Establishing connectivity in networks

作者: Joseph J. Ekstrom , Stephen S. Moss , Thomas G. McNeill

DOI:

关键词: Network layerComputer networkData link layerLayer (object-oriented design)Access controlComputer scienceDistributed computingNetwork administratorVirtual LANDomain (software engineering)restrict

摘要: A network includes a number of domains ('layer 2 domains') interconnected by routers. Withing each domain, traffic is forwarded based on MAC addresses (or other data link layer addresses). The routes route IP or addresses. To restrict connectivity, administrator specifies connectivity groups which group sub-networks that are allowed to communicate. also entities (MAC addresses, ports, user names) belong the same group. may be in different domains. computer system automatically creates access control lists for routers allow deny as specified administrator. VLANs specified, wherein VLAN part domain whole domain. Connectivity within restricted and between lists.

参考文章(12)
Chris Hare, Karanjit S. Siyan, Internet firewalls and network security ,(1996)
Jeffrey Kevin Rand, Richard Dewitt Cox, Andrew Timothy Hunter, Service provision in communications networks ,(1995)
Ronald Clare Weddige, Gary Arthur Roediger, Scott Blair Steele, William Paul Lidinsky, User to network interface protocol for packet communications networks ,(1988)
Kouichi Nagai, Takashi Masui, Hikoyuki Nakajima, Kunihiko Isoda, Shigeaki Tanimoto, Vlan control system and method ,(1997)
Steven M. Bellovin, Aviel D. Rubin, William R. Cheswick, Firewalls and Internet Security: Repelling the Wily Hacker ,(2003)
Joseph J. Ekstrom, J. Bernard Gille, User-based binding of network stations to broadcast domains ,(1998)
Kurt Dobbins, Michael Skubisz, Phillip Andlauer, Method for establishing restricted broadcast groups in a switched network ,(1996)