-
公开(公告)号:US12224978B2
公开(公告)日:2025-02-11
申请号:US18315365
申请日:2023-05-10
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Yanping Xu , Liang Xia , Xiaohui Tong
IPC: H04L61/5007 , H04L9/40 , H04L101/659
Abstract: A packet processing method and apparatus are provided. The method includes: on a forwarding path of an IPv6 packet, a key node (for example, a firewall) signs a packet, and a downstream apparatus of the key node verifies the signature, to determine whether the packet passes through the key node in a forwarding process. According to this application, the key node performs checking, to effectively prevent a packet which packet header is modified by attackers from bypassing the key node.
-
2.
公开(公告)号:US20240372806A1
公开(公告)日:2024-11-07
申请号:US18774030
申请日:2024-07-16
Applicant: Huawei Technologies Co., Ltd.
Inventor: Yanping Xu , Yaqun Xiao , Yunxing Li
IPC: H04L45/76 , H04L45/00 , H04L45/302 , H04L45/741
Abstract: Embodiments of this application disclose a packet sending method. A first IP packet may be obtained, where a packet header of the first IP packet includes a tenant identifier of a tenant corresponding to the first IP packet. After the first IP packet is obtained, the first IP packet is sent to a VAS device, where the VAS device is configured to perform, based on the tenant identifier, a value-added service corresponding to the tenant. Because the packet header of the first IP packet includes the tenant identifier of the tenant corresponding to the first IP packet, after receiving the first IP packet, the VAS device may obtain the corresponding tenant identifier of the tenant by parsing the first IP packet, and further perform, based on the tenant identifier, the value-added service corresponding to the tenant.
-
公开(公告)号:US20230283588A1
公开(公告)日:2023-09-07
申请号:US18315365
申请日:2023-05-10
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Yanping Xu , Liang Xia , Xiaohui Tong
IPC: H04L61/5007 , H04L9/40
CPC classification number: H04L61/5007 , H04L63/1416 , H04L2101/659
Abstract: A packet processing method and apparatus are provided. The method includes: on a forwarding path of an IPv6 packet, a key node (for example, a firewall) signs a packet, and a downstream apparatus of the key node verifies the signature, to determine whether the packet passes through the key node in a forwarding process. According to this application, the key node performs checking, to effectively prevent a packet which packet header is modified by attackers from bypassing the key node.
-
-