Invention Grant
- Patent Title: System and method for access control list conversion
-
Application No.: US13852863Application Date: 2013-03-28
-
Publication No.: US09882766B2Publication Date: 2018-01-30
- Inventor: Adam James Sweeney , Asang Kamalakar Dani
- Applicant: Adam James Sweeney , Asang Kamalakar Dani
- Applicant Address: US CA Santa Clara
- Assignee: Arista Networks, Inc.
- Current Assignee: Arista Networks, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Blakely Sokoloff Taylor & Zafman LLP
- Main IPC: G06F15/173
- IPC: G06F15/173 ; G06F15/16 ; H04L29/08 ; H04L29/06 ; H04L12/741

Abstract:
A method and apparatus of a device that converts an ordered ACL to an unordered ACL is described. In an exemplary embodiment, a network element receives an ordered access control list that includes a set of ordered rules, where each of the ordered rules includes an address range and an action. Furthermore, if two address ranges for two of the ordered rules overlap, a corresponding action of a preceding rule overrules a corresponding action of a subsequent rule for an overlapping range of addresses. The network element further converts the ordered access control list to an unordered access control list, where the unordered access control list includes a plurality of independent rules and each of the plurality of independent rules include a corresponding address range that is non-overlapping with other address ranges of the plurality of independent rules. In addition, the network element stores the unordered access control list, where the unordered access control list is used by the network element to make forwarding decisions for processing network data.
Public/Granted literature
- US20140244840A1 SYSTEM AND METHOD FOR ACCESS CONTROL LIST CONVERSION Public/Granted day:2014-08-28
Information query