首页> 外国专利> SYSTEM, METHOD AND APPARATUS THAT ISOLATE VIRTUAL PRIVATE NETWORK (VPN) AND BEST EFFORT TRAFFIC TO RESIST DENIAL OF SERVICE ATTACKS

SYSTEM, METHOD AND APPARATUS THAT ISOLATE VIRTUAL PRIVATE NETWORK (VPN) AND BEST EFFORT TRAFFIC TO RESIST DENIAL OF SERVICE ATTACKS

机译:隔离虚拟专用网(VPN)和尽力阻止业务攻击的最有效业务的系统,方法和装置

摘要

Title: SYSTEM, METHOD AND APPARATUS THAT ISOLATE VIRTUAL PRIVATE NETWORK (VPN) AND BEST EF FORT TRAFFIC TO RESIST DENIAL OF SERVICE ATTACKS[err]Abstract: A network architecture (20) in accordance with the present invention includes a communication network that supports one or more network-based Virtual Private Networks (VPNs). The communication network includes a plurality of boundary routers (22a-22d) that are connected by access links to CPE edge routers (2Ab-24d and 25a 25d) belonging to the one or more VPNs. Toprevent traffic from outside a customer's VPN (e.g., traffic from other VPNs or the Internet at large) from degrading the QoS provided to traffic from within the customer's VPN, the present invention gives precedence to infra-VPN traffic over extra-VPN traffic on each customer's access link through access link prioritisation or access link capacity allocation, such that extra-VPN traffic can not interfere with inter-VPN traffic.
机译:标题:隔离虚拟专用网(VPN)和最佳EF堡垒业务以拒绝拒绝服务攻击的系统,方法和装置[呃]摘要:根据本发明的网络架构(20)包括支持一个或多个基于网络的虚拟专用网(VPN)。该通信网络包括多个边界路由器(22a-22d),这些边界路由器通过访问链路连接到属于一个或多个VPN的CPE边缘路由器(2Ab-24d和25a 25d)。至为了防止来自客户的VPN外部的业务(例如,来自其他VPN或整个互联网的业务)降低提供给从客户的VPN内部的业务的QoS,本发明优先于基础VPN业务在每个VPN上的额外VPN业务通过访问链路优先级或访问链路容量分配来访问客户的访问链路,从而使额外VPN流量不会干扰VPN间流量。

著录项

  • 公开/公告号SG99553A1

    专利类型

  • 公开/公告日2003-11-27

    原文格式PDF

  • 申请/专利权人 WORLDCOM INC.;

    申请/专利号SG2003050234

  • 发明设计人 MCDYSAN DAVID E.;

    申请日2002-03-20

  • 分类号H04L12/28;

  • 国家 SG

  • 入库时间 2022-08-21 23:07:47

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号