Local network natification
First Claim
Patent Images
1. A method of providing policy enforcement within a network, comprising:
- receiving a packet by a first network element at an entrance to the network;
replacing a value of an address field of the packet to an internal address related to a policy profile according to which the packet is to be handled;
forwarding the packet to a second network element in the network; and
handling the packet in accordance with a policy profile determined from the internal address in the address field of the packet.
1 Assignment
0 Petitions
Accused Products
Abstract
A method of providing policy enforcement within a network. The method includes receiving a packet by a first network element at an entrance to the network, replacing a value of an address field of the packet to an internal address related to a policy profile according to which the packet is to be handled, forwarding the packet to a second network element in the network, and handling the packet in accordance with a policy profile determined from the internal address in the address field of the packet.
-
Citations
31 Claims
-
1. A method of providing policy enforcement within a network, comprising:
-
receiving a packet by a first network element at an entrance to the network;
replacing a value of an address field of the packet to an internal address related to a policy profile according to which the packet is to be handled;
forwarding the packet to a second network element in the network; and
handling the packet in accordance with a policy profile determined from the internal address in the address field of the packet. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20)
-
-
21. A network element, comprising:
-
a input interface adapted to receive packets;
a replacement unit adapted to replace a source address field of the packets with respective internal addresses; and
a policy determination unit adapted to determine policy profiles of clients and to configure the replacement unit with internal addresses to be inserted into packets received from clients according to the determined policy profiles of the clients. - View Dependent Claims (22, 23)
-
-
24. A method of providing policy enforcement within a network, comprising:
-
receiving a packet by a first network element at an entrance to the network;
assigning a value related to a policy profile according to which the packet is to be handled to a virtual local area network (VLAN) field of the packet;
forwarding the packet to a second network element in the network; and
handling the packet in accordance with a policy profile determined from the value assigned to the VLAN field of the packet. - View Dependent Claims (25, 26)
-
-
27. A method of changing packet addresses, comprising:
-
receiving a packet by a first network element;
selecting an address to which an address field of the packet is to be changed, based on a value of at least one field of the received packet; and
replacing the value of the address field of the packet to the selected address. - View Dependent Claims (28, 29, 30, 31)
-
Specification