ATE415771T1 - Firewall mit zwei betriebsarten - Google Patents

Firewall mit zwei betriebsarten

Info

Publication number
ATE415771T1
ATE415771T1 AT04811173T AT04811173T ATE415771T1 AT E415771 T1 ATE415771 T1 AT E415771T1 AT 04811173 T AT04811173 T AT 04811173T AT 04811173 T AT04811173 T AT 04811173T AT E415771 T1 ATE415771 T1 AT E415771T1
Authority
AT
Austria
Prior art keywords
firewall
packet
layer
router
bridge
Prior art date
Application number
AT04811173T
Other languages
English (en)
Inventor
Kamesh Akundi
Thomas Guerrette
John Gawf
Rajan Goyal
Original Assignee
Cisco Tech Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Cisco Tech Inc filed Critical Cisco Tech Inc
Application granted granted Critical
Publication of ATE415771T1 publication Critical patent/ATE415771T1/de

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0236Filtering by address, protocol, port number or service, e.g. IP-address or URL
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/302Route determination based on requested QoS
    • H04L45/308Route determination based on user's profile, e.g. premium users

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Communication Control (AREA)
AT04811173T 2003-11-24 2004-11-16 Firewall mit zwei betriebsarten ATE415771T1 (de)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
US10/721,571 US7496955B2 (en) 2003-11-24 2003-11-24 Dual mode firewall

Publications (1)

Publication Number Publication Date
ATE415771T1 true ATE415771T1 (de) 2008-12-15

Family

ID=34591823

Family Applications (1)

Application Number Title Priority Date Filing Date
AT04811173T ATE415771T1 (de) 2003-11-24 2004-11-16 Firewall mit zwei betriebsarten

Country Status (7)

Country Link
US (1) US7496955B2 (de)
EP (1) EP1690403B1 (de)
CN (1) CN1879388B (de)
AT (1) ATE415771T1 (de)
CA (1) CA2543270A1 (de)
DE (1) DE602004018025D1 (de)
WO (1) WO2005053269A1 (de)

