Methods and apparatus for implementing access control at a network switch
    2.
    发明授权
    Methods and apparatus for implementing access control at a network switch 有权
    在网络交换机上实现访问控制的方法和装置

    公开(公告)号:US08804708B1

    公开(公告)日:2014-08-12

    申请号:US13723344

    申请日:2012-12-21

    CPC classification number: H04L45/745

    Abstract: A switch device is configured to receive a data unit from a virtual port from a first set of virtual ports. The switch device is configured to associate an identifier of each virtual port from the first set of virtual ports with an identifier of a first access group that is associated with an access set. The switch device is configured to prohibit the data unit from being sent to a remaining virtual port from the first set of virtual ports if the data unit is addressed to that virtual port. The switch device is configured to otherwise allow the data unit to be sent to a virtual port from a second set of virtual ports associated with a second access group when the second access group is associated with the access set. The second set of virtual ports is mutually exclusive from the first set of virtual ports.

    Abstract translation: 交换机设备被配置为从第一组虚拟端口从虚拟端口接收数据单元。 交换机设备被配置为将来自第一组虚拟端口的每个虚拟端口的标识符与与访问集相关联的第一访问组的标识符相关联。 如果数据单元寻址到该虚拟端口,则交换设备被配置为禁止数据单元从第一组虚拟端口发送到剩余的虚拟端口。 交换设备被配置为当第二接入组与接入组相关联时,允许将数据单元从与第二接入组相关联的第二组虚拟端口发送到虚拟端口。 第二组虚拟端口与第一组虚拟端口互斥。

Patent Agency Ranking