首页> 外国专利> NETWORK CONTROL SOFTWARE NOTIFICATION WITH DENIAL OF SERVICE PROTECTION

NETWORK CONTROL SOFTWARE NOTIFICATION WITH DENIAL OF SERVICE PROTECTION

机译:拒绝服务保护的网络控制软件通知

摘要

Techniques are disclosed for notifying network control software of new and moved source MAC addresses. In one embodiment, a switch may redirect a packet sent by a new or migrated virtual machine to the network control software as a notification. The switch does not forward the packet, thereby protecting against denial of service attacks. The switch further adds to a forwarding database a temporary entry which includes a “No_Redirect” flag for a new source MAC address, or updates an existing entry for a source MAC address that hits in the forwarding database by setting the “No_Redirect” flag. The “No_Redirect” flag indicates whether a notification has already been sent to the network control software for this source MAC address. The switch may periodically retry the notification to the network control software, until the network control software validates the source MAC address, depending on whether the “No_Redirect” is set.
机译:公开了用于向网络控制软件通知新的和移动的源MAC地址的技术。在一个实施例中,交换机可以将由新的或迁移的虚拟机发送的分组重定向到网络控制软件作为通知。交换机不转发数据包,因此可以防止拒绝服务攻击。交换机还向转发数据库添加一个临时条目,该临时条目包括用于新源MAC地址的“ No_Redirect”标志,或者通过设置“ No_Redirect”标志来更新在转发数据库中命中的源MAC地址的现有条目。 “ No_Redirect”标志指示是否已针对该源MAC地址将通知发送到网络控制软件。交换机可以定期重试向网络控制软件发送的通知,直到网络控制软件验证源MAC地址为止,具体取决于是否设置了“ No_Redirect”。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号