Families Citing this family (57)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7420929B1 (en) 2002-07-02 2008-09-02 Juniper Networks, Inc. Adaptive network flow analysis
US7251215B1 (en) 2002-08-26 2007-07-31 Juniper Networks, Inc. Adaptive network router
US7313100B1 (en) 2002-08-26 2007-12-25 Juniper Networks, Inc. Network device having accounting service card
AU2003233838A1 (en) * 2003-06-04 2005-01-04 Inion Ltd Biodegradable implant and method for manufacturing one
US9032095B1 (en) 2004-01-06 2015-05-12 Juniper Networks, Inc. Routing device having multiple logical routers
US8108496B2 (en) * 2004-04-07 2012-01-31 American Power Conversion Corporation Method and apparatus for selecting forwarding modes
US7664855B1 (en) 2004-05-05 2010-02-16 Juniper Networks, Inc. Port scanning mitigation within a network through establishment of an a prior network connection
US7546635B1 (en) * 2004-08-11 2009-06-09 Juniper Networks, Inc. Stateful firewall protection for control plane traffic within a network device
US20060123481A1 (en) * 2004-12-07 2006-06-08 Nortel Networks Limited Method and apparatus for network immunization
CN100444582C (zh) * 2006-01-24 2008-12-17 杭州华三通信技术有限公司 具有防火墙功能的交换设备
US8024787B2 (en) * 2006-05-02 2011-09-20 Cisco Technology, Inc. Packet firewalls of particular use in packet switching devices
US20080005345A1 (en) * 2006-06-30 2008-01-03 Microsoft Corporation Gateway with automatic bridging
WO2008098260A1 (en) * 2007-02-09 2008-08-14 Smobile Systems, Inc. Off-line mms malware scanning system and method
CN101014048B (zh) * 2007-02-12 2010-05-19 杭州华三通信技术有限公司 分布式防火墙系统及实现防火墙内容检测的方法
US8340090B1 (en) 2007-03-08 2012-12-25 Cisco Technology, Inc. Interconnecting forwarding contexts using u-turn ports
US8339959B1 (en) 2008-05-20 2012-12-25 Juniper Networks, Inc. Streamlined packet forwarding using dynamic filters for routing and security in a shared forwarding plane
US8713627B2 (en) * 2008-08-14 2014-04-29 Juniper Networks, Inc. Scalable security services for multicast in a router having integrated zone-based firewall
US8955107B2 (en) 2008-09-12 2015-02-10 Juniper Networks, Inc. Hierarchical application of security services within a computer network
US8914878B2 (en) 2009-04-29 2014-12-16 Juniper Networks, Inc. Detecting malicious network software agents
US8789173B2 (en) * 2009-09-03 2014-07-22 Juniper Networks, Inc. Protecting against distributed network flood attacks
US8369345B1 (en) 2009-11-13 2013-02-05 Juniper Networks, Inc. Multi-router system having shared network interfaces
CN101951665A (zh) * 2010-09-15 2011-01-19 宇龙计算机通信科技(深圳)有限公司 一种双卡移动终端的路由方法及双卡移动终端
CN102316028B (zh) * 2011-08-24 2014-06-04 华为技术有限公司 发送因特网协议分组的方法及装置
US8774187B2 (en) * 2011-10-24 2014-07-08 Richard L. Hartman Methods, systems, and devices for interfacing to networks
US9251535B1 (en) 2012-01-05 2016-02-02 Juniper Networks, Inc. Offload of data transfer statistics from a mobile access gateway
US9602334B2 (en) * 2013-01-22 2017-03-21 International Business Machines Corporation Independent network interfaces for virtual network environments
US9225638B2 (en) 2013-05-09 2015-12-29 Vmware, Inc. Method and system for service switching using service tags
EP2887605A1 (de) * 2013-12-20 2015-06-24 ABB Technology AB Sicherheitsrahmen zur Übertragung von Kommunikationsnachrichten zwischen einem Unterstations-LAN und einem paketvermittelten WAN
EP3022876B1 (de) * 2014-09-30 2017-12-06 ARRIS Enterprises LLC Auf einer medienzugangskontrolladresse basierende überbrückung
US10257095B2 (en) 2014-09-30 2019-04-09 Nicira, Inc. Dynamically adjusting load balancing
US9531590B2 (en) 2014-09-30 2016-12-27 Nicira, Inc. Load balancing across a group of load balancers
US10225137B2 (en) 2014-09-30 2019-03-05 Nicira, Inc. Service node selection by an inline service switch
CN104486114A (zh) * 2014-12-12 2015-04-01 广西科技大学 一种无线路由器与无线数传模块的桥接方法
US10594743B2 (en) 2015-04-03 2020-03-17 Nicira, Inc. Method, apparatus, and system for implementing a content switch
CN105227896B (zh) * 2015-08-27 2020-10-16 北京华夏创新科技有限公司 一种在透明模式下视频会议优化技术方法和系统
US10797966B2 (en) 2017-10-29 2020-10-06 Nicira, Inc. Service operation chaining
US10708229B2 (en) 2017-11-15 2020-07-07 Nicira, Inc. Packet induced revalidation of connection tracker
US11012420B2 (en) * 2017-11-15 2021-05-18 Nicira, Inc. Third-party service chaining using packet encapsulation in a flow-based forwarding element
US10757077B2 (en) 2017-11-15 2020-08-25 Nicira, Inc. Stateful connection policy filtering
US10887131B1 (en) * 2017-11-29 2021-01-05 Riverbed Technology, Inc. High availability (HA) network device
US10797910B2 (en) 2018-01-26 2020-10-06 Nicira, Inc. Specifying and utilizing paths through a network
US10805192B2 (en) 2018-03-27 2020-10-13 Nicira, Inc. Detecting failure of layer 2 service using broadcast messages
CN108769084B (zh) * 2018-08-28 2020-12-15 山东超越数控电子股份有限公司 一种处理器与防火墙
US11595250B2 (en) 2018-09-02 2023-02-28 Vmware, Inc. Service insertion at logical network gateway
US11036538B2 (en) 2019-02-22 2021-06-15 Vmware, Inc. Providing services with service VM mobility
US11140218B2 (en) 2019-10-30 2021-10-05 Vmware, Inc. Distributed service chain across multiple clouds
US11283717B2 (en) 2019-10-30 2022-03-22 Vmware, Inc. Distributed fault tolerant service chain
CN110912928B (zh) * 2019-12-11 2022-01-28 百度在线网络技术(北京)有限公司 一种防火墙实现方法、装置以及电子设备
US11223494B2 (en) 2020-01-13 2022-01-11 Vmware, Inc. Service insertion for multicast traffic at boundary
US11659061B2 (en) 2020-01-20 2023-05-23 Vmware, Inc. Method of adjusting service function chains to improve network performance
US11153406B2 (en) 2020-01-20 2021-10-19 Vmware, Inc. Method of network performance visualization of service function chains
US11528219B2 (en) 2020-04-06 2022-12-13 Vmware, Inc. Using applied-to field to identify connection-tracking records for different interfaces
US11611625B2 (en) 2020-12-15 2023-03-21 Vmware, Inc. Providing stateful services in a scalable manner for machines executing on host computers
US11734043B2 (en) 2020-12-15 2023-08-22 Vmware, Inc. Providing stateful services in a scalable manner for machines executing on host computers
US11831605B2 (en) * 2021-03-29 2023-11-28 Nokia Solutions And Networks Oy Router firewall
US12192171B2 (en) * 2021-09-16 2025-01-07 Palo Alto Networks, Inc. Supporting zone-based policy enforcement for a firewall connected to a one-arm load balancer
US12452209B2 (en) * 2021-10-26 2025-10-21 Cisco Technology, Inc. Verifying data sources using attestation based methods

