IP Library Granted Patent US 10,193,706
Granted Patent B2
US 10,193,706 · App. 15/331,067 · Granted Jan 29, 2019

Distributed rule provisioning in an extended bridge

Inventors: Somen Bhattacharya (San Jose, CA); Rakesh Hansalia (Milpitas, CA); Ranganadh Muddana (Union City, CA); Senthil Paramasivam (Santa Clara, CA); Vignesh Dayabaran (San Jose, CA); Sai Gumudavally (Santa Clara, CA)
Assignee: ARRIS Enterprises LLC
H04L12/462H04L12/467H04L12/4625H04L41/0233H04L41/0806H04L41/5054H04L47/2441H04L49/30H04L49/45H04L49/65H04L49/70
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,193,706
App. No.
15/331,067
Granted
Jan 29, 2019
Kind
B2
Abstract

Techniques for performing distributed provisioning of packet classification rules in an extended bridge are provided. According to one embodiment, a controlling bridge (CB) of the extended bridge can receive a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge. The CB can further determine a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports. The CB can then transmit a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE.

Claims (58)

1. A method comprising:

receiving, by a controlling bridge (CB) in an extended bridge, a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge;

determining, by the CB, a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports; and

transmitting, by the CB, a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE,

wherein the CB manages a virtualized representation of the TCAM of the PE, and

wherein the virtualized representation includes an indication of a total capacity of the TCAM of the PE.

2. The method of claim 1 wherein the packet classification rule is not created or deleted in a TCAM of the CB.

3. The method of claim 1 wherein the packet classification rule is a security access control list (ACL) rule.

4. The method of claim 1 wherein the message is transmitted to the PE via a transaction manager configured to ensure reliable communication of the message.

5. The method of claim 1 wherein the receiving, determining, and transmitting are performed using an instance of a rule provisioning task agent running on the CB.

6. A non-transitory computer readable storage medium having stored thereon program code executable by a controlling bridge (CB) in an extended bridge, the program code causing the CB to:

receive a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge;

determine a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports; and

transmit a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE,

wherein the CB manages a virtualized representation of the TCAM of the PE, and

wherein the virtualized representation includes an indication of a total capacity of the TCAM of the PE.

7. A controlling bridge (CB) in an extended bridge, the CB comprising:

a processor; and

a non-transitory computer readable medium having stored thereon program code that, when executed by the processor, causes the processor to:

receive a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge;

determine a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports; and

transmit a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE,

wherein the CB manages a virtualized representation of the TCAM of the PE, and

wherein the virtualized representation includes an indication of a total capacity of the TCAM of the PE.

8. A method comprising:

receiving, by a controlling bridge (CB) in an extended bridge, a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge;

determining, by the CB, a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports; and

transmitting, by the CB, a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE,

wherein the CB manages a virtualized representation of the TCAM of the PE, and

wherein the virtualized representation includes an indication of which entries in the TCAM of the PE are currently populated with rules.

9. A method comprising:

receiving, by a controlling bridge (CB) in an extended bridge, a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge;

determining, by the CB, a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports; and

transmitting, by the CB, a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE,

wherein the CB manages a virtualized representation of the TCAM of the PE, and

wherein managing the virtualized representation comprises determining, via the virtualized representation, whether the TCAM of the PE has sufficient free space for programming the packet classification rule into the TCAM.

10. The method of claim 9 wherein, if the TCAM of the PE does not have sufficient free space, programming the packet classification rule into a TCAM of the CB.

11. A method comprising:

receiving, by a controlling bridge (CB) in an extended bridge, a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge;

determining, by the CB, a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports; and

transmitting, by the CB, a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE,

wherein the CB manages a virtualized representation of the TCAM of the PE, and

wherein managing the virtualized representation comprises creating or deleting the packet classification rule in the virtualized representation upon determining the TCAM of PE has been updated.

