SECURE FIREWALL RULE FORMULATION
    1.
    发明申请
    SECURE FIREWALL RULE FORMULATION 失效
    安全防范规则制定

    公开(公告)号:US20130091538A1

    公开(公告)日:2013-04-11

    申请号:US13269897

    申请日:2011-10-10

    IPC分类号: G06F17/00

    摘要: A kernel extension is configured to intercept a call to associate a socket with a port of a node in a network. The call originates from a kernel of the node. The kernel extension is configured to determine the port from the call. The kernel extension is configured to determine that the port is one of a plurality of ports for which the node has authority to modify firewall rules of a firewall of the network. The kernel extension is configured to modify firewall rules maintained by the firewall to allow communications for the port to the node through the firewall.

    摘要翻译: 内核扩展被配置为截取一个呼叫以将一个套接字与网络中某个节点的端口相关联。 呼叫源自节点的内核。 内核扩展配置为从呼叫确定端口。 内核扩展被配置为确定端口是节点有权修改网络的防火墙的防火墙规则的多个端口之一。 内核扩展被配置为修改由防火墙维护的防火墙规则,以允许通过防火墙将端口通信到节点。

    Secure firewall rule formulation
    2.
    发明授权
    Secure firewall rule formulation 失效
    安全的防火墙规则制定

    公开(公告)号:US08555369B2

    公开(公告)日:2013-10-08

    申请号:US13269897

    申请日:2011-10-10

    IPC分类号: H04L29/06

    摘要: A kernel extension is configured to intercept a call to associate a socket with a port of a node in a network. The call originates from a kernel of the node. The kernel extension is configured to determine the port from the call. The kernel extension is configured to determine that the port is one of a plurality of ports for which the node has authority to modify firewall rules of a firewall of the network. The kernel extension is configured to modify firewall rules maintained by the firewall to allow communications for the port to the node through the firewall.

    摘要翻译: 内核扩展被配置为截取一个呼叫以将一个套接字与网络中某个节点的端口相关联。 呼叫源自节点的内核。 内核扩展配置为从呼叫确定端口。 内核扩展被配置为确定端口是节点有权修改网络的防火墙的防火墙规则的多个端口之一。 内核扩展被配置为修改由防火墙维护的防火墙规则,以允许通过防火墙将端口通信到节点。