发明名称 POLICY-BASED CONTENT FILTERING
摘要 Methods and systems for processing application-level content of network service protocols are described. According to one embodiment, a firewall device maintains a policy database including multiple policies. The policies includes information regarding an action to take with respect to a network session based on a set of source internet protocol (IP) addresses, a set of destination IP addresses and/or a network service protocol. When the action is to allow the network session, the policy also includes information regarding a configuration scheme defining administrator-configurable content filtering processes to be performed on traffic associated with the network session. Policy-based content filtering is performed by the firewall device by (i) identifying a matching policy for the network session at issue; (ii) identifying multiple content filtering processes to be performed on the traffic based on the configuration scheme associated with the matching policy; and (iii) applying the identified content filtering processes on the traffic.
申请公布号 US2014090014(A1) 申请公布日期 2014.03.27
申请号 US201314093142 申请日期 2013.11.29
申请人 FORTINET, INC. 发明人 CRAWFORD WILLIAM J.
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址