12. A method comprising:

receiving, by a controlling bridge (CB) in an extended bridge, a command to create or delete a packet classification rule for one or more virtual ports of the extended bridge;

determining, by the CB, a port extender (PE) of the extended bridge that hosts one or more physical ports corresponding to the one or more virtual ports;

transmitting, by the CB, a message to the PE with instructions for creating or deleting the packet classification rule in a ternary content addressable memory (TCAM) of the PE;

monitoring, by the PE, for a match of the packet classification rule against ingress or egress data traffic at the PE;

upon detecting a match of the packet classification rule, creating or updating, by the PE, an event information entry in a local event database of the PE; and

upon passage of a predefined reporting time interval:

batching, by the PE, all unreported event information entries in the local event database into a single reporting message; and

transmitting, by the PE, the reporting message to the CB.

13. The method of claim 12 further comprising, in response to receiving the reporting message:

informing, by the CB, a user of one or more of the events included in the reporting message.

14. The method of claim 12 further comprising, in response to receiving the reporting message:

autonomously performing, by the CB, a corrective action within respect to one or more PEs in the extended bridge.

15. The method of claim 12 further comprising, in response to receiving the reporting message:

sending, by the CB, information derived from the reporting message to an external network management system or system log server.

Assignments (9)
RELEASE OF SECURITY INTEREST AT REEL/FRAME 049905/0504 Recorded Dec 19, 2024
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: ARRIS ENTERPRISES LLC (F/K/A ARRIS ENTERPRISES, INC.); ARRIS TECHNOLOGY, INC.; ARRIS SOLUTIONS, INC.; COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; RUCKUS WIRELESS, LLC (F/K/A RUCKUS WIRELESS, INC.)
Reel/Frame 071477/0255 →
SECURITY INTEREST Recorded Dec 17, 2024
From: ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE INC., OF NORTH CAROLINA; OUTDOOR WIRELESS NETWORKS LLC; RUCKUS IP HOLDINGS LLC
To: APOLLO ADMINISTRATIVE AGENCY LLC
Reel/Frame 069889/0114 →
SECURITY INTEREST Recorded Nov 19, 2021
From: ARRIS SOLUTIONS, INC.; ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE, INC. OF NORTH CAROLINA; RUCKUS WIRELESS, INC.
To: WILMINGTON TRUST
Reel/Frame 060752/0001 →
TERM LOAN SECURITY AGREEMENT Recorded Jul 3, 2019
From: COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; ARRIS ENTERPRISES LLC; ARRIS TECHNOLOGY, INC.; RUCKUS WIRELESS, INC.; ARRIS SOLUTIONS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 049905/0504 →
PATENT SECURITY AGREEMENT Recorded Jul 3, 2019
From: ARRIS ENTERPRISES LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 049820/0495 →
ABL SECURITY AGREEMENT Recorded Jul 3, 2019
From: COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; ARRIS ENTERPRISES LLC; ARRIS TECHNOLOGY, INC.; RUCKUS WIRELESS, INC.; ARRIS SOLUTIONS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 049892/0396 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 16, 2018
From: BROCADE COMMUNICATIONS SYSTEMS LLC F/K/A BROCADE COMMUNICATIONS SYSTEMS, INC; FOUNDRY NETWORKS LLC F/K/A FOUNDRY NETWORKS INC.
To: ARRIS ENTERPRISES LLC
Reel/Frame 045600/0755 →
CHANGE OF NAME Recorded Dec 13, 2017
From: BROCADE COMMUNICATIONS SYSTEMS, INC.
To: BROCADE COMMUNICATIONS SYSTEMS LLC
Reel/Frame 044861/0618 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 21, 2016
From: BHATTACHARYA, SOMEN; HANSALIA, RAKESH; MUDDANA, RANDANADH; PARAMASIVAM, SENTHIL; DAYABARAN, VIGNESH; GUMUDAVALLY, SAI
To: BROCADE COMMUNICATIONS SYSTEMS, INC.
Reel/Frame 040088/0055 →
Continuity (2)
Provisional Application 62244587 · Oct 21, 2015
Related Publication 20170118041A1 · Apr 27, 2017
Cited By (2)
US 12,405,872 US 12,683,860