发明名称 Method and system for removing dead access control entries (ACEs)
摘要 Methods and systems have been provided for removing dead Access Control Entries (ACEs) in an Access Control List (ACL). In one embodiment, the dead ACEs can be detected for an egress as well as an ingress ACL. The ACEs that have a hit count above a user-specified hit count are checked for their validity. The validity of the ACE is checked, using the information based on a Forwarding Information Base (FIB). If an ACE is found to be invalid, it is considered dead. The dead ACEs are referred as candidates for removal from the ACL. If the ACE is found to be a candidate for removal, a system administrator can either warn the network administrator about the candidate for removal or delete the ACE from the ACL after a pre-defined time limit.
申请公布号 US2007223487(A1) 申请公布日期 2007.09.27
申请号 US20060387121 申请日期 2006.03.22
申请人 CISCO TECHNOLOGY, INC. 发明人 KAJEKAR PREETHAM;SATHYANARAYANA KRISHNA;RAMAKRISHNAN SUNDAR;BK GANESH;REDDY VARAKUTI V.
分类号 H04L12/56 主分类号 H04L12/56
代理机构 代理人
主权项
地址