EFFICIENT INTERCEPT OF CONNECTION-BASED TRANSPORT LAYER CONNECTIONS
    2.
    发明申请
    EFFICIENT INTERCEPT OF CONNECTION-BASED TRANSPORT LAYER CONNECTIONS 有权
    基于连接的运输层连接的有效干预

    公开(公告)号:US20140189093A1

    公开(公告)日:2014-07-03

    申请号:US13730985

    申请日:2012-12-29

    Abstract: A TCP connection is established between a client and a server, such that packets communicated across the TCP connection pass through a proxy. Based at least in part on a result of monitoring packets flowing across the TCP connection, the proxy determines whether to split the TCP control loop into two TCP control loops so that packets can be inspected more thoroughly. If the TCP control loop is split, then a first TCP control loop manages flow between the client the proxy and a second TCP control loop manages flow between the proxy and the server. Due to the two control loops, packets can be held on the proxy long enough to be analyzed. In some circumstances, a decision is then made to stop inspecting. The two TCP control loops are merged into a single TCP control loop, and thereafter the proxy passes packets of the TCP connection through unmodified.

    Abstract translation: 在客户端和服务器之间建立TCP连接,使得跨TCP连接传递的数据包通过代理。 至少部分地基于监视跨越TCP连接的数据包的结果,代理确定是否将TCP控制环分为两个TCP控制环,以便更彻底地检查数据包。 如果TCP控制循环被拆分,则第一个TCP控制循环管理客户端代理之间的流程,第二个TCP控制循环管理代理服务器和服务器之间的流程。 由于两个控制环路,数据包可以在代理上保存足够长的时间进行分析。 在某些情况下,决定停止检查。 两个TCP控制循环被合并到单个TCP控制环路中,之后代理通过未修改的方式传递TCP连接的数据包。

Patent Agency Ranking