发明名称 Methods, systems, and computer readable media for adaptive packet filtering
摘要 <p>The subject matter described herein includes methods, systems, and computer readable media for adaptive packet filtering. One method includes identifying at least one subset of rules and an ordered set of firewall packet filtering rules that defines a firewall policy such that the subset contains disjoint rules. Disjoint rules are defined as rules whose order can be changed without changing integrity of the firewall policy. Rules in the subset are sorted to statistically decrease the number of comparisons that will be applied to each packet that a firewall encounters. Packets are filtered at the firewall using the sorted rules in the subset by comparing each packet to each of the sorted rules in the subset until the packet is allowed or denied and ceasing the comparing for the packet in response to the packet being allowed or denied and thereby achieving sub-linear searching for packets filtered using the sorted rules in the subset.</p>
申请公布号 AU2010297968(B2) 申请公布日期 2015.06.04
申请号 AU20100297968 申请日期 2010.10.28
申请人 GREAT WALL SYSTEMS 发明人 AHN, DAVID K.
分类号 H04L12/22;H04L12/26;H04L29/06 主分类号 H04L12/22
代理机构 代理人
主权项
地址