Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

79 results about "Port forwarding" patented technology

In computer networking, port forwarding or port mapping is an application of network address translation (NAT) that redirects a communication request from one address and port number combination to another while the packets are traversing a network gateway, such as a router or firewall. This technique is most commonly used to make services on a host residing on a protected or masqueraded (internal) network available to hosts on the opposite side of the gateway (external network), by remapping the destination IP address and port number of the communication to an internal host.

A data distribution system, method and relay server

The present application provides a data distribution system, method and relay server. The data distribution system includes: a plurality of first service servers and a first relay server, and the first relay server is configured with a first public network domain name and a first public network IP address; the first relay server has a plurality of first ports, and the first relay server communicates and connects with the plurality of first service servers through different first ports; a terminal device outside the data distribution system is used to communicate and connect with the first relay server through the first public network domain name or the first public network IP address, and the first relay server is used to forward the service data of the terminal device to the first service server uniquely corresponding to the terminal device through the first port. In this way, the terminal device can determine the uniquely corresponding first service server according to different ports, without applying for a public network domain name and a public network IP address for each first service server, reducing the use of public network resources.
Owner:BEIJING FEINNO COMM TECH

Control system supporting multi-host concurrent access, storage device and storage medium

The invention discloses a control system supporting concurrent access of multiple hosts, a storage device and a medium, and relates to the technical field of data storage, the system runs on a control module externally connected with the storage device, and the system comprises a communication connection management unit used for establishing connection with multiple hosts through at least two host interfaces; the access request receiving unit is used for receiving access requests sent by different hosts through an uplink port of the multi-host switching chip, and the access arbitration and scheduling unit is used for carrying out real-time arbitration and unified scheduling on the requests according to a preset strategy; and the instruction forwarding and execution unit forwards an arbitrated instruction to the storage unit for execution through a downlink port, and the system further integrates a cache consistency management unit, a configurable arbitration strategy unit, a multi-mode storage space management unit and the like, so that the data consistency, the access efficiency and the system reliability during multi-host concurrent access are ensured. According to the scheme, efficient and safe parallel access of a plurality of hosts to a single storage device is realized.
Owner:PURPLELEC INC CO LTD

Scheduling method and device for input queuing switch

A processor is provided for: in an initial iteration: an input port sends a first instance of a request message to an output port. Each request message includes an identifier of the input port. Each output port of the selected input port sends an authorization message to the selected input port. The identifier of the selected input port is stored. In each respective iteration, each input port that receives the authorization message in a previous iteration sends a subsequent instance of the request message to the corresponding output port that sends the authorization message, where the subsequent instance includes the identifier. Each corresponding output port receiving the subsequent instance of the request message checks whether the identifier included in the subsequent instance of the request message matches the stored identifier. In response to iteration termination: each input port forwards data destined for the corresponding output port.
Owner:HUAWEI TECH CO LTD

Congestion control method and related device

The congestion control method comprises the following steps: a first device determines that network congestion occurs when a first data stream is forwarded at an output port of the first device; in response to network congestion occurring in forwarding the first data stream at the output port, the first device sends a first message to a second device, the first message is used for requesting the second device to execute congestion control processing for the first data stream, and the second device is an upstream device of the first device in a transmission path of the first data stream. According to the scheme, the flow control of the data flow granularity is realized through the first message, the fineness of congestion control is improved, and the flow control in a wide area network scene becomes possible. And the problems of wire end blockage, deadlock, congestion diffusion and the like brought to the network by the traditional PFC technology are avoided. According to the embodiment of the invention, the congestion control processing is performed on the first data stream instead of performing the sending stop processing on the data of the whole queue, so that the network under-throughput can be effectively avoided, the association degree of the congestion control and the service is also improved, and the user experience is effectively improved.
Owner:HUAWEI TECH CO LTD

Multi-network-port forwarding method and device for network message, medium and product

