Firewall control for public access networks
    1.
    发明授权
    Firewall control for public access networks 有权
    公共接入网络的防火墙控制

    公开(公告)号:US08955088B2

    公开(公告)日:2015-02-10

    申请号:US12266455

    申请日:2008-11-06

    IPC分类号: G06F15/16 H04L29/06

    CPC分类号: H04L63/20 H04L63/02

    摘要: An apparatus comprising a policy enforcement point (PEP) configured to enforce firewall policies in a network, and a policy decision point (PDP) coupled to the PEP and configured to manage the PEP based on at least one firewall policy option received from at least one node. Also disclosed is a network component comprising at least one processor configured to implement a method comprising receiving a request from a node regarding a firewall policy entry, authenticating the node, processing the request to manage a firewall using a firewall control protocol, and sending a reply to the node regarding processing the request. Also disclosed is a method comprising signaling a PDP to establish a session associated with a source address and a requested protocol, and receiving an indication when the session is allowed.

    摘要翻译: 一种包括被配置为在网络中实施防火墙策略的策略执行点(PEP)的设备,以及耦合到所述PEP的策略决策点(PDP),并被配置为基于至少一个从所述PEP接收的至少一个防火墙策略选项来管理所述PEP 节点。 还公开了一种网络组件,包括至少一个处理器,该处理器被配置为实现一种方法,包括从节点接收关于防火墙策略条目的请求,认证该节点,使用防火墙控制协议来处理使用防火墙的请求,以及发送回复 到节点处理请求。 还公开了一种方法,包括发信号通知PDP以建立与源地址和请求的协议相关联的会话,以及当会话被允许时接收指示。

    Firewall Control for Public Access Networks
    3.
    发明申请
    Firewall Control for Public Access Networks 有权
    公共接入网络的防火墙控制

    公开(公告)号:US20090119770A1

    公开(公告)日:2009-05-07

    申请号:US12266455

    申请日:2008-11-06

    IPC分类号: H04L9/32

    CPC分类号: H04L63/20 H04L63/02

    摘要: An apparatus comprising a policy enforcement point (PEP) configured to enforce firewall policies in a network, and a policy decision point (PDP) coupled to the PEP and configured to manage the PEP based on at least one firewall policy option received from at least one node. Also disclosed is a network component comprising at least one processor configured to implement a method comprising receiving a request from a node regarding a firewall policy entry, authenticating the node, processing the request to manage a firewall using a firewall control protocol, and sending a reply to the node regarding processing the request. Also disclosed is a method comprising signaling a PDP to establish a session associated with a source address and a requested protocol, and receiving an indication when the session is allowed.

    摘要翻译: 一种包括被配置为在网络中实施防火墙策略的策略执行点(PEP)的设备,以及耦合到所述PEP的策略决策点(PDP),并被配置为基于至少一个从所述PEP接收的至少一个防火墙策略选项来管理所述PEP 节点。 还公开了一种网络组件,包括至少一个处理器,该处理器被配置为实现一种方法,包括从节点接收关于防火墙策略条目的请求,认证该节点,使用防火墙控制协议来处理使用防火墙的请求,以及发送回复 到节点处理请求。 还公开了一种方法,包括发信号通知PDP以建立与源地址和请求的协议相关联的会话,以及当会话被允许时接收指示。

    Mobility signaling using direct or indirect signaling based on cell residency heuristics
    4.
    发明授权
    Mobility signaling using direct or indirect signaling based on cell residency heuristics 有权
    基于细胞驻留启发式的直接或间接信令的移动性信令

    公开(公告)号:US07876742B2

    公开(公告)日:2011-01-25

    申请号:US11814760

    申请日:2006-01-09

    IPC分类号: H04L12/28

    摘要: A mobility signaling method and apparatus are disclosed. Mobility signaling is performed by, first, generating a mobility signaling message (300, 302) at a mobile node (100) to be sent to a correspondent node (112). Next, either direct signaling or indirect signaling is selected as a signaling mechanism for the mobility signaling message (300, 302) based on a cell residence heuristic. The mobility signaling message (300, 302) is then sent to the correspondent node using the selected signaling mechanism for the mobility signaling message (300, 302).

    摘要翻译: 公开了一种移动性信令方法和装置。 首先,在移动节点(100)处生成移动性信令消息(300,302)以发送到通信节点(112)来执行移动性信令。 接下来,直接信令或间接信令被选择为基于信元驻留启发式的移动性信令消息(300,302)的信令机制。 移动性信令消息(300,302)然后使用所选择的用于移动性信令消息(300,302)的信令机制被发送到通信节点。