- Patent Title: Efficient intercept of connection-based transport layer connections
-
Application No.: US13730985Application Date: 2012-12-29
-
Publication No.: US09935879B2Publication Date: 2018-04-03
- Inventor: Roelof Nico du Toit , Jacques Fourie , Peter Liudmilov Djalaliev
- Applicant: Roelof Nico du Toit , Jacques Fourie , Peter Liudmilov Djalaliev
- Applicant Address: US CA Santa Clara
- Assignee: Netronome Systems, Inc.
- Current Assignee: Netronome Systems, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Imperium Patent Works
- Agent T. Lester Wallace
- Main IPC: G06F15/173
- IPC: G06F15/173 ; H04L12/801 ; H04L29/06

Abstract:
A TCP connection is established between a client and a server, such that packets communicated across the TCP connection pass through a proxy. Based at least in part on a result of monitoring packets flowing across the TCP connection, the proxy determines whether to split the TCP control loop into two TCP control loops so that packets can be inspected more thoroughly. If the TCP control loop is split, then a first TCP control loop manages flow between the client the proxy and a second TCP control loop manages flow between the proxy and the server. Due to the two control loops, packets can be held on the proxy long enough to be analyzed. In some circumstances, a decision is then made to stop inspecting. The two TCP control loops are merged into a single TCP control loop, and thereafter the proxy passes packets of the TCP connection through unmodified.
Public/Granted literature
- US20140189093A1 EFFICIENT INTERCEPT OF CONNECTION-BASED TRANSPORT LAYER CONNECTIONS Public/Granted day:2014-07-03
Information query