会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Integrating service insertion architecture and virtual private network
    • 集成服务插入架构和虚拟专用网络
    • US08650618B2
    • 2014-02-11
    • US12507422
    • 2009-07-22
    • Rajiv AsatiMohamed KhalidSunil CherukuriKenneth A. DurazzoShree Murthy
    • Rajiv AsatiMohamed KhalidSunil CherukuriKenneth A. DurazzoShree Murthy
    • G06F7/04
    • H04L63/0272H04L12/4633H04L12/4641H04L63/0892H04L63/102H04L63/164
    • Apparatus, methods, and other embodiments associated with providing service insertion architecture (SIA) differentiated services in a virtual private network (VPN) environment are described. Embodiments may provision an authentication, authorization, and accounting (AAA) server with user-to-SIA service-context mapping information. With the AAA server provisioned, embodiments may acquire, in an IPSec VPN hub, during IPSec tunnel user authentication, from the AAA server, the user-to-SIA service-context mapping information. With the mapping information available, embodiments may dynamically map an SIA service to an IPSec VPN tunnel user based on the service information acquired from the Service Broker or Pseudo-Service Broker. The dynamic mapping facilitates providing differentiated services in the SIA by facilitating forwarding an IPSec packet received on the IPSec VPN tunnel from the user to a service node associated with the SIA service based, at least in part, on the IPSec SADB entry modified using the service information.
    • 描述了与在虚拟专用网络(VPN)环境中提供服务插入架构(SIA)差异化服务相关联的装置,方法和其他实施例。 实施例可以提供具有用户到SIA服务 - 上下文映射信息的认证,授权和计费(AAA)服务器。 在提供AAA服务器的情况下,实施例可以在IPSec VPN集线器中从AAA服务器获取用户到SIA服务上下文映射信息的IPSec隧道用户认证期间。 利用可用的映射信息,实施例可以基于从服务代理或伪服务代理获取的服务信息来动态地将SIA服务映射到IPSec VPN隧道用户。 动态映射有助于在SIA中提供差分服务,方法是至少部分地基于使用该服务修改的IPSec SADB条目,将在IPSec VPN隧道上接收的IPSec分组从用户转发到与SIA服务相关联的服务节点 信息。
    • 2. 发明申请
    • Service Insertion Architecture (SIA) in a Virtual Private Network (VPN) Aware Network
    • 虚拟专用网(VPN)感知网络中的服务插入架构(SIA)
    • US20100254385A1
    • 2010-10-07
    • US12419569
    • 2009-04-07
    • Govind Prasad SharmaMohamed KhalidShree MurthyRajiv Asati
    • Govind Prasad SharmaMohamed KhalidShree MurthyRajiv Asati
    • H04L12/56H04L12/54
    • H04L45/00H04L12/4633H04L12/4641
    • Systems, methods, and other embodiments associated with interworking a VPN and an SIA are described. One example apparatus includes a mapping data store to store a mapping between two logical groups of network devices having separate forwarding planes that are at least partially incompatible. The apparatus includes an instantiation logic to establish the mapping based on unique identifiers associated with the logical groups. The apparatus also includes an encoding logic to implicitly encode information to identify the first logical group in a packet received from the first logical group, provided to the second logical group, and then provided back to the first logical group. The implicitly encoded information is configured to be used without modification by the forwarding plane associated with the second logical group and is configured to facilitate a member of the second logical group resolving the mapping.
    • 描述与互联VPN和SIA相关联的系统,方法和其他实施例。 一个示例性设备包括映射数据存储,用于存储具有至少部分不兼容的具有单独转发平面的两个逻辑组网络设备之间的映射。 该装置包括用于基于与逻辑组相关联的唯一标识符建立映射的实例化逻辑。 该装置还包括编码逻辑,用于隐含地编码信息以识别提供给第二逻辑组的从第一逻辑组接收的分组中的第一逻辑组,然后提供给第一逻辑组。 隐式编码的信息被配置为不经由与第二逻辑组相关联的转发平面的修改使用,并且被配置为便于解决映射的第二逻辑组的成员。
    • 10. 发明授权
    • System and method for a multi-layer network element
    • 多层网元的系统和方法
    • US6081522A
    • 2000-06-27
    • US885559
    • 1997-06-30
    • Ariel HendelLeo A. HejzaShree Murthy
    • Ariel HendelLeo A. HejzaShree Murthy
    • H04L12/56H04L12/28
    • H04L45/742H04L49/602H04L49/205H04L49/3027H04L49/354
    • A multi-layer network element for forwarding received packets from an input port to one or more output ports. The packet is examined to look for different types of forwarding information. An associative memory is searched once for each type of information. The results from the two searches are combined to forward the packet to the appropriate one or more output ports. The packet may be examined for other information as well to make the forwarding decisions. In one embodiment, the invention examines the packet for layer 2 information as the first type and layer 3, and perhaps some layer 4, information as the second type. The results are merged to determine the most appropriate combination of layer 2 or layer 3 forwarding decisions for the packet.
    • 一种用于将接收的分组从输入端口转发到一个或多个输出端口的多层网元。 检查数据包以查找不同类型的转发信息。 对于每种类型的信息搜索一次联想记忆。 将两个搜索的结果组合以将分组转发到适当的一个或多个输出端口。 可以检查分组以获得其他信息以做出转发决定。 在一个实施例中,本发明将层2信息的分组视为第一类型和层3,以及可能的一些第4层信息作为第二类型。 结果被合并以确定分组的第2层或第3层转发决策的最合适的组合。