The invention discloses a network message multi-network-port forwarding method and device, a medium and a product, and the method comprises the steps: obtaining an original network message sent by a convergence shunt, caching the original network message, analyzing the original network message, and determining a target network port needing to be forwarded; when the number of the target network ports is multiple, determining a target copy number according to the number of the target network ports; according to the message key information structural body, constructing a target copy number of structural body copies to form a target structural body set; configuring each target structural body in the target structural body set by using the network port identifier of each target network port; according to the technical scheme of the embodiment of the invention, the processing efficiency of network message forwarding is remarkably improved, the consumption of system resources is reduced, and the network message forwarding efficiency is improved by optimizing a message copying and forwarding mechanism. And efficient distribution and management of network traffic are realized.
Owner:EVERSEC BEIJING TECH

Virtualization method for audio-frequency integrated network resources

The invention discloses a virtualization method for audio frequency integrated network resources, which belongs to the technical field of audio frequency network resource management, and comprises the following steps of: constructing a distributed virtual switch layer covering a subnet, embedding a virtual switch instance into a kernel mode network stack of each physical host in a cluster, dynamically mapping the cloud hosts in the subnet to a physical host group through a consistent Hash algorithm; when a cloud host sends an audio data packet, a source physical host virtual switch instance executes the following steps: extracting a DSCP field and marking the DSCP field as EF, and through GRE-over-UDP tunnel packaging, replacing a target MAC address with a virtual MAC address of a next hop virtual switch instance; and after the virtual switch instance of the target physical host is decapsulated, delivering the audio packet to the target cloud host based on the virtual port forwarding table. According to the method, efficient virtualization transmission of audio data is realized through a distributed virtual switching layer and a consistent Hash mapping mechanism, QoS guarantee and low-delay transmission are supported, and the method is suitable for audio network resource management in a large-scale cloud environment.
Owner:CHINA SHIP DEV & DESIGN CENT +1

High-availability management method of MYSQL cluster

The invention discloses a high-availability management method of an MYSQL cluster, and relates to the technical field of database management. Comprising the following steps: step 1, managing the availability of an MYSQL slave cluster: forwarding a request to service ip ports of a plurality of slaves through an ip port bound with a unified application service gateway device by using the routing forwarding of the unified application service gateway device agent software application, configuring heartbeat check of the port of the unified application service gateway device, and according to the heartbeat check, managing the availability of the MYSQL slave cluster; 2, managing availability of the MYSQL host: establishing a standby machine of the MYSQL host, creating a new virtual ip, pointing the virtual ip to the MYSQL host and the standby machine, and when a software application is connected with the host through the virtual ip to perform write-in operation, switching to the standby machine when the MYSQL host is abnormal, and transferring the write-in operation to the MYSQL standby machine; and step 3, performing host data synchronization of the MYSQL slave cluster: when the MYSQL host is abnormal, synchronously pointing the slave to the standby, enabling the standby to synchronize the newest host log, ensuring the newest data, and synchronizing the host data by the slave cluster.
Owner:SHANDONG ARTAPLAY INTELLIGENT TECH CO LTD

Service bandwidth allocation method, device and system

The invention provides a service bandwidth allocation method, device and system, and belongs to the technical field of networks. According to the invention, the corresponding transmission bandwidth is allocated to the plurality of services according to the bandwidth sensitivity information of the plurality of services forwarded through the same output port of the network equipment. Wherein the bandwidth sensitivity information of the service is respectively used for reflecting the influence degree of the available bandwidth change on the performance of the service. For example, more bandwidth resources can be allocated for services with higher bandwidth sensitivity, less bandwidth resources can be allocated for services with lower bandwidth sensitivity, and more bandwidth resources can be allocated for services with higher bandwidth sensitivity without obviously damaging the performance of services with lower bandwidth sensitivity. And the performance of the service with high bandwidth sensitivity is obviously improved, so that the performance of the whole service can be improved.
Owner:HUAWEI TECH CO LTD

