发明名称 PREVENTING DUPLICATE SOURCES FROM CLIENTS SERVED BY A NETWORK ADDRESS PORT TRANSLATOR
摘要 Preventing duplicate sources on a protocol connection that uses network addresses, protocols and port numbers to identify source applications that are served by a NAPT. If an arriving packet encapsulates an encrypted packet and has passed through an NAPT en route to the destination host, the encapsulated packet is decrypted to obtain an original source port number and original packet protocol from the decrypted packet. A source port mapping table (SPMT) is searched for an association between the NAPT source address, the original source port, and the original packet protocol associated with the NAPT source address and port number. If an incorrect association is found, the packet is rejected as representing an illegal duplicate source; that is, a second packet from a different host served by a NAPT that is USING the same SOURCE port and protocol.
申请公布号 CA2602778(C) 申请公布日期 2014.04.01
申请号 CA20062602778 申请日期 2006.04.07
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 JAKUBIK, PATRICIA A.;OVERBY, LINWOOD HUGH JR.;PORTER, JOYCE ANNE;WIERBOWSKI, DAVID JOHN
分类号 H04L29/12;H04L29/06 主分类号 H04L29/12
代理机构 代理人
主权项
地址