Method and device for optimizing FC port security

A port security and port technology, applied in the field of communication, can solve problems such as equipment offline and affecting normal communication

Active Publication Date: 2016-05-18
NEW H3C TECH CO LTD
View PDF4 Cites 4 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] When the switch refuses a device to log in, the F_Port connected to the device on the switch will be closed, causing all devices that have logged in on the F_Port to be forced to go offline, affecting normal communication

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and device for optimizing FC port security
  • Method and device for optimizing FC port security

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0021] In order to make the purpose, technical solution and advantages of the present invention clearer, the technical solution of the present invention will be described in detail below in conjunction with the accompanying drawings and embodiments.

[0022] In the present invention, a new virtual interface is added, which inherits the attributes of the F-Port port and has the ability to answer various FIP protocol messages sent by the device. The FCF switch logs in related protocol messages with the device through the virtual interface. exchange to complete the sign-in process for the device.

[0023] When the FCF switch receives the login request of the device on the F-Port port, it creates a virtual interface for the device, and checks the authority of the device on the virtual interface. If the device is determined to be legal, the FCF switch communicates with the device through the virtual interface. Communication of related protocol messages such as login, if the device ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a method and a device for optimizing FC port security. The method is characterized by comprising the steps of: creating a virtual interface for equipment on an F-Port port when the F-Port port receives a login request of the equipment; checking whether the equipment is legal on the virtual interface; if so, exchanging login information with the equipment through the virtual interface so that the equipment can complete login, and then exchanging data messages with the equipment through the F-Port port; otherwise, returning a login refusal message to the equipment through the virtual interface, maintaining a state of the F-Port port unchanged, and shutting down the virtual interface. The method and the device can ensure normal communication of the logged-in equipment when encountering illegal equipment login.

Description

technical field [0001] The invention relates to the technical field of communications, in particular to a method and device for optimizing FC port security. Background technique [0002] The Fiber Channel (FibreChannel, FC) protocol is a data transmission protocol used in SAN (Storage Area Networks, storage area network). FCoE (Fibre Channel over Ethernet, Fiber Channel over Ethernet) is a protocol that carries the FC protocol on the Ethernet. [0003] FC port security (FCPortSecurity) explicitly specifies security rules by configuring which interfaces of the local device the authorized login device is allowed to log in, and provides security control based on the port level. FC port security (FCPortSecurity) can prevent unauthorized devices from logging in to the switch and ensure network security. It is an indispensable part of the FC security system. [0004] Normally, any device (including node devices and switches) can log in to the switch. After enabling the port sec...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06
CPCH04L63/0218H04L63/0227H04L63/08
Inventor 周天弋
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products