Network traffic generation method, apparatus, device, and storage medium

The application relates to a network traffic generation method, device, equipment and storage medium. The method comprises the following steps: receiving a plurality of network data packets; in the case that target network data packets to be copied are identified from the plurality of network data packets, for each target network data packet, performing copy processing on the target network data packet through a preset multicast processing mechanism to obtain a plurality of first network data packet copies of the target network data packet; in the case that the first network data packet copy needs to be reprocessed, performing reprocessing operation on the first network data packet copy; in the case that the first network data packet copy needs to be copied, performing copy processing on the first network data packet copy based on the preset multicast processing mechanism to obtain a plurality of second network data packet copies of the first network data packet copy; and distributing the plurality of second network data packet copies to corresponding switch output ports and forwarding to target network equipment. The method can improve the flexibility of network traffic generation.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Data processing device and data processing method

The invention discloses a data processing device and a data processing method, which are applied to ensure that the bandwidth of the data processing device can meet service requirements under the condition that the bandwidth of a chip is limited. In the scheme, the plurality of chips are arranged in the data processing device, and each chip is connected to each port of the plurality of ports of the data processing device through the physical link, so that data entering from any port in the data processing device can be forwarded out from another port by the chip; therefore, the data processing device can normally execute data exchange. Moreover, a plurality of chips are arranged in one data processing device, so that the bandwidth of the data processing device is actually the sum of the bandwidths of the plurality of chips, the bandwidth of the data processing device is effectively improved under the condition that the bandwidth of the chips is fixed, and the data processing device is ensured to meet the business requirements.
Owner:HUAWEI TECH CO LTD

Data transmission method and device

The embodiment of the invention provides a data transmission method and device which are used for realizing full-path routing in a cluster during message transmission. The method is applied to a cluster, the cluster at least comprises a plurality of nodes which are directly connected, firstly, a first node obtains a first message, the first node is any node in the cluster, the first message carries information of a first target node, and the information of the first target node can comprise an identifier or an address of the first target node; then, the first node queries a forwarding port in a priority routing table based on the information of the first destination node, wherein the priority routing table comprises the relationship between the hop count of the first node and the first destination node and the port; and the first node forwards the first message through the forwarding port.
Owner:HUAWEI TECH CO LTD

Service Data Processing Method, Device, and Storage Medium for User Plane Function

An embodiment of the present application provides a method, device, and storage medium for processing service data of a user plane function, which relates to the field of communication technologies. The method includes: obtaining service information sent by a deep packet inspection module, where the service information includes the target IP address of service data; sending first negotiation information to a first negotiation module corresponding to the target IP address according to the target IP address; where the first negotiation information is used to indicate obtaining first status information of a first device corresponding to the target IP address; receiving a first negotiation response including the first status information sent by the first negotiation module; determining a forwarding policy for the service data according to the first status information, and sending the forwarding policy to an IP module so that the IP module executes the forwarding policy; where the forwarding policy includes forwarding the service data to the first device through a first output port, or forwarding the service data to a second device through a second output port. This provides more flexible and reliable guarantee for the forwarding of service data.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Cluster task container management method and system

A cluster task container management method is applied to a super-computing cluster, the super-computing cluster comprises a management node and a plurality of computing nodes, and the method comprises the steps that a lightweight state database is constructed, the full life cycle state of a task is recorded, and the life cycle comprises submitting, scheduling, container starting, port mapping and recycling stages; designing a port pool mechanism based on a bitmap, generating an available port sequence according to a fixed step length, and ensuring the concurrency uniqueness of port application through a memory lock; establishing an SSH tunnel at the management node, and forwarding the local port to the SSH port of the target computing node; container life cycle management is implemented, tunnel states are scanned regularly, and container state inspection and tunnel reconstruction are automatically triggered when abnormity occurs; all state events are written into a lightweight state database through an API, and the lightweight state database supports task query and connection health check. According to the method, persistent recording of task level states and automatic scheduling and recovery of ports can be supported, and the platform stability and the resource utilization efficiency are improved.
Owner:COMP NETWORK INFORMATION CENT CHINESE ACADEMY OF SCI

