发明名称 CONTENT FILTERING OF REMOTE FILE-SYSTEM ACCESS PROTOCOLS
摘要 Methods and systems for content filtering of remote file-system access protocols are provided. According to one embodiment, a remote file-system access protocol response is received at a network device logically interposed between one or more clients and a server. The response represents a response to a request from one of the clients relating to a file associated with a share of the server. A determination is made whether a holding buffer corresponding to the file exists. If not, then one is created; otherwise, the existing holding buffer is used for any of the clients or processes running on the clients that access the file. Data read from or written to the file as a result of the request is buffered into the holding buffer. The existence or non-existence of malicious, dangerous or unauthorized content contained within the holding buffer is determined by performing content filtering on the holding buffer.
申请公布号 US2015150135(A1) 申请公布日期 2015.05.28
申请号 US201414523878 申请日期 2014.10.25
申请人 Fortinet, Inc. 发明人 Crawford William Jeffrey
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method comprising: receiving, at a network device, logically interposed between one or more clients and a server, a remote file-system access protocol response from the server, the remote file-system access protocol response representing a response to a remote file-system access protocol request relating to a file associated with a share of the server sent from a client of the one or more clients; when the remote file-system access protocol request represents a request to access the file, then determining, by the network device, whether a holding buffer exists on the network device corresponding to the file; when a result of said determining is negative, then creating, by the network device, the holding buffer on the network device; when the result of said determining is affirmative, then using, by the network device, the holding buffer for any of the one or more clients or processes running on the one or more clients that access the file; buffering, by the network device, into the holding buffer data being read from or written to the file as a result of the remote file-system access protocol request; and determining, by the network device, the existence or non-existence of malicious, dangerous or unauthorized content contained within the holding buffer by performing content filtering on the holding buffer.
地址 Sunnyvale CA US