Nova Patents
EP0801481A2

Virtual private network

Abstract

In a packet switching (packet-based) network, such as a frame relay (FR) network, which includes network resources made up of networked elements and customer premises equipment interconnected by one or more physical paths, a Virtual Private Network (VPN) is built above the underlying packet-based network and includes selected portions of the packet-based network resources. The VPN is a collection of logical nodes and virtual paths (VPs) and includes one or more virtual circuits (VCs), each VC being a logical connection between VC terminators including network elements and customer premises equipment. Segments of the VCs are carried by VPs, each VP being a logical connection established between two VP terminators which are located in either network elements or customer premises equipment. One or more VPs are multiplexed on a physical path (PP). Each VP is allocated a positive guaranteed bandwidth (VP-CIR), and each VC on a VP is also allocated a bandwidth (VC-CIR) greater than or equal to zero. Packets of information to be transmitted over a VC are provided with a unique address field to thereby identify the VCs and VPs associated with the VPN over which the packet of information will travel. Congestion control of the network is provided such that congestion control and management are carried out on a per VPN basis, and congestion outside of a VPN's logical domain does not affect the performance of the VPN.

EP0801481A2, drawing sheet 1
Sheet 1 of 14

Term

Term ended

Projected expiry passed 14 April 2017, 9.4 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

10 claims: 1 independent, 9 dependent

  1. 1
    A packet based network for providing virtual private networks (VPN), each virtual private network (VPN) carrying traffic associated with a particular customer of the packet based network, the traffic including packets for transmission via the packet based network, the packet based network comprising:a plurality of network elements (12), each being interconnected to at least one other network element (12) by a physical path (PP);a plurality of customer premises equipment (CPE), each being interconnected to a network element (12) by a physical path (PP);at least one virtual path (VP), each being a logical connection between two virtual path terminators (12,17);at least one virtual circuit (VC), each being a logical connection established between two virtual circuit terminators (12,17), wherein packets are transmitted by said virtual circuits (VC) between the virtual circuit terminators (12,17);wherein the virtual private network (VPN) includes a collection of respective network elements (12), customer premises equipment (CPE), virtual paths (VP) and corresponding virtual circuits (VC);andidentification means (vpi,vci) contained in the packets of a respective customer having a virtual private network (VPN) for identifying the respective virtual circuits (VC) and virtual paths (VP) associated with the virtual private network (VPN) over which the packets are transmitted;andwherein a pseudo virtual path may be provided on a physical path (PP) to carry traffic not associated with a virtual private network (VPN).