Network Isolation Method, Apparatus, Device, and Storage Medium

The present application discloses a network isolation method, apparatus, device and storage medium, belonging to the field of wireless communication technologies. In the present application, when it is detected that a device is connected, the identity information of the device is identified, wherein the identity information is obtained based on the judgment of a base station, and then based on the identity information of the device, the corresponding port is connected, wherein the port is obtained based on the interface-level VLAN division, and finally based on the corresponding port, the data that the device needs to send is forwarded. The present application enables the network traffic of the device to be in different broadcast domains and the traffic data to be isolated, achieving stable network use and high reliability when 5G and WIFI are co-deployed.
Owner:CHINA MOBILE ZIJIN INNOVATION INST CO LTD +2

A method for virtualizing audio integrated network resources

The application discloses an audio integrated network resource virtualization method, and belongs to the technical field of audio network resource management, and comprises the following steps: constructing a distributed virtual switching layer of a covering subnet, embedding a virtual switch instance into a kernel state network stack of each physical host in a cluster, and dynamically mapping cloud hosts in the subnet to the physical host group through a consistent hashing algorithm; when the cloud host sends an audio data packet, the source physical host virtual switch instance performs the following steps: extracting a DSCP field and marking it as EF, encapsulating through a GRE-over-UDP tunnel, and replacing a target MAC address with a virtual MAC address of a next-hop virtual switch instance; after the virtual switch instance of the target physical host is unpacked, the audio packet is delivered to the target cloud host based on a virtual port forwarding table. Through the distributed virtual switching layer and the consistent hashing mapping mechanism, the method realizes efficient virtualization transmission of audio data, supports QoS guarantee and low-delay transmission, and is suitable for audio network resource management in a large-scale cloud environment.
Owner:CHINA SHIP DEV & DESIGN CENT +1

Ansible bulk forwarding control method and device

The present application relates to a kind of Ansible bulk forwarding control method and device, belong to forwarding control technical field, the method comprises: determining forwarding host;Firewall port forwarding rule task is issued to forwarding host for setting;Determine target host, join target host to Ansible host inventory, and write the dynamic of target host into Ansible hosts file;According to Ansible hosts file, issue Ansible task to target host.The present application supports client one-stop direct issuance of Ansible instruction, does not change the general configuration of Ansible client, without putting instruction to forwarding host execution, client does not need to listen to port, and the environment of issuance is convenient and controllable;Forwarding rule is flexible and controllable, can increase, can reduce, take effect immediately, without manual interactive operation;Through whitelist control, the network security of target host that cannot be directly connected on network link is maintained.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Internet protocol based security over port forwarding tunnels

An application server host may receive, via a port forwarding tunnel, a connection request that includes an indication of a client internet protocol (IP) address for a client host. The application server host may identify based at least in part on the client IP address and using a mapping maintained for a plurality of client hosts, a virtual IP address that is associated with the client IP address and a client network identifier associated with the port forwarding tunnel from which the connection request is received. The application server host may open a connection between an application server hosted by the application server host and the client host using the identified virtual IP address.
Owner:RUBRIK INC

A resource allocation method, apparatus, device, and storage medium

The application provides a resource allocation method and device, equipment and a storage medium, and relates to the technical field of communication. The method comprises the following steps: receiving a data stream message; when it is confirmed that the data stream message does not hit a flow table according to message information of the data stream message, then allocating a target index for the data stream message based on index resources in a hardware pool; determining a target IP address and a target port corresponding to the target index based on a pre-established correspondence between indexes and IP addresses and ports; updating the target index, the target IP address and the target port as new table entries to the flow table; and forwarding the data stream message according to the target IP address and the target port. Thus, the NAPT resource is quickly allocated, and the NAPT performance is improved.
Owner:NEW H3C TECH CO LTD

Adaptive multi-path routing

A device, communication system, and method are provided. In one example, a system for routing traffic is described that includes circuits to receive a plurality of packets associated with a destination, determine a plurality of bins based on the destination of the packets, wherein each bin of the plurality of bins is associated with a respective port of the plurality of ports, and, for each packet of the plurality of packets, select a bin of the plurality of bins and forward the packet via the port associated with the selected bin. Described circuits also receive an adaptive routing notification packet via a first port associated with a first bin and in response associate the first bin with a second port and de-associate the first bin with the first port.
Owner:MELLANOX TECHNOLOGIES LTD(IL)

