发明授权
US08112547B2 Efficiently hashing packet keys into a firewall connection table
有权
将数据包密钥有效地散列到防火墙连接表中
- 专利标题: Efficiently hashing packet keys into a firewall connection table
- 专利标题(中): 将数据包密钥有效地散列到防火墙连接表中
-
申请号: US12796363申请日: 2010-06-08
-
公开(公告)号: US08112547B2公开(公告)日: 2012-02-07
- 发明人: Everett Arthur Corl, Jr. , Gordon Taylor Davis , Clark Debs Jeffries , Steven Richard Perrin , Hiroshi Takada , Victoria Sue Thio
- 申请人: Everett Arthur Corl, Jr. , Gordon Taylor Davis , Clark Debs Jeffries , Steven Richard Perrin , Hiroshi Takada , Victoria Sue Thio
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 代理机构: Yee & Associates, P.C.
- 代理商 Yuanmin Cai
- 主分类号: G06F15/173
- IPC分类号: G06F15/173
摘要:
A method for increasing the capacity of a connection table in a firewall accelerator by means of mapping packets in one session with some common security actions into one table entry. For each of five Network Address Translation (NAT) configurations, a hash function is specified. The hash function takes into account which of four possible arrival types a packet at a firewall accelerator may have. When different arrival types of packets in the same session are processed, two or more arrival types may have the same hash value.
公开/授权文献
信息查询