Abstract:
A packet forwarding method and system. A first network device encapsulates a to-be-forwarded packet as a first packet, and sends the first packet to a second network device, where the first packet carries a destination Media Access Control (MAC) address encapsulation instruction, the destination MAC address encapsulation instruction is used to instruct the second network device to encapsulate a destination MAC address for the first packet, the to-be-forwarded packet carries a destination internet protocol (IP) address, and the destination MAC address is a MAC address of a destination host corresponding to the destination IP address; the second network device generates a second packet containing the destination MAC address according to the destination MAC address encapsulation instruction carried by the received first packet, and forwards the second packet to the destination host corresponding to the destination MAC address.
Abstract:
A differentiated service (DS) domain generating method, a device, and a system. A network management device obtains device attribute information of multiple DS devices; determines according to the device attribute information of the multiple DS devices, a DS device that belongs to a first DS domain; and sends a notification message to the DS device that belongs to the first DS domain, so that the DS device that belongs to the first DS domain joins the first DS domain according to the notification message, thereby implementing automatic determining and generation of a DS domain, reducing workload of configuring quality of service (QoS) parameters in a DS domain including a relatively large number of devices, and improving efficiency in generating and maintaining the DS domain.
Abstract:
The present invention provides a method for processing a packet on a TRILL network, relates to the field of communications, and can effectively defend against a network packet attack. The method includes: receiving a packet sent by a device on a network; if it is determined that the device is a trusted RB, giving up performing a security check on the packet coming from the device; and if it is determined that the device is not a trusted RB, performing a security check on the packet coming from the device. The present invention further provides a corresponding apparatus.
Abstract:
This application discloses an MLAG link failure switching apparatus and method. The apparatus includes a chip. The chip is configured to: generate a forwarding database, and forward a packet based on the forwarding database, where the forwarding database includes a first forwarding database, a second forwarding database, and a third forwarding database. The apparatus switches a faulty MLAG link by modifying a value of an active-standby switching flag corresponding to the faulty link in the first forwarding database, thereby reducing a link switching time and improving link switching efficiency.
Abstract:
The present invention provides a method for processing a packet on a TRILL network, relates to the field of communications, and can effectively defend against a network packet attack. The method includes: receiving a packet sent by a device on a network; if it is determined that the device is a trusted RB, giving up performing a security check on the packet coming from the device; and if it is determined that the device is not a trusted RB, performing a security check on the packet coming from the device. The present invention further provides a corresponding apparatus.
Abstract:
A differentiated service (DS) domain generating method, a device, and a system. A network management device obtains device attribute information of multiple DS devices; determines according to the device attribute information of the multiple DS devices, a DS device that belongs to a first DS domain; and sends a notification message to the DS device that belongs to the first DS domain, so that the DS device that belongs to the first DS domain joins the first DS domain according to the notification message, thereby implementing automatic determining and generation of a DS domain, reducing workload of configuring quality of service (QoS) parameters in a DS domain including a relatively large number of devices, and improving efficiency in generating and maintaining the DS domain.
Abstract:
A packet forwarding method and system. A first network device encapsulates a to-be-forwarded packet as a first packet, and sends the first packet to a second network device, where the first packet carries a destination Media Access Control (MAC) address encapsulation instruction, the destination MAC address encapsulation instruction is used to instruct the second network device to encapsulate a destination MAC address for the first packet, the to-be-forwarded packet carries a destination internet protocol (IP) address, and the destination MAC address is a MAC address of a destination host corresponding to the destination IP address; the second network device generates a second packet containing the destination MAC address according to the destination MAC address encapsulation instruction carried by the received first packet, and forwards the second packet to the destination host corresponding to the destination MAC address.