Eureka AIR delivers breakthrough ideas for toughest innovation challenges, trusted by R&D personnel around the world.

ACL (Access Control List) issuing method and equipment

An access device and identification technology, applied in the communication field, can solve the problems of ACL delivery failure and limited ACL resources, and achieve the effects of avoiding delivery failure, reducing burden, and reducing the number of ACLs.

Active Publication Date: 2015-04-01
NEW H3C TECH CO LTD
View PDF3 Cites 8 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] In the above implementation, in order to manage and control VMs, it is necessary to issue ACLs to the VSI virtual interfaces corresponding to VMs on the access device. The ACL resources supported by the device are limited, so ACL delivery will fail

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • ACL (Access Control List) issuing method and equipment
  • ACL (Access Control List) issuing method and equipment
  • ACL (Access Control List) issuing method and equipment

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0034]Aiming at the problems existing in the prior art, the embodiment of the present invention provides a method for delivering an ACL, which can be applied to a network including at least an access device, a controller, and a physical server, and the physical server is configured with one or Multiple virtual switches, one or multiple VMs. by figure 1 It is a schematic diagram of an application scenario of an embodiment of the present invention, VM1, VM2, VM3 and a virtual switch are configured on a physical server, an access device is connected to the physical server, and a controller is connected to the physical server.

[0035] In the embodiment of the present invention, the administrator can divide the user classes of the VM according to actual needs, so as to classify the VMs into corresponding user classes. In a specific application, a VM can be divided into one user class, or can be divided into multiple user classes, and each user class corresponds to a user class id...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an ACL (Access Control List) issuing method and equipment. The method comprises the following steps that an access device acquires an ACL corresponding to each user class identify issued on an upper connecting port; the access device receives a VDP (Vertical Data Processing) association request message from a physics server; a user class identify corresponding to a VM (Virtual Machine) is carried in the VDP association request message; the access device generates a VSI (Virtual Switch Interface) for the VM, and records a corresponding relation between the user class identify corresponding to the VM and the VSI corresponding to the VM in a preset information association table; the access device selects the ACL corresponding to the user class identify corresponding to the VM from the ACL issued on the upper connecting port, and confirms the selected ACL as the ACL corresponding to the VSI corresponding to the VM. According to the embodiment of the invention, the quantity of the ACL issued on the access device can be effectively reduced, the ACL resource is saved, the load of the access device is reduced, and the failure of ACL issuing is avoided.

Description

technical field [0001] The present invention relates to the field of communication technologies, in particular to a method and device for issuing an ACL. Background technique [0002] The core idea of ​​EVB (Edge Virtual Bridging, edge virtual bridging) technology is: all VM (Virtual Machine, virtual machine) traffic is handed over to the access device directly connected to the physical server for switching and processing, so that traffic monitoring and network The implementation of control strategies becomes possible. In order to manage and control multiple VMs configured on the physical server, a unique VSI (Virtual Switch Interface, virtual switch interface) virtual interface needs to be generated for each VM on the access device. [0003] Such as figure 1 As shown in the figure, it is a schematic diagram of networking of an EVB network, and multiple VMs (VM1, VM2, and VM3) and a virtual switch are configured on a physical server. Since each VM is connected to the acce...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06H04L12/46
CPCY02D30/00
Inventor 伊莉娜王文岩
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Eureka Blog
Learn More
PatSnap group products