发明名称 Reverse path forwarding router system
摘要 An apparatus configured to route packets over networks may be configured to determine whether a packet is valid prior to routing a received packet. The apparatus may receive the packet on one of a plurality of interfaces. The apparatus may identify the interface on which the packet is received and also a source of the packet. Additionally, the apparatus may access a bundle of acceptable interfaces on which a packet from the source may be received. The number of acceptable interfaces may be greater than a single interface, but less that all of the interfaces of the apparatus configured to receive packets from over the networks. If the interface on which the packet is received is an acceptable interface identified by the bundle, then the packet is valid and routed to a next location. Otherwise, the packet is determined to be invalid and dropped.
申请公布号 US9154414(B2) 申请公布日期 2015.10.06
申请号 US201313905631 申请日期 2013.05.30
申请人 Cisco Technology, Inc. 发明人 Seaman-Kossmeyer Clayton;Ciccarone Dario Nicolas
分类号 H04L12/721 主分类号 H04L12/721
代理机构 代理人
主权项 1. An apparatus comprising: a routing device comprising: a plurality of interfaces configured to receive packets from a plurality of sources;a memory comprising: a forwarding database that stores forwarding information comprising at least one of a forward information base (FIB) or a routing information base (RIB), the forwarding information associating with a source a set of one or more acceptable interfaces for receipt of packets from the source; anda bundle database that stores bundle information associating with the source a bundle comprising a plurality of acceptable interfaces for receipt of packets from the source, wherein the bundle of acceptable interfaces is different from the set of one or more acceptable interfaces indicated in the forwarding information and is less than all of the plurality of interfaces of the routing device;a validity module executable by a processor, the validity module configured to: identify an interface of the plurality of interfaces on which a packet is received from the source;determine whether the packet is valid based on a comparison of the interface on which the packet is received with the bundle of acceptable interfaces associated with the source, wherein the validity module is configured to access the bundle information stored in the bundle database without access of the forwarding information stored in the forwarding database to determine whether the packet is valid; anda forwarding module executable by the processor, wherein the forwarding module is configured to: forward the packet on one of the plurality of interfaces over one of the one or more networks in response to determination by the validity module that the packet is valid; anddrop the packet without forwarding the packet in response to determination by the validity module that the packet is invalid.
地址 San Jose CA US