首页> 外国专利> Creating, modifying and storing service abstractions and role abstractions representing one or more packet rules

Creating, modifying and storing service abstractions and role abstractions representing one or more packet rules

机译:创建,修改和存储代表一个或多个数据包规则的服务抽象和角色抽象

摘要

Usage of network resources on a communications network is controlled by creating one or more packet rules for analyzing packets received at one or more devices of the communications network, each rule including a condition and action to be taken if a packet received at a device satisfies the condition, and creating one or more service abstractions, each service abstraction representing a named set of one or more of the packet rules. Further, one or more role abstractions may be created, each role abstraction representing a role of a user with respect to the communications network, and each role abstraction including a set of one more packet rules, and possibly one or more service abstractions. These role abstractions and service abstractions may be stored and distributed to network devices on the communications network. Role abstractions and service abstractions ease the configuration, implementation, and administration of packet rules and network policy by enabling the reuse, storage, and modification of an aggregation of one or more packet rules. Instead of configuring each existing or new device in a network individually, roles and service abstractions can be used to simultaneously configure a number of devices, regardless of location in the network. Role abstractions and service abstractions allow a network administrator to aggregate complex technological configuration parameters providing translation between the languages of technical and non-technical members of an organization.
机译:通过创建一个或多个数据包规则来分析在通信网络的一个或多个设备上接收到的数据包,可以控制通信网络上网络资源的使用情况,每个规则都包含一个条件和一个动作,如果设备处接收到的数据包满足以下条件,则应采取的措施和措施条件,并创建一个或多个服务抽象,每个服务抽象表示一个或多个数据包规则的命名集。此外,可以创建一个或多个角色抽象,每个角色抽象代表用户相对于通信网络的角色,并且每个角色抽象包括一组一个或多个分组规则,以及可能的一个或多个服务抽象。这些角色抽象和服务抽象可以被存储并分发到通信网络上的网络设备。角色抽象和服务抽象通过允许重用,存储和修改一个或多个数据包规则的聚合来简化数据包规则和网络策略的配置,实现和管理。代替单独配置网络中的每个现有设备或新设备,可以使用角色和服务抽象来同时配置多个设备,而与网络中的位置无关。角色抽象和服务抽象使网络管理员可以聚合复杂的技术配置参数,从而在组织的技术人员和非技术人员的语言之间进行转换。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号