Invention Grant
US07769858B2 Method for efficiently hashing packet keys into a firewall connection table
失效
将数据包密钥高效地散列到防火墙连接表中的方法
- Patent Title: Method for efficiently hashing packet keys into a firewall connection table
- Patent Title (中): 将数据包密钥高效地散列到防火墙连接表中的方法
-
Application No.: US11063950Application Date: 2005-02-23
-
Publication No.: US07769858B2Publication Date: 2010-08-03
- Inventor: Everett Arthur Corl, Jr. , Gordon Taylor Davis , Clark Debs Jeffries , Steven Richard Perrin , Hiroshi Takada , Victoria Sue Thio
- Applicant: Everett Arthur Corl, Jr. , Gordon Taylor Davis , Clark Debs Jeffries , Steven Richard Perrin , Hiroshi Takada , Victoria Sue Thio
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Yee & Associates, P.C.
- Agent Mark E. McBurney
- Main IPC: G06F15/173
- IPC: G06F15/173

Abstract:
A method for increasing the capacity of a connection table in a firewall accelerator by means of mapping packets in one session with some common security actions into one table entry. For each of five Network Address Translation (NAT) configurations, a hash function is specified. The hash function takes into account which of four possible arrival types a packet at a firewall accelerator may have. When different arrival types of packets in the same session are processed, two or more arrival types may have the same hash value.
Public/Granted literature
- US20060190613A1 Method, program and system for efficiently hashing packet keys into a firewall connection table Public/Granted day:2006-08-24
Information query