Family Cites Families (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6240533B1 (en) * 1999-02-25 2001-05-29 Lodgenet Entertainment Corporation Method and apparatus for providing uninterrupted communication over a network link
US6505254B1 (en) 1999-04-19 2003-01-07 Cisco Technology, Inc. Methods and apparatus for routing requests in a network
US6854063B1 (en) 2000-03-03 2005-02-08 Cisco Technology, Inc. Method and apparatus for optimizing firewall processing
US20020120732A1 (en) * 2001-02-27 2002-08-29 Lee Daniel Joseph Open internet protocol services platform
EP1326393B1 (de) * 2001-12-18 2004-08-11 Stonesoft Corporation Prüfung der Konfiguration einer Firewall
CN1292354C (zh) 2002-02-08 2006-12-27 联想网御科技(北京)有限公司 基于桥的二层交换式防火墙包过滤的方法
US7093283B1 (en) * 2002-02-15 2006-08-15 Cisco Technology, Inc. Method and apparatus for deploying configuration instructions to security devices in order to implement a security policy on a network
CN1300721C (zh) * 2002-03-21 2007-02-14 重庆大学 一种对等网络体系结构实现方法
US7143188B2 (en) * 2002-06-13 2006-11-28 Nvidia Corporation Method and apparatus for network address translation integration with internet protocol security

Also Published As

Publication number Publication date
CN1879388A (zh) 2006-12-13
WO2005053269A1 (en) 2005-06-09
CA2543270A1 (en) 2005-06-09
DE602004018025D1 (de) 2009-01-08
CN1879388B (zh) 2012-07-04
US7496955B2 (en) 2009-02-24
US20050114648A1 (en) 2005-05-26
EP1690403A1 (de) 2006-08-16
EP1690403B1 (de) 2008-11-26

Similar Documents

Publication Publication Date Title
ATE415771T1 (de) Firewall mit zwei betriebsarten
DE60212289D1 (de) Verwaltung privater virtueller Netze (VPN)
DE602004007444D1 (de) Virtuelles Privates Netzwerk mit kanalisierter Ethernet über Sonet Schnittstelle, Randrouter und Methode
DE60326913D1 (de) Kreuzungen von virtuellen, privaten Netzwerken basiert auf Zertifikate
DE60305809D1 (de) Verfahren für optimales Routing von Paketen im mobilen IPv6 Protokoll mit Unterstützung von lokalem Mobilitätsmanagement
WO2002078253A3 (en) Tunneling through access networks
IL158656A0 (en) Rerouting mpls traffic in ring networks
DE60330504D1 (de) Routingverfahren und paket-kommunikationsnetz
ATE529975T1 (de) System und verfahren zur priorisierung von verkehr durch ein internet-zugangsnetz
WO2005079503A3 (en) System and method for end to end route control
GB2417643B (en) Call admission control/session management based on N source to destination severity levels for IP networks
DE60204645D1 (de) Ressourcenverwaltung in heterogenen dienstqualitätsbasierten Paketnetzwerken
WO2007103608A3 (en) Managing traffic within and between virtual private networks when using a session border controller
FI20021272A0 (fi) Yleislähetyspakettien välittäminen turvallisissa tietokoneiden välisissä tietoliikenneyhteyksissä
DE60320846D1 (de) End-to-end location privacy in telekommunikationsnetzen
WO2005004420A3 (en) Method and apparatus for routing data in a personal area network
WO2005089147A3 (en) Method and system for routing calls over a packet switched computer network
SE0200640D0 (sv) Arrangement and method for routing in virtual private network
WO2004008700A3 (en) Real-time packet traceback and associated packet marking strategies
DE60128733D1 (de) Regelbasiertes weitersenden in OSPF Netzwerken
DE602004032152D1 (de) Netzwerk-Routing mit dynamischen Kosten
ATE333178T1 (de) Verfahren zum bereitstellen von diensten mit garantierter dienstqualität in einem ip- zugangsnetz
WO2004098109A3 (en) System for supporting constraint based routing for mpls traffic in policy-based management
ATE434890T1 (de) Verfahren und vorrichtung zur routenoptimierung in einem telekommunikationsnetz
DE602007013814D1 (de) Ethernet-spanning-tree-bereitstellung

Legal Events

Date Code Title Description
RER Ceased as to paragraph 5 lit. 3 law introducing patent treaties