发明名称 ESTABLISHING CONNECTIVITY IN NETWORKS
摘要 <p>A network includes a number of domains ('layer 2 domains') interconnected by routers. Withing each domain, traffic is forwarded based on MAC addresses (or other data link layer addresses). The routes route traffic based on IP addresses or other network layer addresses. To restrict network connectivity, a network administrator specifies connectivity groups each of which is a group of sub-networks that are allowed to communicate. The administrator also specifies which entities (MAC addresses, ports, or user names) belong to the same group. The entities may be in the same or different domains. A computer system automatically creates access control lists for routers to allow or deny traffic as specified by the administrator. The computer system also creates VLANs to allow or deny traffic as specified, wherein each VLAN is part of a domain or is a whole domain. Connectivity within each domain is restricted by VLANs and connectivity between domains is restricted by access control lists.</p>
申请公布号 WO1999056436(A1) 申请公布日期 1999.11.04
申请号 US1999008866 申请日期 1999.04.22
申请人 发明人
分类号 主分类号
代理机构 代理人
主权项
地址