Equipment upgrading method applied to SRB system and related device

The invention provides a device upgrading method applied to an SRB system and a related device, and relates to the field of device upgrading. In the application, under the condition that the upgrade data message is received through the non-SRB communication port, the upgrade data message is forwarded to other equipment connected with the target equipment through each SRB communication port, and under the condition that the upgrade data message is received through the SRB communication port, the upgrade data message is forwarded to other equipment connected with the target equipment through each SRB communication port. And forwarding the upgrade data message to other equipment connected with the target equipment through the target communication port. The target communication ports are other ports except the port for receiving the upgrade data message in the SRB communication ports configured by the equipment. Through the forwarding mode of the upgrade data message, only the upgrade data message needs to be sent to one device in the SRB system, each device in the SRB system can receive the upgrade data message through the communication mode, the upgrade operation is completed, and the device upgrade efficiency is improved.
Owner:北京傲星科技有限公司

Apparatus, method, and system for handling access control

A management device includes a first authentication module configured to receive a first information and perform a first decision whether an administrator device is correct based on the first information; an authorization module configured to perform a second decision whether the administrator device includes an access right of a remote device when the first decision is yes and when a first request information for accessing the remote device is received; a communication module configured to transmit a second request information for establishing a link with a network device to the remote device when the second decision is yes and when it is decided to establish the link with the network device; and an integration module configured to transmit a third request information for setting a communication port forwarding to the network device when the second decision is yes.
Owner:MOXA INC

Securing access to network devices utilizing authentication and dynamically generated temporary firewall rules

A network security system provides portals which enable automatic creation of a dynamic one-time port forwarding rule for an authorized user's current IP address following two factor authentication of the authorized user. Such a dynamic one-time port forwarding rule is utilized to set up a connection, at which point the dynamic one-time port forwarding rule is removed, preventing any attacker from subsequently taking advantage of it. Such a methodology is advantageous as compared to conventional port forwarding in that it is much more secure. Such a methodology is advantageous as compared to traditional port forwarding with access control both in that a user does not always have to utilize the same device with a static IP address, and in that the port forwarding rule representing or exposing a potential vulnerability is deleted after a connection is established.
Owner:CALYPTIX SECURITY CORP

Data stream array accelerator based on forward network and hybrid routing

The invention provides a data flow array accelerator based on a forward network and hybrid routing, which is used for executing a data flow diagram, and comprises a storage unit, a plurality of computing units, an on-chip network and a plurality of network nodes, the physical links are established by adopting a Mesh network structure and are used for transmitting data packets between the computing units and between the computing units and the storage units; each computing unit is configured with a routing module, each routing module is configured with at most four routing ports, each routing port is configured to be a fixed routing port or a variable routing port, a data packet acquired by the fixed routing port is processed by the computing unit and then is forwarded to the on-chip network through the specified routing port, and the data packet acquired by the variable routing port is forwarded to the on-chip network through the variable routing port after being processed by the computing unit. The data packet acquired by the variable routing port is processed by the computing unit and then is forwarded to the network-on-chip by dynamically selecting the routing port according to a preset mode, and experiments show that the average routing conflict rate of the data flow array can be reduced, and the overall performance of the computing array is improved.
Owner:INST OF COMPUTING TECH CHINESE ACAD OF SCI

Intelligent CAN bus star connection device and method simulating Ethernet switch

The invention discloses an intelligent CAN (Controller Area Network) bus star connection device and method simulating an Ethernet switch, which can avoid the work of configuring a terminal resistor for each node in a CAN bus network and frequently checking and confirming the connection and configuration of an end node and an intermediate node in a CAN bus communication system network during debugging by applying a device simulating the Ethernet switch. Software in the simulated Ethernet switch device can realize the functions of port number login, point-to-point switching, loopback type forwarding, one-to-multiple switching and the like by searching the received message frame ID value in the port forwarding table. According to the CAN bus star network simulating the Ethernet switch device, connection can be reestablished automatically when connection of nodes is changed, and fault diagnosis, isolation and positioning can be carried out quickly and conveniently through a disconnection method in CAN bus network debugging.
Owner:NORTHWEST ELECTROMECHANICAL ENG RES INST

