be changed from valid to invalid in the ECMP table, indicating that all paths in the first path group are unavailable. In this case, a path group identifier corresponding to the second ECMP index is valid, indicating that the second path group includes an available path, thereby completing switching between an active path and a standby path. In this process, only an identifier corresponding to the ECMP index needs to be updated, and therefore, the time consumed is relatively short, and the path switching delay can be effectively reduced.

    Routing Information Transmission Method and Apparatus, and Data Center Interconnection Network

    公开(公告)号:US20220255837A1

    公开(公告)日:2022-08-11

    申请号:US17731917

    申请日:2022-04-28

    Abstract: A first data center interconnection (DCI) device in a first data center receives a first packet from a Border Gateway Protocol Ethernet virtual private network (BGP EVPN) neighbor, where the first packet includes routing information of a first forwarding instance of an access device in the first data center and an export route target of the first forwarding instance. The first DCI device obtains a second forwarding instance that corresponds to the first packet, where an import route target of the second forwarding instance matches the export route target of the first forwarding instance. The first DCI device generates a second packet that includes routing information of the second forwarding instance and an export route target of the second forwarding instance, which includes a DCI interworking route target. The first DCI device sends the second packet to a second DCI device in a second data center.

    Troubleshooting method and apparatus for edge routing bridge in TRILL campus

    公开(公告)号:US10771284B2

    公开(公告)日:2020-09-08

    申请号:US15176849

    申请日:2016-06-08

    Abstract: A troubleshooting method and apparatus for an edge routing bridge (RB) in a Transparent Interconnection of Lots of Links (TRILL) campus, which belong to the field of communications technologies, where the method includes detecting, by a first edge RB in a multi-homing access group, whether an access link of the first edge RB is faulty, and sending, by the first edge RB, a fault notification message to one or more other edge RBs except the first edge RB in the multi-homing access group using the TRILL campus, when the access link of the first edge RB is faulty, where the fault notification message is used to notify the one or more other edge RBs that the access link of the first edge RB is faulty, and hence effectively increase a network convergence speed and network reliability.

    DS Domain Generating Method, Device and System
    9.
    发明申请
    DS Domain Generating Method, Device and System 有权
    DS域生成方法,设备和系统

    公开(公告)号:US20150188827A1

    公开(公告)日:2015-07-02

    申请号:US14569138

    申请日:2014-12-12

    Abstract: A differentiated service (DS) domain generating method, a device, and a system. A network management device obtains device attribute information of multiple DS devices; determines according to the device attribute information of the multiple DS devices, a DS device that belongs to a first DS domain; and sends a notification message to the DS device that belongs to the first DS domain, so that the DS device that belongs to the first DS domain joins the first DS domain according to the notification message, thereby implementing automatic determining and generation of a DS domain, reducing workload of configuring quality of service (QoS) parameters in a DS domain including a relatively large number of devices, and improving efficiency in generating and maintaining the DS domain.

    Abstract translation: 差异化服务(DS)域生成方法,设备和系统。 网络管理设备获取多个DS设备的设备属性信息; 根据多个DS设备的属性信息确定属于第一DS域的DS设备; 并向属于第一DS域的DS设备发送通知消息,使得属于第一DS域的DS设备根据通知消息加入第一DS域,从而实现DS域的自动确定和生成 ,降低了DS域中配置服务质量(QoS)参数的工作量,包括相对较多的设备,并提高了生成和维护DS域的效率。

    DS domain generating method, device and system

    公开(公告)号:US09667554B2

    公开(公告)日:2017-05-30

    申请号:US14569138

    申请日:2014-12-12

    Abstract: A differentiated service (DS) domain generating method, a device, and a system. A network management device obtains device attribute information of multiple DS devices; determines according to the device attribute information of the multiple DS devices, a DS device that belongs to a first DS domain; and sends a notification message to the DS device that belongs to the first DS domain, so that the DS device that belongs to the first DS domain joins the first DS domain according to the notification message, thereby implementing automatic determining and generation of a DS domain, reducing workload of configuring quality of service (QoS) parameters in a DS domain including a relatively large number of devices, and improving efficiency in generating and maintaining the DS domain.

Patent Agency Ranking