摘要:
The invention proposes a method for controlling a connection between a first network node and a second network node, wherein the connection is controlled by a packet filtering function filtering packets such that a packet is discarded in case a source address and/or a destination address do not comply with a filtering rule, wherein the packet filtering function is configured at a connection set up, and at least one of the first or second network node is adapted to change its address, the method comprising the steps of informing, the packet filtering function about the new address of the network node having changed its address, and updating the packet filter of the packet filtering function by using the new address of the network node having changed its address. The invention also proposes a corresponding network system comprising at least a network node and a packet filtering network element. Furthermore, the invention proposes a corresponding packet filtering network device.
摘要:
A controller for a communications system comprises an input and an output for communicating with nodes connected to the communications system. The controller is provided with a processor for determining presence of an address translator entity between a first node and a second node. The controller is further configured for generating an indication of the presence of the translator entity for sending to another node.
摘要:
A controller for a communications system comprises an input and an output for communicating with nodes connected to the communications system. The controller is provided with a processor for determining presence of an address translator entity between a first node and a second node. The controller is further configured for generating an indication of the presence of the translator entity for sending to another node.
摘要:
The invention proposes a method for controlling a connection between a first network node and a second network node, wherein the connection is controlled by a packet filtering function filtering packets such that a packet is discarded in case a source address and/or a destination address do not comply with a filtering rule, wherein the packet filtering function is configured at a connection set up, and at least one of the first or second network node is adapted to change its address, the method comprising the steps of informing, the packet filtering function about the new address of the network node having changed its address, and updating the packet filter of the packet filtering function by using the new address of the network node having changed its address. The invention also proposes a corresponding network system comprising at least a network node and a packet filtering network element. Furthermore, the invention proposes a corresponding packet filtering network device.
摘要:
Methods and apparatus are provided for recovering from packet loss in an end-to-end network connection having at least one wireless segment. A packet on a wireless segment of an end-to-end network connection is processed by determining whether the packet comprises one or more of a lost packet and a malformed packet; and generating a modified packet for an application associated with the packet to replace one or more of the lost packet and the malformed packet if the application is substantially tolerant to one or more of lost and malformed data. The modified packet comprises, for example, a non-original packet and/or a corrected packet. Link layer information or information from a deep packet inspection can be used to determine whether the packet comprises a lost packet or a malformed packet.
摘要:
A method for updating filters, at a Packet Data Serving Node, with a care-of-address associated with at least one of a mobile station or a correspondent node. The method includes the steps of implementing a soft filtering rule at a Packet Data Serving Node and receiving, by the Packet Data Serving Node, a care-of-address that is associated with at least one the mobile station and a correspondent node. The method also includes updating, by the Packet Data Serving Node, filters with the care-of-address to correctly identify flows belonging to a particular session during Mobile IP use. The method further includes filtering, by the Packet Data Serving Node, packets including a care-of-address that is associated with one of the mobile station and the correspondent node.
摘要:
The present invention concerns a method for providing location privacy for a terminal node (MN) in communication with a communication partner node (CN) in a communication network system comprising at least a first communication network (HN, VN), wherein a respective node (MN) communicating via said communication network system is identified by its permanent network address (MN_PA) and addressable by a temporary network address (MN_CoA), at least one server entity (LPS), a plurality of agent entities (LPA1, . . . , LPAn), wherein each of said at least one server entities (LPS) maintains a record of said plurality of agent entities (LPA1, . . . , LPAn) and their respective location within the network system, said method comprising the steps of: requesting (S41), by said terminal node (MN), said at least one server entity (LPS) for location privacy, selecting (S42), at said at least one server entity (LPS), a specific one of said plurality of agent entities (LPA1, . . . , LPAn), based on data maintained in said record of said server entity and said temporary network address of said requesting terminal node, and communicating (S46) messages between said terminal node (MN) and said communication partner node (CN) via said selected one (LPA) of said agent entities. The present invention also, concerns corresponding network systems, server entities, agent entities and terminal nodes.
摘要:
Apparatus, and an associated method, facilitates authentication of a mobile station operable in a 3G cellular communication system having a core network and a plurality of access networks. A standard signaling protocol is used to communicate between an access network and the core network. When a request for authentication of a mobile station is generated, a signaling protocol message is generated at a proxy of the access network within which the mobile station is to be authenticated. Detection of the authentication request is made at the proxy, and a message is generated at the proxy which includes indicia associated with the authentication center associated with the access network. The signaling protocol message is sent to the core network, and the information indicia contained therein is used to facilitate authentication procedures to authenticate the mobile station.
摘要:
Disclosed are examples of a method, system, devices and nodes to conduct communications between a device coupled to a communication network and a network security enforcement node, such as a firewall. An illustrative method includes, with a device coupled to a network security enforcement node through a communication network, requesting from the network security enforcement node information comprised of at least one of supported and enabled features and, in response to receiving the request, sending information descriptive of at least one of network security enforcement node supported and enabled features. The method may further include requesting by the device that at least one network security enforcement node feature be one of enabled or disabled.
摘要:
Method and apparatus for efficient routing of mobile node packets. Nodes in a network are configured to classify a received flow from a mobile node to a second node based upon a home address option in a packet in the flow if the address is present. The address is a home address of the mobile node. The classification has associated reserved resources at each node for the received flow. Therefore, the Quality of Service is maintained for the flow between the mobile node and the second node if the mobile node moves to a new location. Resources reserved in nodes in the old path are torn down and released, while reserved resources in nodes in the old and the new path need not be reserved again.