-
公开(公告)号:US20130091538A1
公开(公告)日:2013-04-11
申请号:US13269897
申请日:2011-10-10
IPC分类号: G06F17/00
CPC分类号: H04L63/0263 , H04L63/0428 , H04L63/20
摘要: A kernel extension is configured to intercept a call to associate a socket with a port of a node in a network. The call originates from a kernel of the node. The kernel extension is configured to determine the port from the call. The kernel extension is configured to determine that the port is one of a plurality of ports for which the node has authority to modify firewall rules of a firewall of the network. The kernel extension is configured to modify firewall rules maintained by the firewall to allow communications for the port to the node through the firewall.
摘要翻译: 内核扩展被配置为截取一个呼叫以将一个套接字与网络中某个节点的端口相关联。 呼叫源自节点的内核。 内核扩展配置为从呼叫确定端口。 内核扩展被配置为确定端口是节点有权修改网络的防火墙的防火墙规则的多个端口之一。 内核扩展被配置为修改由防火墙维护的防火墙规则,以允许通过防火墙将端口通信到节点。
-
公开(公告)号:US08555369B2
公开(公告)日:2013-10-08
申请号:US13269897
申请日:2011-10-10
IPC分类号: H04L29/06
CPC分类号: H04L63/0263 , H04L63/0428 , H04L63/20
摘要: A kernel extension is configured to intercept a call to associate a socket with a port of a node in a network. The call originates from a kernel of the node. The kernel extension is configured to determine the port from the call. The kernel extension is configured to determine that the port is one of a plurality of ports for which the node has authority to modify firewall rules of a firewall of the network. The kernel extension is configured to modify firewall rules maintained by the firewall to allow communications for the port to the node through the firewall.
摘要翻译: 内核扩展被配置为截取一个呼叫以将一个套接字与网络中某个节点的端口相关联。 呼叫源自节点的内核。 内核扩展配置为从呼叫确定端口。 内核扩展被配置为确定端口是节点有权修改网络的防火墙的防火墙规则的多个端口之一。 内核扩展被配置为修改由防火墙维护的防火墙规则,以允许通过防火墙将端口通信到节点。
-