Kumaran NARAYANAN - San Ramon CA, US Siva Madasamy - San Jose CA, US Aparna Adhav - Fremont CA, US Saurabh Agarwal - Fremont CA, US Kalash Nainwal - Bangalore, IN
Assignee:
Juniper Networks, Inc. - Sunnyvale CA
International Classification:
G06F 9/44 G06F 15/177
US Classification:
717171, 713 2
Abstract:
Rolling software upgrades may be employed for a network device in a modular chassis and/or virtual chassis. The network device may include memory devices to store a software upgrade package and a group of instructions, and a processor. The processors may install the software upgrade package on a backup routing engine; determine subsets of multiple line cards on which to perform a software upgrade, where ports in each of the multiple line cards are part of a link aggregation group (LAG); initiate a reboot process for each of the subsets of multiple line cards, in sequence, where the reboot process for each of the line cards results in a software upgrade without deactivating any LAG. The processors may also switch the backup routing engine and a master routing engine to create a new master routing engine and a new backup routing engine, and install the upgrade package on the new backup routing engine.
Verifying Firewall Filter Entries Using Rules Associated With An Access Control List (Acl) Template
- Sunnyvale CA, US Siva Madasamy - San Jose CA, US
International Classification:
H04L 29/06
Abstract:
A device may receive a firewall filter entry that includes one or more match conditions associated with filtering network traffic. The device may identify an access control list (ACL) template associated with the firewall filter entry. The ACL template may be associated with a template type. The device may identify one or more rules, for verifying the firewall filter entry, based on the template type associated with the ACL template. The device may verify the firewall filter entry using the one or more rules. The device may determine a hardware resource, for storing the firewall filter entry, based on the template type and based on verifying the firewall filter entry. The device may store the firewall filter entry using the hardware resource of the device.