Method and apparatus for searching ACL

An access control list and table lookup technology, applied in the field of network transmission, can solve the problems of increasing the number of lookups, rising chip costs, and contradiction between table capacity and lookup times, and achieve the effects of reducing duplication, improving lookup efficiency, and reducing waste.

Active Publication Date: 2015-04-29
NEW H3C TECH CO LTD
View PDF6 Cites 22 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0020] Among them, the first method also needs to consume multiple hardware resources. The improvement of hardware resources will lead to a sharp increase in chip costs. At the same time, the maximum specification of chips is limited. After reaching a certain scale, it is impossible to increase the number of searches by increasing chi

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and apparatus for searching ACL
  • Method and apparatus for searching ACL
  • Method and apparatus for searching ACL

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0045] The present invention will be further described in detail below in conjunction with the drawings and specific embodiments.

[0046] figure 1 It is a flowchart of a method for searching ACL provided by an embodiment of the present invention, such as figure 1 As shown, the specific steps are as follows:

[0047] Step 101: For any network device that uses the ACL table, if multiple types of services are configured with the same ACL rules at the same time, the multiple ACL rules are merged into one ACL rule; on each ACL rule in the ACL table Mark all service types to which the ACL rule applies.

[0048] The ACL table is composed of ACL rules.

[0049] In addition, if there are multiple ACL tables for different services on the network device, the multiple ACL tables are first merged into one ACL table.

[0050] For example: Suppose there are 4 ACL tables on a network device, and each table corresponds to one type of service. The four types of services are: PBR, QOS, packet filtering ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

According to an example,a packet to be processed is compared with a rule in a combined access control list (ACL), wherein the combined ACL includes rules corresponding to different service types.

Description

Technical field [0001] The present invention relates to the field of network transmission technology, in particular to a method and device for searching an access control list (ACL, Access Control List). Background technique [0002] With the rapid development of the network, the demand for network equipment has put forward higher requirements in terms of performance and functions. Among them, in terms of performance: the commonly used ports of network equipment have increased from 10M, 100M, 1G, and 10G to the current 40G / 100G, which has increased thousands or tens of thousands of times in the past 10 years. Functional requirements reflect multiple aspects. Typical ones are: Quality of service (QOS) is used to ensure users’ basic bandwidth rights; in order to deal with more and more network threats, the packets transmitted on the network are reported. Security checks such as filter; Policy-based Routing (PBR), the message is not forwarded according to the traditional routing ta...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L12/70H04L47/80
CPCH04L12/6418H04L45/302H04L47/805H04L63/101
Inventor 葛长忠
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products