Three-layer virtual private network port drainage method, device, system and equipment

The embodiment of the invention discloses a three-layer virtual private network port drainage method, device, system and equipment. Obtaining an access data packet in the to-be-drained request based on the three-layer virtual private network application; if it is determined that the access data packet needs port forwarding, forwarding the access data packet to a network conversion module; the network conversion module obtains a forwarding data packet according to a source address and a destination address of the access data packet and a preset monitoring port of a communication protocol, and caches a port data key composed of a source port and a destination port; converting the forwarding data packet into a socket data packet, and sending the socket data packet to a local proxy gateway; and the local proxy gateway generates a to-be-sent data packet according to the source port and the source address in the obtained socket data packet and the port data key cached by the network conversion module, and sends the to-be-sent data packet so as to realize a port drainage mode based on the three-layer virtual private network. According to the embodiment of the invention, the development difficulty is reduced, and the system stability is guaranteed.
Owner:BEIJING ZHIZHANGYI TECH CO LTD

A two-layer networking loop isolation method, device and readable medium

The application discloses a two-layer networking loop isolation method, device and readable medium. The two-layer networking loop isolation method comprises the following steps: constructing a two-layer Ethernet message header and a self-defined message field of a message, and sending the message after coding the self-defined message field; receiving the message, decoding and restoring the coded self-defined field, and detecting whether the MAC address of source port information in the self-defined field is consistent with the CPU MAC address+1 of the local machine; if yes, blocking the port according to the slot number and the port number in the source port information; and if not, coding the self-defined message field, and sending the message from other ports. The application can accurately detect the situation that the two ports of a switch are misconnected to form a loop or the situation that the network externally connected to a port of the switch is misconnected to form a loop, and can block the misconnected port of the switch or block a certain external port, so that the port and the loop are isolated.
Owner:SHENZHEN PRIMESTONE NETWORK TECH CO LTD

Method for avoiding storm in redundant discarded looped network

The invention provides a method for avoiding storm generation in a redundancy discarding ring network, which comprises the following steps of: S1, configuring a mode of a port to be an SR port, namely, analyzing an SR message type; s2, configuring an SR attribute port, wherein unknown unicast and multicast traffic entering the port cannot be forwarded from the port; s3, identifying the SR message, and extracting smac information; s4, identifying the SR message, and extracting a seqnum field; s5, identifying the SR message, and extracting a netid field; and S6, recording smac, an incoming port and related information. According to the method for preventing the storm from being generated in the redundancy discarding ring network, the risk of storm generation is eliminated from the source through a four-layer precise discarding mechanism: firstly, through a redundancy discarding mechanism in the step S7, by taking smac + seqnum as a core judgment standard, only the first message with the same identifier is allowed to be forwarded within set time, and it is avoided that redundant messages are accumulated and occupy bandwidth;
Owner:NANJING YITAI MICROELECTRONICS TECH CO LTD

Message forwarding method and device of server, storage medium and electronic equipment

Embodiments of the present application provide a message forwarding method and device of a server, a storage medium and an electronic device, wherein the method comprises: receiving a to-be-forwarded message by a virtual switch of the server, the to-be-forwarded message being an ARP message sent by a target virtual machine; in response to the received to-be-forwarded message, querying, by the virtual switch, a flow table item in an open flow table of the virtual switch that matches the to-be-forwarded message, the flow table item of the open flow table comprising a matching field for recording a matching condition of a message and an action field for recording a corresponding execution action; in the case that the target flow table item that matches the to-be-forwarded message is queried and an action target of a specified execution action recorded in the action field of the target flow table item is a plurality of member ports under an uplink aggregation port of the virtual switch, forwarding, by the virtual switch, the to-be-forwarded message to the plurality of member ports, the plurality of member ports being a plurality of physical network cards, and the plurality of physical network cards being connected to a plurality of switches.
Owner:JINAN INSPUR DATA TECH CO LTD